CrawlJobs Logo

Senior Governance, Risk & Compliance Lead

oneplan.ai Logo

OnePlan Solutions

Location Icon

Location:
United States

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

OnePlan is looking for a Senior Governance, Risk & Compliance Lead to own and operate our security, privacy, and compliance programs. This role is responsible for maintaining OnePlan’s existing certifications including SOC 2 Type II, ISO 27001, and ISO 27701, while leading our FedRAMP Moderate readiness initiative as we expand into public sector markets. This is a senior individual contributor role focused on building and operationalizing a scalable governance, risk, and compliance program within a Microsoft based SaaS ecosystem.

Job Responsibility:

  • Own and manage OnePlan’s governance, risk, and compliance program across security and privacy frameworks
  • Maintain the company’s compliance certifications including SOC 2 Type II, ISO 27001, and ISO 27701, ensuring ongoing audit readiness and successful surveillance audits and recertifications
  • Coordinate with external auditors and manage evidence collection, control validation, and supporting documentation
  • Maintain and update security policies, procedures, and internal documentation supporting compliance frameworks
  • Maintain the company risk register and drive risk identification, assessment, and remediation activities across the organization
  • Partner closely with Engineering and IT teams to implement and document security controls across the platform
  • Lead OnePlan’s FedRAMP Moderate readiness initiative, including NIST 800-53 gap assessments and remediation planning
  • Develop and maintain the System Security Plan (SSP) and associated FedRAMP documentation
  • Prepare the organization for 3PAO assessment and establish processes for ongoing continuous monitoring
  • Manage vendor risk assessments and third party security reviews
  • Support enterprise and public sector security questionnaires, compliance reviews, and due diligence requests
  • Ensure privacy and data protection practices align with GDPR and global privacy frameworks
  • Support the ongoing operation of OnePlan’s ISO 27701 privacy program

Requirements:

  • 6+ years of experience in governance, risk and compliance, information security, or security compliance roles
  • Direct experience managing SOC 2 Type II and ISO 27001 audits and maintaining ongoing compliance programs
  • Strong understanding of NIST 800-53 and FedRAMP security requirements
  • Experience using compliance automation platforms such as Vanta or similar tools
  • Experience working in a cloud native SaaS environment, ideally within Azure
  • Strong documentation, audit management, and cross functional coordination skills
  • Ability to translate security and compliance requirements into practical operational processes
  • Experience leading or supporting FedRAMP readiness or authorization programs

Nice to have:

  • Professional certifications such as CISSP, CISM, CISA, CRISC, ISO 27001 Lead Implementer/Auditor, or CIPP
  • Experience supporting enterprise security reviews and government compliance requirements
  • Experience working in high growth SaaS or enterprise software companies
What we offer:
  • We offer comprehensive health, dental, and vision benefits, with additional insurance options
  • Employer RRSP and 401K matching programs
  • A fun, collaborative, and diverse environment with regular health and team challenges to keep things light and enjoyable

Additional Information:

Job Posted:
March 12, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Senior Governance, Risk & Compliance Lead

Senior Data Governance Lead

The Data Governance Foundation Sr Lead Analyst is responsible for leading activi...
Location
Location
Ireland , Dublin
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in Banking or Finance industry preferred in Data Governance/Data Management/Process Engineering or related area
  • Excellent communication skills with ability to negotiate internally at senior level
  • Developed communication and diplomacy skills to guide and influence others
  • Strong negotiation, influencing and stakeholder management skills across various levels
  • Experience in business analysis including collection, analysis, review and documentation of business needs
  • Working knowledge of Data Operating Model practices, Data Governance and Data Compliance within large financial services firms
  • Organizational savvy with understanding of systems and management processes
  • Bachelor's/University degree, Master's degree preferred
Job Responsibility
Job Responsibility
  • Lead activities contributing to definition of Enterprise Data Governance Strategy and/or Data Risk and Control Framework
  • Lead implementation of Data Governance Policy/Data Risk and Control framework
  • Liaise with partners to establish, manage and implement policy adoption plans, compliance metrics, communications and training
  • Lead business analysis and align requirements with Data Governance standards
  • Contribute to establishment of Data Governance standards in alignment with Enterprise Chief Data Office
  • Support key Data Transformation projects as Subject Matter Expert in data policies
  • Lead activities to ensure roles and responsibilities related to data are understood and implemented
  • Collaborate with colleagues to ensure timely execution of milestones and provide risk reporting
  • Capture requirements, develop delivery plans and manage entire lifecycle of metrics and report production
  • Assess risk when making business decisions and drive compliance with applicable regulations
What we offer
What we offer
  • Career growth opportunities
  • Mentorship
  • Continuous learning
  • Flexibility with potential hybrid work opportunities
  • Global benefits supporting well-being, growth and work-life balance
  • Fulltime
Read More
Arrow Right

