CrawlJobs Logo

Director of Technology - Governance, Risk, and Compliance

archer.com Logo

Archer Aviation

Location Icon

Location:
United States , San Jose

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

219000.00 - 290000.00 USD / Year

Job Description:

We are seeking a Director of Technology - Governance, Risk, and Compliance to design and develop Archer's Cybersecurity GRC program. You are a strategic, hands-on leader and an excellent communicator who can see the big picture. Reporting directly to the Chief Information Security Officer, you will oversee the design and implementation of our enterprise governance, risk, and compliance strategy while rigorously following NIST SP 800-171, CMMC Level 2, SOX, ITAR, and other industry-specific regulations. This role demands executive-level leadership of a GRC function, extensive knowledge of compliance frameworks and control design, and the ability to translate complex regulatory requirements into practical programs. You will work with security, legal, finance, and operations teams to build a scalable, auditable compliance foundation that allows Archer to pursue federal contracts, uphold public company standards, and grow with confidence.

Job Responsibility:

  • Develop and execute a comprehensive Cyber-focused Governance, Risk, and Compliance (GRC) strategy
  • Lead the design and implementation of System Security Plans (SSPs) and Plans of Action and Milestones (POA&Ms)
  • Establish and manage an enterprise-wide risk management program
  • Design and enforce a control framework
  • Conduct or coordinate regular compliance assessments and internal audits
  • Manage relationships with external auditors, assessors, and regulators
  • Develop and maintain comprehensive compliance documentation
  • Lead the design of third-party and vendor risk management processes
  • Drive compliance training and awareness programs across the organization
  • Stay current with emerging regulatory changes
  • Provide executive-level reporting to the Board, Audit Committee, and C-suite

Requirements:

  • 8 plus years of experience in Technical Governance, Risk, and Compliance, Risk Management, Audit, or Information Security
  • Minimum of 3 years in a director or senior manager role leading a GRC function or compliance program
  • Expert-level understanding of NIST CSF, SP 800-171, and CMMC Level 2 frameworks
  • Hands-on experience managing NIST CSF, 800-171 compliance programs or leading CMMC Level 2 assessments and certification initiatives
  • Strong knowledge of SOX Section 404 requirements, particularly IT General Controls (ITGC)
  • Deep understanding of ITAR and EAR export control regulations
  • Proficiency in risk management methodologies
  • Experience designing and operating control frameworks (ISO 27001, NIST CSF, SOC 2 Type II)
  • Strong communication skills to present complex compliance and risk concepts
  • Demonstrated ability to lead and mentor teams, manage budgets, and drive cross-functional initiatives

Nice to have:

  • Experience with Aerospace, Defense, or Federal Contractor industries
  • Hands-on experience conducting or participating in CMMC Level 2 assessments or FedRAMP authorizations
  • Experience as a Security Control Assessor (SCA) or CMMC Professional (CISSP with CMMC focus)
  • Background in public company SOX compliance
  • Knowledge of GRC platforms and tools (Archer GRC, Audit Board, ServiceNow)
  • Professional certifications such as CISSP, CISM, CRISC, Certified Regulatory Compliance Manager (CRCM), or Certified Compliance and Ethics Professional (CCEP)
  • Advanced degree in Cybersecurity, Business Administration, Law, or Engineering
  • Experience with third-party risk management and vendor security assessment frameworks
  • Direct experience building compliance automation and audit evidence collection processes

Additional Information:

Job Posted:
March 10, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Director of Technology - Governance, Risk, and Compliance

Sr. Director, Cybersecurity Governance, Risk & Compliance

The Sr. Director of Cybersecurity Governance, Risk Management, and Compliance (G...
Location
Location
United States
Salary
Salary:
173500.00 - 419500.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or higher in Information Technology, Cybersecurity, Computer Science, or a related field
  • Minimum of 10 years of experience in cybersecurity and/or IT Risk, with at least 5 years focus on GRC
  • Proven track record in a senior leadership role within a large organization
  • Experience in developing and implementing cybersecurity strategies
  • Strong knowledge of relevant regulations and standards, such as GDPR, NIST CSF, and ISO 27001
  • Exceptional leadership and management skills
  • Strong analytical and problem-solving abilities
  • Excellent communication and interpersonal skills
  • Ability to work collaboratively across departments and build consensus
  • Proficient in cybersecurity technologies and tools.
Job Responsibility
Job Responsibility
  • Define and execute a comprehensive cybersecurity GRC strategy that aligns with business objectives and legal/regulatory requirements
  • Partner with cross-functional teams, including Legal, IT, Audit, and Business Units, to integrate security and compliance requirements into business processes
  • Recruit, mentor, and develop a high-performing team of GRC professionals
  • Develop and maintain the cybersecurity governance framework, ensuring it aligns with the organization's overall business objectives
  • Create policies, procedures, and guidelines that support the cybersecurity strategy
  • Ensure compliance with industry standards, regulations, and best practices
  • Identify, assess, and prioritize cybersecurity risks facing the organization
  • Develop risk mitigation strategies and allocate resources to address key risk areas
  • Collaborate with other departments to integrate risk management practices across the organization
  • Monitor and report on the effectiveness of risk management strategies
What we offer
What we offer
  • Comprehensive suite of benefits supporting physical, financial, and emotional wellbeing
  • Career development programs to help achieve career goals
  • Inclusive work environment valuing diverse backgrounds.
  • Fulltime
Read More
Arrow Right

