CrawlJobs Logo

Global GRC Lead

Monte Carlo Data

Location Icon

Location:

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

160000.00 - 210000.00 USD / Year

Job Description:

Monte Carlo is seeking our first Global GRC Manager to lead our compliance efforts in a cloud-first environment. You’ll be instrumental in driving our governance, risk, and compliance initiatives and ensuring we continue to meet our customer, industry, and regulatory requirements. In this role, you will engage with customers, vendors, and internal stakeholders to oversee a wide array of compliance activities and security reviews. Although this is an individual contributor position, you will serve as a lead in your domain, leveraging your expertise to collaborate across the organization and drive critical initiatives.

Job Responsibility:

  • Manage and respond to customer security reviews, questionnaires, and audits
  • Serve as the primary liaison for security-related inquiries from prospects, customers, and partners
  • Oversee ongoing compliance initiatives (SOC 2, ISO 27001, 27017, 27018, GDPR etc.) and maintain the risk register
  • Collaborate with cross-functional teams (Engineering, Sales, Product, HR) on risk management strategies
  • Evaluate third-party vendors, manage due diligence processes, and coordinate remediation actions
  • Develop, refine, and maintain security and compliance policies, procedures, and standards
  • Support and promote security awareness initiatives, including employee training and phishing simulations
  • Lead and coordinate internal and external audits, ensuring continuous improvement in controls

Requirements:

  • Deep GRC Expertise: extensive knowledge of common frameworks (SOC 2, ISO 27001, NIST, GDPR, etc.) and experience managing end-to-end audit processes
  • Strong Communication Skills: translate security jargon into business language and effectively manage customer and vendor communications
  • Risk Management Mindset: balance business objectives with security requirements, prioritizing risk mitigation in a way that aligns with company goals
  • Team Player: thrive in cross-functional environments, effectively collaborating with engineering, legal, product, and other teams
  • Adaptability: flourish in a fast-paced environment, pivoting quickly when new threats, requirements, or business needs emerge
  • 5+ years of experience in a GRC or compliance-focused role, ideally in a SaaS or technology company
  • Proven track record of managing third-party risk assessments, vendor security reviews, and compliance audits
  • Expertise in compliance frameworks such as SOC 1/2, ISO 27001| 27017 | 27018 | 27701 | 42001, and GDPR
  • Relevant certifications (e.g., CISA, CISSP, CRISC, or CISM) are highly desirable
  • Excellent written and verbal communication skills with a strong attention to detail
  • Bachelor’s degree in Information Security, Cybersecurity, or a related field (or equivalent experience)
What we offer:
  • Stock Options
  • Healthcare plans
  • 401k Retirement Plan
  • Wellness Stipend
  • Home Office Stipend
  • Cell Phone or WIFI reimbursement
  • Paid Parental Leave
  • Flexible Time Off
  • Generous Travel Policy
  • Offers Equity

Additional Information:

Job Posted:
February 18, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Global GRC Lead

