CrawlJobs Logo

Grc Specialist

airwallex.com Logo

Airwallex

Location Icon

Location:
United States , San Francisco

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

150000.00 - 200000.00 USD / Year

Job Description:

As a Governance Risk and Compliance Specialist here at Airwallex, you will be a trusted member of the Information Security team. Reporting to the InfoSec GRC Manager, this role will see you becoming a critical part of Airwallex’s global mission, helping to proactively identify and mitigate information security risks to the organisation, as well as designing and implementing policies and procedures that are innovative, challenging the traditional norms of the industry. You’ll work closely with Legal, Engineering, and senior leadership regarding international regulatory compliance, data privacy and other aspects of risk and data governance.

Job Responsibility:

  • Manage the body of security controls and documentation
  • Implement automation and monitoring information security controls, exceptions, risks, and testing
  • Implement an innovative security risk program that aligns to regulatory requirements
  • Develop and maintain security standards and policies, reporting metrics, dashboards, and evidence artefacts
  • Develop resources to help non-technical employees understand information security and compliance requirements
  • Partner with other Airwallex teams to build collaboration, and establish shared responsibilities and resources for security, data protection and governance, risk management, and privacy

Requirements:

  • Deep knowledge of relevant compliance, regulatory and control frameworks including PCI-DSS, ISO 27001, SOC2 and similar standards
  • Involved in at least one completed security audit
  • Working knowledge of technology policy creation and maintenance
  • A strong familiarity with Information Security concepts, practices, and solutions
  • A working understanding of complex cloud environments
  • An understanding of financial services or payments, especially prior work experience with the fintech industry
  • A passion for solving the complex challenges of high-growth startups
  • An industry-leading security degree or certification is highly desired (e.g., BS or MS in Cybersecurity
  • or a CISSP, CEH, CISA)
  • Professional or native level of Portuguese language skills

Nice to have:

  • Engineering experience of any kind
  • Software development or IT background
  • Experience in project management and robust design
What we offer:
  • Offers Equity
  • Offers Bonus
  • Medical, dental, and vision insurance
  • 401(k) plan
  • Short-term and long-term disability
  • Basic life insurance
  • Well-being benefits
  • 20 paid days of vacation
  • 12 paid days of company holidays

Additional Information:

Job Posted:
February 21, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Grc Specialist

GRC Specialist

This Contract to permanent position is essential for managing customer-facing tr...
Location
Location
United States , Lincolnshire
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 5 years of experience in governance, regulatory compliance, or risk management roles
  • Hands-on experience managing SOC 2 compliance programs, including readiness assessments and audits
  • Strong knowledge of U.S. education regulatory requirements, including FERPA and state-level student data privacy laws
  • Proven track record in compliance due diligence and integration activities for mergers and acquisitions
  • Demonstrated project management experience with successful delivery of multiple projects
  • Familiarity with compliance monitoring tools and platforms
  • Excellent analytical and problem-solving skills to interpret regulatory language into actionable processes
Job Responsibility
Job Responsibility
  • Oversee the management and execution of customer-facing trust and compliance programs
  • Ensure compliance with U.S. K-12 education regulatory requirements, including laws related to student data privacy
  • Lead and manage SOC 2 compliance programs, including control implementation and audit processes
  • Conduct due diligence and integration activities for mergers and acquisitions to mitigate compliance risks
  • Translate complex regulatory requirements into actionable business processes and controls
  • Identify and assess risks related to data privacy and governance within the education sector
  • Collaborate with stakeholders across various levels to maintain compliance standards and address regulatory concerns
  • Monitor compliance using appropriate platforms and tools, ensuring continuous adherence to frameworks
  • Develop and implement strategies for readiness assessments and security audits
  • Provide expertise in frameworks such as ISO 27001 and other relevant certifications
What we offer
What we offer
  • Medical, vision, dental, and life and disability insurance
  • 401(k) plan
  • Free online training
  • Fulltime
Read More
Arrow Right

Auditboard Grc Implementation Specialist

Arthur Lawrence is looking for an AuditBoard GRC Implementation Specialist one o...
Location
Location
United States , Houston
Salary
Salary:
Not provided
arthurlawrence.net Logo
Arthur Lawrence
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience implementing AuditBoard platform, including WorkStream survey customization, project launch support & platform governance
  • Strong technical acumen with API-based integrations & automation across GRC ecosystems (e.g., Jira, Workday, Oracle, Coupa, ServiceNow)
  • Leadership in designing & operationalizing technical solutions that drive automation, adoption & compliance.
Read More
Arrow Right