Director - Governance, Risk and Compliance

We are a fast-growing fintech company seeking a proactive and highly organized G...
Location
Location
United States , New York
Salary
Salary:
175000.00 - 200000.00 USD / Year
clearstreet.io Logo
Clear Street
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in GRC, security compliance, risk management, or related functions
  • Strong understanding of common security frameworks (SOC 2, ISO 27001, NIST CSF, PCI-DSS)
  • Experience managing audits end-to-end
  • Demonstrated ability to build and maintain governance processes and cross-functional compliance programs
  • Excellent documentation, communication, and stakeholder-management skills
  • Experience in technology, fintech, financial services, or other highly regulated industries
Job Responsibility
Job Responsibility
  • Develop, maintain, and manage the company’s security and compliance policy framework
  • Ensure policies are current, properly communicated, approved, and effectively implemented across the organization
  • Oversee periodic reviews of all internal policies
  • Educate teams on policy requirements and drive adherence
  • Build, implement, and continuously refine the company’s cyber security risk management framework
  • Lead risk identification, assessment, scoring, and periodic re-evaluations
  • Maintain the corporate risk register
  • Manage all internal and external audits including SOC 2, ISO 27001, regulatory exams, and customer due-diligence requests
  • Coordinate and prepare audit evidence
  • Serve as the primary liaison with external auditors, security assessors, and regulatory bodies
What we offer
What we offer
  • Competitive compensation packages
  • Company equity
  • 401k matching
  • Gender-neutral parental leave
  • Full medical, dental and vision insurance
  • Lunch stipends
  • Fully stocked kitchens
  • Happy hours
  • Fulltime
Read More
Arrow Right

Financial Crimes Risk Director

The Financial Crimes Risk Director role is a first line function responsible for...
Location
Location
Singapore , Singapore
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s/University degree required
  • master’s degree desirable
  • 15+ years’ experience in financial crime compliance or risk management
  • Financial Crime certification preferred (ACAMS, ACSS etc.)
  • Strong understanding of international Sanctions
  • Strong professional experience in Financial Services, in Financial Crime Compliance and/or Financial Crime Risk & Controls
  • Knowledge and understanding of Payments, Correspondent Banking, Trade, Working Capital, and Liquidity Management products
  • Excellent interpersonal skills
  • Able to work independently and deliver according to strict timelines and quality standards
  • Demonstrated ability and confidence to challenge business management, escalate issues and press for change
Job Responsibility
Job Responsibility
  • Understand business-owned products, services, as well as corresponding financial crimes-related controls, and processes
  • Provide financial crimes compliance/risk management subject matter expertise to the Services businesses in Asia to ensure the design and implementation of a coherent and effective control environment
  • Assess complex issues, structure potential solutions, and drive effective resolution with other senior stakeholders
  • Assess existing control framework, identify potential compliance gaps
  • Drive execution ensuring compliance with applicable laws, rules, and regulations, as well as effectiveness of the control environment
  • Ensure adequate mapping of risk and processes and clear control ownership
  • Create & maintain a robust partnership with the business heads, operations, technology and the second line of defense
  • Ensure clear and timely escalation of control issues, while assisting their adequate management and internal reporting
  • Drive a consistent and holistic approach to Financial Crimes risk management across Services
  • Ensure early engagement on new business initiatives to ensure timely support of commercial priorities and full adherence to global and regional risk management policies and procedures
  • Fulltime
Read More
Arrow Right