Global Data Privacy Counsel

We are looking for a senior attorney with extensive experience in global data pr...
Location
Location
United States , Atlanta
Salary
Salary:
Not provided
arrive.com Logo
Arrive
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Juris Doctor degree from a reputable, accredited U.S. law school
  • Active license in good standing with one or more U.S. state bars (Georgia preferred)
  • 10+ years of progressive experience in data privacy and cybersecurity legal matters, with significant in-house experience at a high-growth, technology-driven company
  • Deep expertise and knowledge of and hands-on experience with U.S. and international data privacy, cybersecurity, and compliance laws and frameworks (including GDPR, CCPA/CPRA, PCI-DSS, ISO certifications, and other relevant global standards) and leading-edge AI regulations and frameworks
  • Demonstrated success in providing strategic legal counsel that balances risk management with enabling innovation and business growth, particularly in payments and data-driven initiatives
  • Proven experience leading global privacy and data protection programs, including managing privacy and data protection risk frameworks and governance
  • Experience managing external counsel, auditors, and regulators
  • Proven ability to lead, develop, and inspire diverse, global teams, including direct leadership experience with Data Protection Officers and other privacy professionals
  • Strong business acumen with the ability to translate complex legal concepts into clear, actionable advice that aligns with business objectives and supports deal-making and sales acceleration
  • Excellent communication and interpersonal skills, with the ability to influence stakeholders at all levels, including senior executives and cross-functional teams globally
Job Responsibility
Job Responsibility
  • Serve as a trusted strategic legal advisor to executive leadership, business unit and function heads, and the governance committees on global privacy, data protection, and cybersecurity risks, as well as opportunities aligned with rapid business growth and innovation
  • Design, lead, and continuously evolve the global privacy and data protection program, ensuring it not only meets regulatory requirements but also supports scalable growth and competitive advantage in a fast-paced, high-growth environment
  • Partner closely with product, technology, payments, data, software and hardware sales, marketing, and strategy teams to embed privacy-by-design and data governance principles into all data-driven and payment-related initiatives
  • Advise on privacy, data protection, cross-border data processing, and emerging technologies (AI and machine learning), in connection with parking, public transport and other urban mobility technologies and data services (B2B, B2C), to help the company navigate these complex regulatory environments while accelerating innovation
  • Balance risk management with enabling agility—help business units achieve their ambitious growth objectives without compromising compliance or customer trust
  • Lead and manage a global, unified privacy and data protection team, including the EU Data Protection Officer and EU Privacy Program Manager, and serve as the global privacy and data protection leader responsible for harmonizing privacy and data protection practices across all regions
  • Act as the company’s U.S. and Canada Privacy Officer, overseeing all U.S.-specific and Canada-specific aspects of the global privacy and data protection program
  • Own enterprise-wide development, implementation, and continuous improvement of privacy and data protection policies, standards, and frameworks aligned with relevant global privacy and data protection-related regulations
  • Develop and maintain a privacy and data protection risk management framework and a dashboard of key privacy metrics to inform leadership decision making and monitor program effectiveness in a high-growth environment
  • Lead privacy and data protection audits and program assessments to ensure compliance and identify areas for improvement aligned with rapid company growth
Read More
Arrow Right

Cyber Manager's Control Assessment (MCA) Lead Analyst

This role will report to the Cybersecurity MCA Group Manager, responsible for pr...
Location
Location
Hungary , Budapest
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Have at least 8+ years of relevant experience
  • Experience in Manager’s Control Assessment (MCA), Operational Risk, Information Security, Cybersecurity, Risk Management, and/or Governance, Risk and Control (GRC)
  • Risk Management, Cybersecurity, and/or Project Management certifications are a plus (e.g. CRISC, CISA, CISM, CISSP, PMP)
  • Proven experience in implementing sustainable solutions and improving processes
  • Bring creative approaches to help us drive value for clients
  • Ability to influence decisions with senior leadership and business partners when confronted with differing opinions on information security risks
  • Proficiency with Microsoft Office, advanced Excel skills (e.g. macros, pivots, complex formulas)
  • Knowledge of data visualization/analytics business applications such as Tableau, QlikView, and Microsoft Power BI
  • Familiarity with Machine Learning and Artificial Intelligence (AI) is a plus
  • Fluent in English (ability to read, write, and speak)
Job Responsibility
Job Responsibility
  • Manage the planning, coordination, and execution of MCA Transformation program for CISO
  • Drive MCA best practices, transformation, and execution consistency across business/functions
  • Lead efforts in Global Process MCA Profiles (GPMPs) and Continuous Risk Management (CRM) for CISO
  • Gain expert-level knowledge of MCA Standard, Procedure, and tools to support future-state MCA
  • Support CISO Business Processes, Control Owners, and Global Assessment Unit (GAU) Owners in their responsibilities related to MCA execution
  • Identify and document key controls necessary for mitigation of cybersecurity risk
  • Be a hands-on Subject Matter Expert (SME) with the ability to drive problem solving and root cause analyses, simplify complex messages and summarize key points
  • Partner with CISO’s Enterprise Architecture Methodology (EAM) Lead team by which taxonomies and processes interlink with each other, establishing a multifaceted matrix to inform decision-making and simplification
  • Foster constructive dialogue and facilitate open discussion, sharing of knowledge and experience with customers and stakeholders
  • Actively manage relationships with CISO business partners and risk management teams to achieve sustained success
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Finance insurance and risk management