Digital Assurance Senior Specialist

We are currently looking for a Digital Assurance Senior Specialist to join our I...
Location
Location
Greece , Athens
Salary
Salary:
Not provided
https://www.metlengroup.com Logo
Metlen Group
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Computer Information Systems, Engineering, Finance, Business Administration, or a related field
  • 7+ years of client-facing experience delivering Digital Assurance services, with a background in Cyber/IT audit, SOX IT audits, and IT risk advisory
  • Hands-on experience auditing IT general controls, financial IT systems (e.g. Windows, Linux, SAP, Oracle, SQL), and cloud environments (e.g. AWS, Azure, AI tools)
  • Familiarity with IT standards and frameworks such as ISO 27001, COBIT, NIST, NIS2, and the AI Act
  • Certified in CISA, CRISC, CGEIT, CISM, ITIL, ISO 27001/LA, or similar credentials
  • Skilled in agile ways of working, sprint management, stakeholder engagement, and producing high-quality reports
  • Strong analytical, communication, and problem-solving skills, with a high sense of confidentiality
  • Fluent in English and willing to travel both in Greece and internationally
Job Responsibility
Job Responsibility
  • Apply the Internal Audit strategy/policies, update the Digital Audit and Assurance strategy and prepare the Digital Assurance annual plan
  • Participate in digital assurance engagements, ensuring the delivery of high-quality, tech-enabled solutions
  • Collaborate with business units to understand their systems and technologies and provide recommendations to mitigate risks
  • Develop and utilize GRC, data analytics and other innovative tools to help business units identify, assess and manage risk and controls during their transformation journey
  • Work closely with external audit teams and internal cybersecurity teams to ensure comprehensive risk management
  • Stay updated with emerging technologies (e.g., cloud, AI, cybersecurity) and provide insights to integrate them into client solutions
  • Provide mentorship to junior team members, fostering a culture of continuous learning and improvement
What we offer
What we offer
  • Competitive remuneration package
  • Ticket Restaurant Card
  • Group Health Insurance Plan
  • Preferential household electricity plan
  • Pension Plan
  • Fulltime
Read More
Arrow Right

Senior Specialist, Customer Assurance

We’re looking for a Senior Specialist, Customer Assurance to help us manage and ...
Location
Location
Canada , Vancouver
Salary
Salary:
78400.00 - 109800.00 CAD / Year
hootsuite.com Logo
Hootsuite
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Demonstrated years of experience in a security, privacy, customer assurance, or compliance related role (e.g., Security Specialist, Security Support Specialist, Privacy Specialist, GRC Specialist, Information Security or Compliance Auditor) and/or relevant experience in SaaS or technology industry
  • Bachelor’s degree or equivalent industry experience
  • Previous experience leading a high volume support request queue
  • Working knowledge of content management or content automation systems
  • Solid understanding of information security, privacy, risk, and compliance
  • Ability to work within tight deadlines and under pressure
  • Commitment to Results: consistently achieves results, demonstrating high performance, and challenging self and others to deliver result
  • Priority Setting: focuses time/energy on the most important issues/opportunities. Clearly understand how to assess the importance of tasks and decisions
  • Collaboration and Teamwork: works with others to deliver results, meaningfully contributing to the team and prioritizing group needs over individual needs
  • Accountability: holds self and others accountable to meet commitments
Job Responsibility
Job Responsibility
  • Communicate directly with internal stakeholders and external customers to understand and address their security, privacy, AI, and compliance concerns, acting as the primary point of contact on these matters for Hootsuite’s GNB and C&E Teams
  • Collaborate on the security, privacy and AI support process and build strong relationships with teams across the organization (e.g., Sales, Security, Privacy, Product and Technology, Legal), sharing best practices and learnings on what customers need to ensure they’re protected
  • Coordinate, qualify and prioritize a high volume queue of customer assurance review requests
  • Accountable for the accurate completion of customer assurance reviews (e.g., questionnaires) and similar customer requests (e.g., contracts) within tight deadlines
  • Provide expertise and support with RFPs (and similar documents) for Hootsuite’s GNB and C&E Teams
  • Maintain and further develop the capabilities of an AI-driven response automation tool and customer facing Trust Center to aid in driving process and response efficiency
  • Facilitate regular enablement sessions and knowledge sharing to update GNB and C&E teams on new security, privacy and AI support, processes and collateral
  • Manage Salesforce and other reports (e.g., Trust Center reports) that track Customer Assurance program metrics
  • share key data insights with stakeholders on successes, failure points and key learnings from customer review requests
  • Oversee the maintenance of security, privacy and AI collateral and certifications including Trust Center, CAIQ, SIG , etc
What we offer
What we offer
  • Canadian Benefits: health insurance including medical, dental, vision, life/disability insurances
  • Employee and Family Assistance Program
  • group RRSP plan with a company match of up to 4% of base salary
  • US Benefits: health insurance including medical, dental, vision, and life/disability insurances
  • 401k Plan with a company match (up to 4% of base salary)
  • Employee and Family Assistance Program
  • Global Parental Leave: 26 weeks of full and partially paid leave for eligible employees
  • Fulltime
Read More
Arrow Right
New

