GRC Manager at Fragomen overseeing governance, risk, and compliance for data privacy and security. Leading a team to develop risk management frameworks aligned with business objectives and regulatory requirements.
Responsibilities
Lead, mentor, and grow a team of compliance analysts and GRC professionals
Provide strategic direction, technical guidance, and foster a culture of continuous improvement
Develop and operationalize a risk management program that proactively identifies, assesses, and mitigates organizational and third-party risks, with clear alignment to business priorities
Design and manage a comprehensive GRC framework, including risk assessments, controls implementation, and governance practices
Partner with Information Security, IT, Privacy, Audit, and Legal to build a unified view of the firm’s security and data privacy posture and convey that view to clients and stakeholders
Establish KPIs and dashboards to monitor risk levels, compliance progress, and the effectiveness of controls; regularly report key risk insights to senior leadership and the Risk Committee
Conduct Data Privacy Impact Assessments (DPIAs), maintain a central risk register, and oversee the mitigation of identified gaps across people, process, and technology
Ensure ongoing adherence to industry standards (e.g., ISO 27001, SOC 2, PCI DSS, NIST) by maintaining audit-ready documentation and leading evidence-gathering activities
Requirements
7+ years of experience in governance, risk, and compliance (GRC), risk management, or information security
Demonstrated experience leading risk management initiatives and teams
Professional certifications such as CISA, CISSP, CIA, or similar strongly preferred
Deep knowledge of global security and privacy frameworks, including ISO 27001, SOC 2, PCI DSS, NIST 800 series, EU GDPR, and related regulatory regimes
Strong analytical and communication skills with the ability to translate complex risks into actionable strategies for business and technical stakeholders
Excellent organizational and project management skills, with attention to detail and an ability to manage multiple priorities
Experience working with cross-functional, global teams and third-party vendors
Benefits
22 PTO days + Federal holidays
Medical, Dental, and Vision plans + FSA & HSA Plans
Vice President of Regulatory Policy providing oversight for regulatory reporting issues related to banking regulations. Focused on Basel III, policy development, and regulatory stakeholder collaboration.
Senior Manager responsible for developing risk management systems and compliance processes at RBC. Collaborating with various teams to minimize investments risks in technology infrastructure.
Compliance Regulatory Change officer ensuring timely identification and communication of regulatory changes affecting RBC businesses. Supporting compliance across Canadian financial sectors with impactful oversight.
Contracts & Compliance Manager at Giesecke and Devrient Mobile Security overseeing compliance and data privacy. Responsible for legal advice, contracts, and internal guidelines.
Regional Regulatory Manager ensuring environmental compliance for chemical distribution across Northeast US. Leading initiatives, audits, and reporting while providing strategic training and oversight.
Trade Compliance Officer supporting Export Control compliance activities within Defence Industry projects. Collaborating with managers to ensure adherence to regulations and operational support.
Senior Specialist in Compliance risk monitoring for pharmaceutical company. Involves data analysis and collaboration across global teams for risk management.
Associate Director leading Global Regulatory Affairs and Clinical Safety for pharmaceutical partnerships. Coordinating cross - functional activities to maintain regulatory obligations and compliance.
Oversee and optimize operations of the Business Administration Office at Princeton Hydro. Leading compliance and operational efficiency across multiple states as a seasoned professional.
Regulatory Data Assessment Analyst researching regulatory compliance for financial services at Truist Bank. Collaborating with stakeholders to validate data quality and enhance testing processes.