Head of Risk at Semperis focusing on cybersecurity risk and compliance management. Responsible for developing company-wide strategies and collaborating with stakeholders.
Responsibilities
Develop and lead the company-wide risk and compliance management strategy, policies, and framework aligned with organizational objectives and regulatory standards.
Collaborate with different stakeholders to identify, assess, and mitigate operational, cybersecurity, and compliance risks.
Own and evolve the company’s risk register, metrics, and reporting cadence, providing transparent insights to the CISO, senior leadership, and board committees.
Manage and lead the company’s compliance frameworks including ISO, Common Criteria, FedRamp, SOCII, GDPR, and more.
Quarterback compliance efforts, testing and auditing.
Lead third-party and vendor risk management programs, ensuring supply chain resilience and adherence to company security requirements.
Requirements
7+ years of experience in enterprise risk management, cybersecurity, or information assurance, with at least 5 years in leadership capacity.
Strong understanding of cybersecurity frameworks, operational risk, business continuity, and compliance programs.
Proven experience working within or alongside a CISO organization in a fast-paced technology or cybersecurity environment.
Expertise in quantitative and qualitative risk analysis, reporting, and executive communication.
Familiarity with standards and regulations such as NIST, ISO 27001, SOC 2, GDPR, DORA, and NIS2.
Excellent relationship-building and influencing skills, capable of engaging stakeholders across technical and business domains.
Relevant certifications preferred: CRISC, CISSP, CISM, CISA, ISO 27005 Risk Manager, or equivalent.
Regulatory Compliance Consultant ensuring PSE meets FERC OATT compliance. Supporting regulatory requirements and training across departments for energy sector.
Consulting Associate in EHS Compliance supporting large industrial clients on sustainability projects. Aiding in regulatory compliance while contributing to risk management and safety initiatives.
Working as a Principal Clinical Trial Regulatory Affairs at Syneos Health. Collaborating with a diverse team to enhance customer success in a dynamic environment.
Customs Compliance Manager overseeing customs compliance program at STIHL. Ensuring adherence to U.S. and international trade laws while managing Foreign Trade Zone operations.
Business Unit Compliance Analyst at Regions managing compliance with regulations across various business units. Conducting research and training to ensure adherence to legal requirements and internal policies.
Specialist at BC Energy Regulator leading environmental compliance audits and assessing industry activities. Focusing on environmental performance and collaborating across divisions.
Intern supporting Government Affairs & Regulatory Law Group in legislative process analysis and research tasks. Engaging in client meetings and preparing tracking reports throughout the internship.
Trainee in Infosec GRC at SEK developing security policies and handling risk assessments. Focusing on ISO standards and technical compliance across projects.
Compliance intern at Dräger assisting in the global compliance management system and related compliance processes in Lübeck. Gaining practical experience in an international compliance team.