Director, Deputy Corporate Compliance & Operations

Aledade's Compliance & Ethics organization is seeking a tenured and strategic he...
Location
Location
United States , Arlington; Austin; Durham; Novi; Bethesda
Salary
Salary:
Not provided
aledade.com Logo
Aledade, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or equivalent combination of education and experience
  • +12 years of experience, with a minimum of 8 years of progressive experience in healthcare compliance, with a strong focus on corporate compliance operations
  • Experience leading compliance operations teams
  • Experience presenting and reporting to the Board of Directors
  • Strong knowledge of HIPAA, fraud, waste, and abuse laws (Stark Law, Anti-Kickback Statute, False Claims Act)
  • Excellent analytical, problem-solving, and critical thinking skills
  • Exceptional written and verbal communication skills, with the ability to translate complex data findings into clear and actionable guidance
  • Strong interpersonal skills and the ability to collaborate effectively with diverse teams
Job Responsibility
Job Responsibility
  • Deputize for the VP, Head of Compliance in providing leadership, oversight and representation for the Compliance Department
  • Prepare and present compliance reports to senior leadership, Compliance Committee, and the Board of Directors
  • Oversee and continually enhance Aledade’s Corporate Compliance Program, ensuring alignment with OIG compliance program guidance, industry best practices, and Aledade’s strategic objectives
  • Establish and maintain a strong compliance governance framework, including policy standards, committee structures, and reporting mechanisms
  • Develop and manage compliance training and education programs to ensure business relevant and effective programs
  • Lead and manage compliance the day-to-day operations, including policy governance, reporting & investigations, conflict of interest, exclusion screening, training & education, and compliance communications
  • Oversee the intake, internal investigations, and resolution of compliance concerns and reports to ensure consistent application of policies, procedures, and corrective actions
  • Partner with Legal, Privacy, Security, and People teams to ensure coordinated approaches to compliance risks
  • Lead special projects on behalf of the VP, Head of Compliance, including compliance program optimization, technology enablement, and corporate transaction readiness
  • Supervise and mentor compliance team members, fostering professional growth and operational excellence
What we offer
What we offer
  • Flexible work schedules and the ability to work remotely are available for many roles
  • Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners
  • Robust time-off plan (21 days of PTO in your first year)
  • Two paid volunteer days and 11 paid holidays
  • 12 weeks paid parental leave for all new parents
  • Six weeks paid sabbatical after six years of service
  • Educational Assistant Program and Clinical Employee Reimbursement Program
  • 401(k) with up to 4% match
  • Stock options
  • Fulltime
Read More
Arrow Right

Senior Director, Enterprise Finance & HR Technology

Develop and lead the end-to-end product team to set the tone, establish partners...
Location
Location
United States
Salary
Salary:
Not provided
sysco.com Logo
Sysco
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in computer science, business administration, information systems or related, or equivalent work experience
  • 10 years’ experience in management role leading a team of product managers
  • 12 years’ experience in product management, business consulting or related field
  • 6 years’ experience in product development
  • Experience in agile environment
  • Executive experience in Fortune 100 multinational companies
  • Proven strong skills in stakeholder management and internal evangelism
  • Ability to inspire and motivate the various teams and stakeholder groups and get everyone moving in the same direction
  • Achieve great buy-in and product adoption across the company as a result of amazing communication, training and marketing materials delivered appropriately to each different set of stakeholder audiences
Job Responsibility
Job Responsibility
  • Set and execute the enterprise Finance & HR technology strategy, defining product roadmaps and ensuring alignment with corporate objectives
  • Provide strategic leadership for current and future product development efforts
  • Lead and integrate multidisciplinary teams
  • Cultivate executive and business partnerships
  • Drive vendor and ecosystem management
  • Understand the competitive landscape for Sysco Corporation and broader trends in the food distribution industry
  • Act as the product portfolio evangelist
  • Prepare and drive Steering Committee meetings
  • Display executive presence in all interactions
  • Foster a high-performance culture
  • Fulltime
Read More
Arrow Right

