CrawlJobs Logo

Director - Governance, Risk and Compliance

clearstreet.io Logo

Clear Street

Location Icon

Location:
United States, New York

Category Icon
Category:
Finance

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

175000.00 - 200000.00 USD / Year

Job Description:

We are a fast-growing fintech company seeking a proactive and highly organized Governance, Risk, and Compliance (GRC) Manager to join our Security & Compliance team. This individual will play a key role in establishing, maturing, and maintaining our governance and risk management frameworks, ensuring ongoing compliance with regulatory, customer, and industry requirements. The ideal candidate is hands-on, detail-oriented, capable of owning cross-functional initiatives, and comfortable operating in a dynamic startup environment.

Job Responsibility:

  • Develop, maintain, and manage the company’s security and compliance policy framework
  • Ensure policies are current, properly communicated, approved, and effectively implemented across the organization
  • Oversee periodic reviews of all internal policies
  • Educate teams on policy requirements and drive adherence
  • Build, implement, and continuously refine the company’s cyber security risk management framework
  • Lead risk identification, assessment, scoring, and periodic re-evaluations
  • Maintain the corporate risk register
  • Manage all internal and external audits including SOC 2, ISO 27001, regulatory exams, and customer due-diligence requests
  • Coordinate and prepare audit evidence
  • Serve as the primary liaison with external auditors, security assessors, and regulatory bodies
  • Track audit findings, remediation tasks, and ensure timely closure of identified gaps
  • Oversee internal compliance testing and continuous monitoring activities
  • Maintain and improve the company’s control inventory aligned with frameworks such as SOC 2, ISO 27001, NIST, PCI, GDPR, etc.
  • Partner with engineering, IT, product, and business teams to ensure controls are implemented and validated
  • Drive improvements to operational processes to strengthen our compliance posture

Requirements:

  • 7+ years of experience in GRC, security compliance, risk management, or related functions
  • Strong understanding of common security frameworks (SOC 2, ISO 27001, NIST CSF, PCI-DSS)
  • Experience managing audits end-to-end
  • Demonstrated ability to build and maintain governance processes and cross-functional compliance programs
  • Excellent documentation, communication, and stakeholder-management skills
  • Experience in technology, fintech, financial services, or other highly regulated industries

Nice to have:

  • Experience working in a startup or high-growth environment
  • Familiarity with GRC platforms (e.g., Vanta, Drata, Tugboat, ServiceNow GRC)
  • Understanding of relevant regulatory requirements (e.g., GLBA, SOX, GDPR, PSD2, NYDFS 500)
What we offer:
  • Competitive compensation packages
  • Company equity
  • 401k matching
  • Gender-neutral parental leave
  • Full medical, dental and vision insurance
  • Lunch stipends
  • Fully stocked kitchens
  • Happy hours

Additional Information:

Job Posted:
December 07, 2025

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.