Third Party Risk Senior Lead

This is a pivotal role where you’ll act as the key liaison between the central T...
Location
Location
United States , Austin
Salary
Salary:
Not provided
weareorbis.com Logo
Orbis Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience representing central risk or compliance functions across the Americas
  • Strong background in third-party risk management, including localisation, governance, and oversight
  • Hands-on experience supporting audits, exams, and IntraGroup risk activities
  • Exceptional communication skills, with the ability to engage senior stakeholders and influence outcomes
  • Highly organised, detail-oriented, and able to manage multiple priorities independently in a fast-paced environment
  • A strategic thinker with a process improvement mindset and long-term vision
Job Responsibility
Job Responsibility
  • Lead TPRM in your region – oversee localisation, regulatory mapping, outsourcing registers, and ensure compliance with group policies
  • Strengthen risk oversight – support risk assessments, monitor local controls, and escalate deviations with corrective actions
  • Represent Third Party Risk – act as the primary TPRM contact in local committees, governance forums, and syncs
  • Support audits & exams – ensure documentation and responses align with group frameworks, driving consistent global standards
  • Guide IntraGroup activity – coordinate materiality assessments and exit strategies, ensuring alignment with group-wide policies
What we offer
What we offer
  • relocation package included
  • Fulltime
Read More
Arrow Right

Third Party Risk Senior Lead

This is a pivotal role where you’ll act as the key liaison between the central T...
Location
Location
United States , Austin
Salary
Salary:
Not provided
weareorbis.com Logo
Orbis Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience representing central risk or compliance functions across the Americas
  • Strong background in third-party risk management, including localisation, governance, and oversight
  • Hands-on experience supporting audits, exams, and IntraGroup risk activities
  • Exceptional communication skills, with the ability to engage senior stakeholders and influence outcomes
  • Highly organised, detail-oriented, and able to manage multiple priorities independently in a fast-paced environment
  • A strategic thinker with a process improvement mindset and long-term vision
Job Responsibility
Job Responsibility
  • Lead TPRM in your region – oversee localisation, regulatory mapping, outsourcing registers, and ensure compliance with group policies
  • Strengthen risk oversight – support risk assessments, monitor local controls, and escalate deviations with corrective actions
  • Represent Third Party Risk – act as the primary TPRM contact in local committees, governance forums, and syncs
  • Support audits & exams – ensure documentation and responses align with group frameworks, driving consistent global standards
  • Guide IntraGroup activity – coordinate materiality assessments and exit strategies, ensuring alignment with group-wide policies
What we offer
What we offer
  • relocation package included
  • Fulltime
Read More
Arrow Right

Third Party Risk Senior Lead

This is a pivotal role where you’ll act as the key liaison between the central T...
Location
Location
United States , Austin
Salary
Salary:
Not provided
weareorbis.com Logo
Orbis Consultants
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience representing central risk or compliance functions across the Americas
  • Strong background in third-party risk management, including localisation, governance, and oversight
  • Hands-on experience supporting audits, exams, and IntraGroup risk activities
  • Exceptional communication skills, with the ability to engage senior stakeholders and influence outcomes
  • Highly organised, detail-oriented, and able to manage multiple priorities independently in a fast-paced environment
  • A strategic thinker with a process improvement mindset and long-term vision
Job Responsibility
Job Responsibility
  • Lead TPRM in your region – oversee localisation, regulatory mapping, outsourcing registers, and ensure compliance with group policies
  • Strengthen risk oversight – support risk assessments, monitor local controls, and escalate deviations with corrective actions
  • Represent Third Party Risk – act as the primary TPRM contact in local committees, governance forums, and syncs
  • Support audits & exams – ensure documentation and responses align with group frameworks, driving consistent global standards
  • Guide IntraGroup activity – coordinate materiality assessments and exit strategies, ensuring alignment with group-wide policies
  • Fulltime
Read More
Arrow Right