Director - FRTB Market Risk RWA Calculation and Analysis

The position leads the Calculation and Analysis of FRTB Market Risk RWA across m...
Location
Location
United States , New York
Salary
Salary:
170000.00 - 300000.00 USD / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in Market Risk and RWA calculations
  • Deep expertise in FRTB implementation for a large, global Bank
  • Strong familiarity with FRTB rules in more than one jurisdictions
  • Subject matter expertise in trading book products, strategies, and risk management across multiple asset classes
  • Strong background in working with Technology on implementation of large, complex programs involving Front office Risk Management systems and Market/Reference data
  • Familiar with FRTB implementation challenges, advocacy proposals, and state-of-play across the Street
  • Experience in supporting Regulatory exams with US/UK/EU banking supervisors, and experience in working with Internal Audit
  • Hands-on data analytics experience using Python/Tableau/SQL
  • Working knowledge of Market Risk models and methodologies
  • 5+ years managerial experience
Job Responsibility
Job Responsibility
  • Own production of FRTB Market Risk RWA results, including analysis of drivers, for both Citigroup and selected Legal Entities in EMEA and Asia
  • Manage a large team spread across NY, Warsaw, and Mumbai, including managing other people managers
  • Partner with other key stakeholders to ensure Citi's compliance with FRTB Rules and Regulatory expectations
  • Responsible for working with Technology to drive FRTB implementation and remediation
  • Closely coordinate with Front Office and Market Risk to improve the quality of FRTB results
  • Serve as key contributor for FRTB related Regulatory Exams, Internal Audit, and Second Line of Defense Reviews
  • Work with Regulatory Policy teams on interpretive items, and on ensuring governance of implementation assumptions
  • Contribute to FRTB advocacy efforts and impact studies, both bilaterally and representing Citi in industry FRTB forums
What we offer
What we offer
  • medical, dental & vision coverage
  • 401(k)
  • life, accident, and disability insurance
  • wellness programs
  • paid time off packages including vacation, sick leave, and holidays
  • Fulltime
Read More
Arrow Right

Senior Vice President, Internal Audit International Risk

The Senior Audit Manager is a senior level management position responsible for m...
Location
Location
India , Mumbai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of experience in a related role
  • related certifications CPA, ACA, CFA, CIA, CISA or similar preferred
  • demonstrated successful experience in business, functional and people management
  • proven ability to execute concurrently on a portfolio of high-quality deliverables according to strict timetables
  • demonstrated ability to implement continuous improvement and innovation in audit tools and techniques
  • consistently demonstrates clear and concise written and verbal communication
  • demonstrated ability to remain unbiased in a diverse working environment
  • effective negotiation skills
  • bachelor’s degree/university degree or equivalent experience
  • master’s degree preferred
Job Responsibility
Job Responsibility
  • Manage a team of Internal Audit professionals, recruit staff, lead professional development, build effective teams and manage a budget
  • deliver audit reports, Internal Audit and Regulatory issue validation and business monitoring and governance committee reports
  • lead reviews for all types of reviews, including the most complex, and review and approve Business Monitoring Quarterly Summaries
  • participate in major business initiatives and pro-actively advise and assist the business on change initiatives
  • implement integrated auditing concepts and technology, and follow trends in the Audit field and adapt them for the Audit function
  • identify solutions for a variety of complex and unique control issues, utilizing complex judgement and sophisticated analytical thought
  • analyze report findings, and recommend interventions where needed, proposing creative and pragmatic solutions to risk and control issues
  • partner with Directors and Managing Directors to develop approaches for addressing broader corporate emerging issues
  • appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency, as well as effectively supervise the activity of others and create accountability with those who fail to maintain these standards
What we offer
What we offer
  • expanded Paid Parental Leave Policy
  • programs to help employees balance their work and life, including generous paid time off packages
  • resources to manage financial well-being and help plan for the future
  • Fulltime
Read More
Arrow Right