This position leads Global JSOX Finance Compliance & Governance, overseeing fina...
Location
Location
Japan , Tokyo
Salary
Salary:
15000000.00 - 19000000.00 JPY / Year
https://www.randstad.com Logo
Randstad
Expiration Date
April 10, 2026
Flip Icon
Requirements
Requirements
  • 15+ years of experience in public and/or corporate accounting, including JSOX/SOX risk assessment, internal controls, and compliance
  • University degree in Accounting, Finance, or related field
  • CPA or CIA certification preferred
  • Strong expertise in SOX/JSOX compliance, internal control reporting, and IFRS standards within public company environments
  • Proven organizational and communication skills with the ability to collaborate and influence stakeholders across functions
  • Extensive experience in multinational organizations, working effectively across diverse cultural contexts
  • Proficient with compliance management tools such as SAP GRC and AuditBoard SOX HUB
Job Responsibility
Job Responsibility
  • Leads Global JSOX Finance Compliance & Governance, overseeing financial reporting and fraud risk assessment programs to strengthen internal controls, risk management, and governance processes
  • Establishes and maintains global compliance frameworks as the “second line of defense,” including financial policies and processes to support and educate control owners
  • Requires strong interpersonal skills to collaborate with auditors and stakeholders across all organizational levels, with impartiality and integrity being essential
  • Partners with executive leadership to deliver management reporting, ensuring transparency on internal control testing, remediation progress, risk assessments, and audit findings
What we offer
What we offer
  • 健康保険,厚生年金保険,介護保険,雇用保険,労災保険
  • 日曜日,土曜日,祝日
  • 賞与 1000000
  • Fulltime
Read More
Arrow Right

Head of Security Governance, Risk & Compliance

We’re looking for a dynamic, experienced Head of GRC to lead our global governan...
Location
Location
Luxembourg , Luxembourg
Salary
Salary:
Not provided
ppro.com Logo
PPRO GmbH
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • A proven track record transforming traditional GRC frameworks (ISO27001, PCI DSS, SOC2) into modern, automated, developer-friendly control assurance programmes
  • Solid grounding in financial services regulation, payments, operational resilience, outsourcing/cloud guidelines etc.
  • Strong experience interacting with regulators and auditors (CSSF, FCA, etc.) and implementing regulatory requirements
  • Proven ability to run risk management processes, control frameworks and audit cycles
  • Experience evaluating technology, cyber and operational risks in a cloud-native environment
  • Engineering-first mindset, with an understanding of cloud-native architectures (AWS preferred) and how GRC requirements fit into engineering workflows
  • Experience with GRC tooling, workflow automation or process optimisation
  • Ability to translate regulatory requirements into practical, technical control expectations
  • Excellent communicator, capable of influencing executives, engineers, auditors and regulators
  • Pragmatic, commercially-minded, empathetic and customer-focused
Job Responsibility
Job Responsibility
  • Lead PPRO’s global Security GRC strategy and team, to support our international regulatory and compliance footprint
  • Oversee and enhance our ISO27001:2022 and PCI DSS v4.0 programmes, building a culture of continuous compliance through automation and control transformation
  • Partner with relevant functions to ensure ongoing DORA compliance, including security risk management, incident reporting, operational resilience testing and governance
  • Define and deliver a strategy for a pragmatic, high-value 2nd line automated control assurance programme, underpinned by relevant business metrics
  • Own and manage regulatory expectations on security topics by the CSSF in Luxembourg, FCA in the UK and other international bodies as relevant
  • Maintain and enhance PPRO’s security risk register, defining and delivering cross-organisation improvement and remediation roadmaps
  • Lead security control testing, issue management, KRI monitoring, SLA reporting and Board-level reporting
  • Act as Information Security Officer for PPRO’s local Luxembourg entity
  • Own third party security risk management and oversight for PPRO across the full procurement lifecycle
  • Partner closely with Engineering to build shared understanding and transform controls via thoughtful automation, streamlining evidence collection and control monitoring
What we offer
What we offer
  • Hybrid working with a 3 days / week on site expectation
  • Work from abroad policy, enabling employees to work remotely for up to another 30 days per year
  • €1,000 annual budget for professional growth
  • Leadership cafés, on-the-job training
  • Lunch Vouchers - 12,80euros x 18 / month
  • Enhanced family leave
  • Travel Insurance
  • Gym membership contribution
  • Mental Health Platform
  • Pet-friendly office
  • Fulltime
Read More
Arrow Right

