Related skills
gdpr ccpa vanta soc 2 coso📋 Description
- Design and operate a comprehensive GRC framework across governance, risk, and compliance.
- Own SOC 2 and audit programs; coordinate with internal teams and auditors.
- Develop and maintain CloudZero’s security and privacy policies; embed into operations.
- Lead enterprise risk assessments; maintain a living risk register.
- Build AI governance and strategic risk strategy; enable risk-informed decisions.
- Own business continuity and disaster recovery programs with testing.
🎯 Requirements
- 5+ years in governance, risk, and/or compliance roles in SaaS/cloud.
- Proven GRC program build/maturation with SOC 2 audits.
- Knowledge of COSO, ISO 31000, or NIST RMF.
- Strong understanding GDPR/CCPA and privacy controls.
- Strong communicator; make risk issues actionable for teams and leaders.
- Able to drive initiatives from scoping to completion across multiple workstreams.
🎁 Benefits
- Hybrid work schedule with 2-3 in-office days per week.
- Equal opportunity employer; diversity and inclusion.
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Legal Jobs. Just set your
preferences and Job Copilot will do the rest — finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!