Chief Country Compliance Officer Sr Mgr

Oversees the Citi Compliance Risk Management Program for a medium to smaller fra...
Location
Location
Bahamas , Nassau
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Credibility as a subject matter expert and experience of dealing with issues that have a high impact at all levels of the organization
  • Experience of working with key country level regulators and industry associations
  • Knowledge of local regulatory requirements and obligations and the ability to identify emerging compliance issues and themes
  • An ability to influence senior business leaders on all compliance risk-related matters affecting the business. The individual should have the ability to independently challenge, when needed, while at the same time being supportive and solution-based and not being perceived as obstructive
  • An ability to be “hands on” and “in the trenches” with the direct team, while also bringing a sense of strategic vision and a global sensibility to the function
  • Ability to navigate and negotiate through conflicting demands to maintain focus on priority objectives while ensuring key stakeholders’ needs are met
  • Strong team leadership, communication, interpersonal and management skills, with a track record of leading through change and the ability to effectively communicate the strategic vision to various stakeholder groups
  • Effective negotiation skills, a proactive and “no surprises” approach in communicating issues and strength in sustaining independent views. Strong presentation and relationship management and influencing skills are essential
  • The ability to thrive and execute in a complex, highly matrixed, global environment
  • Bachelor’s Degree highly preferred or relevant, equivalent experience. Preference for post graduate degree and/or recognized professional qualifications where applicable. Professional qualifications may include: CRMC or equivalent, CPA, ACA, CIA, CFA, ACAMS, etc. strong technical knowledge of compliance regulations and requirements, experience within a highly complex, global financial institution, regulator or related industry participant.
Job Responsibility
Job Responsibility
  • Annual Country Compliance Plan: Preparing, obtaining approval and successfully completing an annual compliance risk management plan, in accordance with the global template and content and presentation requirements, setting out how compliance risk will be managed within the jurisdiction and its constituent parts, and the role to be played by ICRM in order to achieve the plan. Identification of the jurisdictional requirements, accountabilities and the process ownership and monitoring and testing ownership, as well as the determination of suitable staffing, hours required and secured budget in order to achieve the state of compliance within risk appetite will be set out in the plan, which will be reviewed quarterly with the jurisdictional CCC and ICRM, as well as any applicable legal entity, as well as where required by applicable regulatory agencies. The annual country compliance plan must take into consideration the applicable compliance risk assessments and MCAs appropriate to the jurisdiction and its activities.
  • State of Compliance Reporting: Preparing quarterly, in accordance with the approved global format, and in adherence to all established requirements for the State of Compliance reporting. The State of Compliance report will be presented to the appropriate CCC, BRCC and legal entity Board or Board Audit Committee, or other such Board committee required within the jurisdiction.
  • Enhancing Governance: Providing a valued interactive program of support and compliance risk management services covering the assessment and reporting of Key Compliance Risks across products, services, functions, legal entities, service centers and the jurisdiction as a whole. Providing stakeholders with insight and practical solutions as well as credible challenge to improve the ethical control culture, and conduct risk environment. Timely reporting of significant local regulatory issues to local, overseas, regional, and global stakeholders. Same-day escalation of regulatory reports received. Maintaining on-going assessment and reporting of the State of Compliance through the relevant corporate governance committees such as country audit committee(s) and/or subsidiary board(s), country coordinating committee and business risk management committee, and other management body(ies). Key Activities Compliance Risk Culture:
  • Stakeholder Support and Relationships: Developing senior management relationships, including with legal entity management focus, inclusive of non-executive directors (where they exist in the jurisdiction), and the CCO as well as product functional and entity/service center line management. Informing senior management and directors of subsidiary boards, and the country/business management of significant compliance matters that require their attention or action. Proactively anticipate and help the business and functions plan for changes in the compliance and regulatory environment in the country. Provide support to compliance programs and country/business management on policy interpretation and “gray area” exposures. Build and maintain strong relationships with other functional leads, including Legal, Risk Management, including Operational Risk Management, and Internal Audit to create a supportive and seamless compliance and ethical control culture and an appropriate conduct risk environment. Key Activities Processes and Activities:
  • Regulatory Management and Coordination: Supporting the Citi Country Officer (CCO) in the management and development of regulatory relationships. Coordinating as the key interface with regulators on compliance risk management issues and supervisory exam management matters. Providing same day notification of regulator correspondence to Citi Compliance Officer, Regulatory Liaison and Exam Management CCO and ICRM COO. Providing leadership, coordination and regular interaction with the [insert country] authorities on behalf of ICRM and the Citi franchise. Record regulator correspondence and minutes of regulator meetings on Citi system in line with the Global Regulatory Exam Management Governance and Process Standards. Ensuring prompt recording of, responses to, and escalation of regulatory queries, notices of violations and breaches, any forbearance, and concerns identified. Deliver to regulators and supervisors a valued interactive program of support and assurance in accordance with requirements and appropriate expectations on compliance issues, trends, themes, root cases and impacts relating to governance, regulatory risk management and internal control issues. The overall objective is to earn the regulator’s trust and to establish a strong, independent and professional regulatory relationship across the franchise.
  • Regulatory Inventory: Ensuring prompt identification, logging in, evaluation and formulation of a plan to address requirements arising from new and amended laws, regulations, rules and other requirements and expectations from regulatory and enforcement authorities.
  • Regulatory Change Management and Controls: Ensuring that the regulatory change management requirements and processes, along with the regulatory control framework for existing requirements, are effectively operating within the country with respect to the identification, impact assessment and implementation of all applicable laws, regulations, rules and related processes, controls and reporting that impact Citi activities in the jurisdiction.
  • Anti-Money Laundering Compliance Risk Management (ACRM): Providing strategic direction, oversight, coordination and cooperation in respect of the country’s Anti-Money Laundering compliance risk management program. Partner closely and with the Head of ACRM to ensure a strong linkage between ICRM and ACRM.
  • Independent Compliance Risk Management (Program and Product/Service/Function focused*): Providing direction and oversight in supporting the ICRM teams in the country related to local requirements and the applicable extraterritorial laws, regulations, relevant Citi policies, standards, and global procedures. Deliver consistent application of program procedures and be accountable to program owners consistent with the ICRM methodology and CRM Framework. *Programs include but are not limited to: Sanctions
  • Anti Bribery
  • Fulltime
Read More
Arrow Right