Senior Data Governance Lead

The Data Governance Foundation Sr Lead Analyst is responsible for leading activi...
Location
Location
United Kingdom , Belfast
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience, Banking or Finance industry preferred in a Data Governance/ Data Management/ Process Engineering or related area
  • Communicates effectively, develops and delivers multi-mode communications that convey a clear understanding of the unique needs of different audiences
  • able to drive consensus, and influence relationships at all levels
  • Collaborates effectively by building partnerships and working well with others to meet shared objectives
  • Strong negotiation, influencing and stakeholder management skills across a variety of stakeholders at different levels
  • Optimizes work processes by balancing effective / efficient processes with a focus on continuous improvement. Demonstrates ability to balance between seeing the "big picture" while paying close attention to detail
  • Organizational savvy: understands systems, management processes, knows where to go for information and how to interpret them
  • Working knowledge of Data Operating Model practices, Data Governance and Data Compliance within large, financial services firms
  • Bachelor's/University degree, Master's degree preferred
Job Responsibility
Job Responsibility
  • Liaise with partners to lead in establishing, managing and implementing policy adoption plans, compliance metrics, communications and training
  • Lead business analysis through collection, analysis, review, documentation and communication of business needs and requirements, to understand requirements and aligning these to Data Governance and/or Data Risk and Controls standards to drive appropriate solutions
  • Contribute to the establishment of Data Governance and/or Data Risk and Controls standards in alignment with Enterprise Chief Data Office, and ensure proper documentation of processes
  • Support key Data Transformation projects across the organization as Subject Matter Expert in data policies
  • Lead activities to ensure roles and responsibilities related to data are understood and implemented across businesses
  • Collaborate with colleagues to ensure timely execution of milestones, provide reporting of potential risks to delivery, and incorporate milestone reporting and changes
  • Capture requirements, develops delivery plans and manages the entire lifecycle of metrics and report production
  • Appropriately assess risk when business decisions are made, demonstrating particular consideration for the firm's reputation and safeguarding Citigroup, its clients and assets, by driving compliance with applicable laws, rules and regulations, adhering to Policy, applying sound ethical judgment regarding personal behavior, conduct and business practices, and escalating, managing and reporting control issues with transparency
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Princeton
Salary
Salary:
115000.00 - 126000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process, ensuring data relevant to ongoing or anticipated litigation is properly identified, preserved, and tracked throughout Litigation Hold lifecycle
  • Lead internal data collections in response to audits, investigations or internal reviews, ensuring completeness, chain of custody, and evidentiary standards are met
  • Lead process for maintaining enterprise data map, ensuring all data assets, flows, and repositories are documented, regularly reviewed, and updated for accuracy
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets across systems and platforms
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement of data governance practices
  • Prepare and deliver training, guidance, and communications to staff regarding electronic data governance, best practices, and compliance obligations
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Chicago
Salary
Salary:
105000.00 - 120000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process, ensuring data relevant to ongoing or anticipated litigation is properly identified, preserved, and tracked throughout Litigation Hold lifecycle
  • Lead internal data collections in response to audits, investigations or internal reviews, ensuring completeness, chain of custody, and evidentiary standards are met
  • Lead process for maintaining enterprise data map, ensuring all data assets, flows, and repositories are documented, regularly reviewed, and updated for accuracy
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets across systems and platforms
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement of data governance practices
  • Prepare and deliver training, guidance, and communications to staff regarding electronic data governance, best practices, and compliance obligations
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , San Francisco
Salary
Salary:
126000.00 - 132000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process
  • Lead internal data collections in response to audits, investigations or internal reviews
  • Lead process for maintaining enterprise data map
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets
  • Collaborate with cross-functional teams to identify risks, close control gaps, and support continuous improvement of data governance practices
  • Prepare and deliver training, guidance, and communications to staff regarding electronic data governance
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right