Staff GRC Risk Specialist

Crusoe's mission is to accelerate the abundance of energy and intelligence. We’r...
Location
Location
United States , San Francisco
Salary
Salary:
130000.00 - 170000.00 USD / Year
crusoe.ai Logo
Crusoe
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7+ years of experience in GRC, security engineering, or IT risk roles with strong product and architecture fluency
  • Proven ownership of risk management programs, including risk registers, technical risk assessments, and executive-level reporting
  • Deep knowledge of security and risk frameworks (ISO 27001, ISO 42001, SOC 2, NIST 800-53, NIST CSF, NIST AI RMF, HIPAA) and their application to real-world systems
  • Strong understanding of cloud-native architectures and security controls across AWS, GCP, or Azure
  • Experience with GRC platforms (e.g., Vanta, Drata, OneTrust, ServiceNow GRC) and workflow tools such as Jira Service Management
  • Demonstrated ability to leverage AI-powered tools and agents to automate GRC workflows and scale risk operations
Job Responsibility
Job Responsibility
  • Owning the enterprise risk function, including development and continuous improvement of the Risk Register across identification, assessment, mitigation, and monitoring
  • Conducting deep technical risk assessments across AI systems and products, data architectures, and inference infrastructure
  • Reviewing risk for new products, features, applications, and datasets to embed security and compliance early in the development lifecycle
  • Tracking mitigation efforts, escalating critical risks, and providing clear, contextualized risk insights to stakeholders and leadership
  • Designing and delivering executive risk reporting, including quarterly briefings on emerging regulations, business changes, and compliance impact forecasts
  • Building real-time risk and control health dashboards using GRC and data visualization platforms
  • Leading AI risk assessments aligned with emerging standards (e.g., ISO 42001, NIST AI RMF, EU AI Act considerations)
  • Optimizing AI risk intake and assessment workflows within Jira Service Management (JSM) Atlassian
  • Leveraging AI-driven automation to scale risk activities such as control mapping, evidence validation, and risk correlation analysis
  • Owning the Third-Party Risk Management program, including vendor risk assessments and integration with procurement and vendor workflows
What we offer
What we offer
  • Restricted Stock Units in a fast growing, well-funded technology company
  • Health insurance package options that include HDHP and PPO, vision, and dental for you and your dependents
  • Employer contributions to HSA accounts
  • Paid Parental Leave
  • Paid life insurance, short-term and long-term disability
  • Teladoc
  • 401(k) with a 100% match up to 4% of salary
  • Generous paid time off and holiday schedule
  • Cell phone reimbursement
  • Tuition reimbursement
  • Fulltime
Read More
Arrow Right
New

SAP Security & GRC Specialist

We are looking for a SAP S/4HANA Security & GRC Specialist to ensure secure acce...
Location
Location
Colombia , Medellín
Salary
Salary:
85000.00 - 90000.00 COP / Year
algoteque.com Logo
Algoteque
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in SAP S/4HANA Security and GRC
  • Strong understanding of S/4HANA authorization and Fiori role concepts
  • Experience with SAP GRC Access Control
  • Knowledge of compliance frameworks (e.g. SOX)
  • Strong attention to detail and documentation skills
Job Responsibility
Job Responsibility
  • Design, build, and maintain SAP S/4HANA roles and authorizations
  • Manage user access, provisioning, and role assignments
  • Implement and support SAP GRC Access Control processes
  • Perform Segregation of Duties (SoD) analysis and remediation
  • Support internal and external audits, including SOX controls
  • Ensure compliance with security policies and regulatory requirements
  • Document security procedures and maintain authorization concepts
  • Fulltime
Read More
Arrow Right
New