Director, Security GRC Program Lead

Meta is seeking a highly skilled Security GRC Program Manager to join our Risk O...
Location
Location
United States , Bellevue
Salary
Salary:
227000.00 - 287000.00 USD / Year
meta.com Logo
Meta
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant experience as a leader and contributor in security risk management and compliance, including providing second-line oversight
  • Strong track record of operating effectively and influencing outcomes with Engineering, Product, GRC, and Legal partners
  • Extensive experience with Governance, Risk, and Compliance (GRC) and Legal functions
  • Deep expertise in security, with the ability to holistically understand relevant issues, partners, and products, and go deep on technical details
  • Proven ability to identify critical issues, balance competing priorities, translate technical and regulatory concepts for diverse audiences, and personally drive initiatives to completion
  • In-depth knowledge of complex global regulatory requirements (e.g., GDPR, SEC, PCI-DSS, NYDFS)
  • Demonstrated ability to build strong formal and informal networks with key influencers and decision makers inside and outside the company
  • Experience working in integrated privacy-security environments or familiarity with unified GRC frameworks across multiple risk domains
Job Responsibility
Job Responsibility
  • Lead and deliver on deeply complex, high-impact projects that shape Meta's risk profile and business trajectory
  • Proactively identify long-term, critical, and ambiguous problems, setting a clear vision and strategy for risk management in alignment with company goals
  • Partner with Central Security teams to analyze, streamline, and consolidate issues and risks from all sources (1LoD, 2LoD, 3LoD, external) into a clear, prioritized list for first-line-of-defense consumption and actioning
  • Integrate security risk management with Meta's Security Prioritization Framework (SPF) and contribute to capability maturity assessments to drive risk-based prioritization across the organization
  • Define and maintain clear interfaces and points of contact with the Security organization and other key partners, ensuring efficient governance and communication
  • Prepare regular updates and compliance documents to ensure Meta meets board and regulatory obligations, adapting processes and strategies to evolving regulatory and business environments
  • Drive cross-org execution, collaborating with Risk, Security, Legal, Product, and Engineering functions to deliver results and maximize impact
  • Champion organizational efforts to build and sustain diversity, culture, recruitment, onboarding, mentoring, and development programs, serving as a role model and mentor for others
  • Integrate learnings and best practices from/to sister 2LoD organizations (e.g., Integrity GRC, Privacy GRC), and partner with Product & Engineering teams on necessary second-line-of-defense tooling within the unified GRC framework
What we offer
What we offer
  • bonus
  • equity
  • benefits
Read More
Arrow Right

Finance Manager

We are seeking a Finance Manager to build and lead the finance function for Uber...
Location
Location
Taiwan , Taipei City
Salary
Salary:
Not provided
uber.com Logo
Uber
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • CPA/CA/ACCA or equivalent preferred
  • 6+ years of finance experience in regulated financial services or payments
  • Strong analytical skills
  • ability to work with large datasets and apply accounting fundamentals
  • Excellent communication skills in Mandarin and English
  • Ability to operate independently in lean, fast-paced environments
  • Based in Taiwan
  • open to travel for regulatory or operational needs
Job Responsibility
Job Responsibility
  • Build and lead all financial and accounting operations for UPT, ensuring full compliance with TPPSP and future EPI standards
  • Oversee safeguarding operations, reconciliation processes, and financial governance frameworks
  • Deliver timely, accurate regulatory, statutory, and management reporting
  • Act as finance lead for internal and external audits
  • Establish financial controls aligned with Uber’s GRC and global policies
  • Support strategic planning, licensing readiness, and new regulated product launches
  • Lead forecasting, financial planning, and cross-functional financial insights
  • Contribute to global REC initiatives on compliance, budgeting, and licensing
Read More
Arrow Right

