Lead efforts for strengthening security and privacy posture.
Ensure adherence to regulatory and industry standards.
Build and manage a security GRC framework protecting from cyber risks.
Ensure compliance with security regulations and enables business resilience.
Partner with technical and business teams.
Requirements
Bachelor’s Degree; Minimum 5+ years of technology project/program management.
Ability to effectively work as part of a cohesive and agile team.
Ability to manage security audits and frameworks (e.g., PCI, ISO, SOC 1, SOC2, NIST)
Ability to manage privacy audits and frameworks (e.g., GDPR, CPRA, CCPA, PIPEDA)
Ability to manage AI audits and frameworks (e.g., ISO 42001)
Ability to remain organized and to elicit cooperation from a wide variety of sources, including team members, other internal departments, and external parties.
Ability to effectively prioritize and execute tasks in a high-pressure environment and react to project adjustments and alterations promptly and efficiently.
Ability to exercise good judgment and discretion in confidential matters.
Demonstrable experience interacting with auditors and strategic partners in cloud-based environments similar to Emburse, relating to assurance frameworks such as SOX, PCI DSS, ISO27001, SOC 2 Trust Principles, Business Continuity and Disaster Recovery and Third-Party Risk Management.
Implemented or maintained Drata (or other GRC tools)