Grc Specialist – Cyber Resilience

Are you passionate about governance, risk, and compliance in the field of cybers...
Location
Location
Belgium , Brussels
Salary
Salary:
Not provided
apollo-solutions.com Logo
Apollo Solutions
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3–7+ years of experience in GRC, cybersecurity governance, or ICT risk management
  • Strong knowledge of cyber resilience principles and control frameworks (ISO 27001, NIST, COBIT, etc.)
  • Experience with regulatory environments (e.g., financial services, critical infrastructure, or public sector) is a plus
  • Understanding of operational resilience, business continuity, and incident response governance
  • Strong analytical, documentation, and stakeholder management skills
  • Fluency in English (French or Dutch is an asset)
Job Responsibility
Job Responsibility
  • Conduct cyber resilience and GRC maturity assessments
  • Develop and implement governance frameworks aligned with industry standards and regulatory requirements
  • Perform enterprise and ICT risk assessments
  • Design and maintain policies, procedures, and control documentation
  • Support business continuity, incident management, and resilience testing initiatives
  • Assess and manage third-party risk and supply chain resilience
  • Provide strategic advisory support to executive leadership and boards
  • Monitor evolving cybersecurity and resilience-related regulatory developments
What we offer
What we offer
  • Competitive salary and benefits package
  • Flexible hybrid working model in Brussels
  • Ongoing professional development and certification support
Read More
Arrow Right
New

Senior GRC specialist

At JFrog, we’re reinventing DevOps to help the world’s greatest companies innova...
Location
Location
Israel , Netanya/Tel Aviv
Salary
Salary:
Not provided
jfrog.com Logo
JFrog
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of direct experience in Information Security GRC, Risk Management, or Audit, preferably acquired within a high-growth SaaS or cloud-native environment
  • A proactive, self-starting mentality with strong analytical, project management, and problem-solving skills, with proven ability to validate your own work and drive tasks to completion independently
  • Demonstrable expertise in managing core compliance programs (SOC 2, ISO 27001)
  • Experience pursuing net-new compliance certifications and initiatives (e.g., R, C5, TISAX, IRAP)
  • Experience developing, drafting, and implementing security policies and standards from the ground up in a tech-focused environment, harmonizing controls across frameworks to create agile standards
  • Experience leading complex security audits, serving as a primary liaison and "in-the-room" lead during internal and external audits
  • Strong understanding of information security principles, risk management, and control frameworks in a cloud-first environment (AWS, GCP, Azure)
  • Exceptional communication and interpersonal skills, with a proven ability to build relationships and influence change across engineering, product, and business teams, and the ability to write concise, "Executive Ready" policies and risk reports
  • Hands-on experience with GRC platforms and a drive to automate manual GRC workflows
  • Bachelor’s degree in Cybersecurity, Information Technology, Law, or a related field, or equivalent practical experience
Job Responsibility
Job Responsibility
  • Drive Security Framework Adoption (New Markets): Lead the strategic adoption of net-new security frameworks to unlock business markets
  • Oversee the Security Certification Program: Oversee the end-to-end execution of our security assurance portfolio (ISO 27001, SOC 2)
  • Lead Security Audits: Serve as a primary GRC contact for internal and external audits. You'll coordinate evidence gathering, craft management responses, and drive the remediation of findings
  • Lead Governance Initiatives: Develop, maintain, and enhance the enterprise-wide security GRC framework, policies, standards, and procedures, ensuring they align with our cloud-native and SaaS environment
  • Risk Management & TPRM: Evolve our Third-Party (TPRM) and Internal Security Risk programs, including executing and documenting comprehensive risk assessments, ensuring that findings are remediated and clearly aligned with JFrog’s risk appetite
  • Collaborate Cross-Functionally: Partner with engineering, product, IT, and legal teams to embed security controls into daily business operations, ideally automated
  • Mentor & Advise: Act as a subject matter expert on governance and risk for the wider organization and provide mentorship to junior GRC team members
Read More
Arrow Right