Group Assurance Safety Manager

We care about our people and we take a positive approach to their health, safety...
Location
Location
United Kingdom , Manchester; London; Birmingham; Bristol
Salary
Salary:
Not provided
plus.net Logo
Plusnet
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Understanding and experience of UK & international Health and Safety management and legislation
  • Experience of undertaking audits / assurance and interpreting their findings
  • Formulating and presenting risk management improvement plans
  • Story-telling with data: Strong skills in building the case for change, drawing on data and analytical techniques where appropriate, and communicating this to business audiences
  • Business acumen: Knowledgeable in business strategy and the drivers of organisational performance, including people drivers of performance and financial literacy (e.g. business KPIs, business cases)
  • Essential qualifications: Holds NEBOSH General Certificate in Occupational Safety & Health (or equivalent) and ISO 45001 Auditor
Job Responsibility
Job Responsibility
  • Manages within an assigned area the implementation of the global HSE policies, its mission and vision set, aligning with the wider global strategy
  • Maintains local operating procedures that meet the requirements of both the Group’s HSE Integrated Management System and local laws
  • Implements assigned initiatives contributing to the implementation a HSE continuous improvement plan and operational compliance programme
  • Executes activities in fulfilling the HSE function’s reporting capabilities leading the development of management information reports for the global Risk, Business Assurance and Compliance management team expectations
  • Executes activities that ensure Group stakeholders adhere to robust processes that exceed the minimum legal HSE compliance requirements within the operating countries it is present in and establishes and embeds a HSE assurance programme to monitor legal compliance
  • Facilitates collaborative working partnerships and peer to peer relationships both within the function and across operations and wider stakeholders, to facilitate the achievement of objectives whilst promoting the best working practice and consistently high standards of HSE
  • Facilitates coordination of the necessary relationships with third parties, including enforcement agencies and audit bodies, clients and customers to reduce risk and continually improve the Group’s HSE reputation
  • Executes activities in ensuring all Group and Group supplier locations are risk profiled and that the risk profiling drives the HSE compliance monitoring and assurance programme
  • Leads and supports the development of initiatives and best practice activities in all areas of HSE management
  • Mentors other HSE professionals, helping to improve the team’s abilities by acting as a technical resource
What we offer
What we offer
  • Annual On target bonus 10% (personal and company multipliers)
  • BT Pension scheme
  • minimum 5% employee contribution, BT contribution 10%
  • Life Assurance
  • Direct share scheme
  • Exclusive colleague discounts on our latest and greatest BT broadband packages
  • 50% off EE mobile pay monthly or SIM only plans and 50% discount for friends and family on EE SIM only plans
  • My Discounts gives colleagues access to unbeatable savings on everyday purchases at hundreds of retailers
  • Discounted EE TV including TNT Sport and the NOW Entertainment membership
  • Great support for working parents including pay whilst on maternity, adoptive, and paternity leave
  • Fulltime
Read More
Arrow Right

Global GRC Manager

We are seeking an experienced GRC professional to lead governance, risk manageme...
Location
Location
United Kingdom , Birmingham
Salary
Salary:
60000.00 - 75000.00 GBP / Year
triarecruitment.com Logo
TRIA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant experience in information and cyber security governance, risk, and compliance roles, in a global context
  • Deep knowledge of cyber security operations, incident response, threat intelligence, and vulnerability management.
  • In-depth knowledge of regulatory requirements, security frameworks and industry standards (e.g., ISO 27001, NIST, ITIL).
  • Hands-on experience with cloud security governance, particularly Microsoft Azure
Job Responsibility
Job Responsibility
  • Lead governance, risk management, and compliance initiatives
  • Drive adoption of security policies and motivate teams to align with the organisation's mission, vision, and values
  • Oversee the development and maintenance of security governance, risk management, and compliance frameworks across all regions
  • Ensure alignment with cyber security strategy and regulatory standards
  • Work closely with leadership, technology teams, and compliance stakeholders to maintain a strong security posture enterprise-wide
What we offer
What we offer
  • 20% Bonus
  • Fulltime
Read More
Arrow Right