Head of Risk at Semperis focusing on cybersecurity risk and compliance management. Responsible for developing company-wide strategies and collaborating with stakeholders.
Responsibilities
Develop and lead the company-wide risk and compliance management strategy, policies, and framework aligned with organizational objectives and regulatory standards.
Collaborate with different stakeholders to identify, assess, and mitigate operational, cybersecurity, and compliance risks.
Own and evolve the company’s risk register, metrics, and reporting cadence, providing transparent insights to the CISO, senior leadership, and board committees.
Manage and lead the company’s compliance frameworks including ISO, Common Criteria, FedRamp, SOCII, GDPR, and more.
Quarterback compliance efforts, testing and auditing.
Lead third-party and vendor risk management programs, ensuring supply chain resilience and adherence to company security requirements.
Requirements
7+ years of experience in enterprise risk management, cybersecurity, or information assurance, with at least 5 years in leadership capacity.
Strong understanding of cybersecurity frameworks, operational risk, business continuity, and compliance programs.
Proven experience working within or alongside a CISO organization in a fast-paced technology or cybersecurity environment.
Expertise in quantitative and qualitative risk analysis, reporting, and executive communication.
Familiarity with standards and regulations such as NIST, ISO 27001, SOC 2, GDPR, DORA, and NIS2.
Excellent relationship-building and influencing skills, capable of engaging stakeholders across technical and business domains.
Relevant certifications preferred: CRISC, CISSP, CISM, CISA, ISO 27005 Risk Manager, or equivalent.
Compliance Specialist overseeing regulatory adherence for youth programs in Gainesville. Ensuring DCF compliance and supporting youth program safety and integrity.
Technologist at FortisBC ensuring compliance with BCUC Critical Infrastructure Protection Standards. Focus on integrating business technology and providing technical support.
Compliance Examiner Business Lead at Freddie Mac conducting on - site examinations and ensuring financial activities align with laws. Engaging with financial institutions to enhance operational effectiveness.
Compliance Professional supporting Freddie Mac's investment and ethics policies. Engaging with compliance risks and overseeing regulatory obligations to promote best practices.
Compliance Officer at Hewlett Packard Enterprise ensuring adherence to compliance regulations, managing AML programs, and conducting risk assessments. Driving compliance culture across markets and delivering training to employees.
Risk Manager at Cisco Capital ensuring regulatory compliance and effective risk management practices. Focus on safeguarding financial health and collaboration within an international environment.
Regulatory Reporting Specialist managing outsourced reporting service providers in Germany and Spain. Ensuring compliance with banking regulations and supporting audits and reviews.
Assisting partners at Clyde & Co with business inception processes and anti - money laundering procedures. Involves reviewing requests and conducting conflict checks within the firm's compliance framework.
Senior Analyst, OSS Compliance managing open - source software assets for The Hartford. Ensuring compliance and visibility into OSS usage as part of software asset management process.
Data Governance Implementation Analyst supporting implementation of Data Governance Operating Model for Compliance at BNY. Collaborating with business units to drive data quality standards.