Skip to main content
Posted September 22, 2021
Blockchains

Director, Product & Technology Governance, Risk, and Compliance (GRC)

610 Waltham Way, Sparks, NV Full Time

You are a risk-minded problem solver that is highly experienced in implementing GRC programs for Software Products and technology teams. You are...

You are a risk-minded problem solver that is highly experienced in implementing GRC programs for Software Products and technology teams. You are responsible for creating, implementing, managing, auditing, reporting compliance, and ensuring our internal products and technology programs meet or exceed industry-specific regulations. This includes hiring and leading a high-performing team to support efforts such as:

Responsibilities

  • Creating and implementing a GRC strategy to assist in guiding engineering teams in a manner that promotes innovation while ensuring products are designed with compliance in highly regulated industries.
  • Designing and integrating a GRC program for all regulated products and supporting technology services that comply with applicable laws and regulations, including, but not limited to, SOC2 compliance, identity platforms, and digital asset custody services.
  • Working closely with regulated financial institutions as a financial services technology vendor to integrate the financial institution’s products into the Company’s software platform.
  • Developing and maintaining GRC plans, strategies, and policies to support and align with Company initiatives and regulatory compliance. Defining and participating in long-term strategy and planning for GRC programs.
  • Conducting evaluations and audits of IT, Cybersecurity, and Engineering programs to determine compliance with policies, standards, and guidelines.
  • Leading and managing the third-party and vendor risk management program and lifecycle.
  • Documenting and performing risk assessments and due diligence reviews for third parties and vendors.
  • Responding to security assessments, questionnaires, and audits from customers and business partners.
  • Leading the creation and maintenance of technology & security policies, standards, processes, and guidelines for approval by management.
  • Leading the SOC compliance program globally.
  • Keeping abreast of ongoing trends and changes within the GRC community, compliance developments, particularly those impacting the blockchain, cryptocurrency, custody, and identity industries globally, federally, and at state levels.

Cross-Departmental Support

  • Working closely with IT, Cybersecurity, and Engineering teams to provide pragmatic and actionable advice and ensure that all technical solutions and product offerings are properly designed, secured, and operated in compliance with applicable regulations.
  • Monitoring compliance activities within all departments and collaborating with department heads to identify non-compliance trends, including determining compliance metrics and establishing a system for real-time tracking and reporting.
  • Leading Company’s data and privacy initiatives to comply with global data and privacy regulations.
  • Advising the Regulatory Strategy & Affairs team on legislative and regulatory initiatives.
  • Acting as the primary compliance representative with state and federal regulators.
  • Overseeing and managing third-party vendors providing compliance services.
  • Maintaining and supporting a culture of governance, risk, and compliance.

Management of GRC Department

  • Overseeing all aspects of the Company’s IT, Cybersecurity, and Engineering teams and the products they produce for regulatory compliance and build the GRC team as business needs require.
  • Establishing relationships with current and future members of the GRC team, maintaining regular interaction, and providing consistent support to each member.
  • Creating an annual departmental budget and preparing and providing weekly, monthly, quarterly, and annual reporting and metrics for regular briefings with leadership teams and the EVP/CEO.

WHAT YOU WILL NEED TO SUCCEED

To ensure success, you will have deep subject matter expertise in GRC requirements of highly regulated industries. You will also have the ability to adapt GRC programs for cryptocurrency payments, digital asset and key custody mechanisms, and digital identity platforms. Must have a solid understanding of CIS, NIST, and other frameworks. Strong background in banking with knowledge of risk management principles and practices. Be self-motivated and collaborate across and outside the organization to identify emerging trends and threats in the space.

You enjoy startups and thrive in high-performing yet fluid environments. You can simultaneously support multiple initiatives in various development stages and quickly pivot without losing traction on other projects.

You can prepare, present, and advocate for succinct strategic recommendations to senior management and tailor an executable strategy based on feedback. You have strong public speaking, presentation, and communication – verbal and written – skills.

YOUR EDUCATION AND EXPERIENCE

This position requires twelve years of GRC experience, preferably in a mid-sized company in a highly regulated industry. A Bachelor's degree from an accredited college or university is also required or equivalent years of experience. The ability to leverage blockchain technology with a detailed understanding of cryptocurrency risks, controls, and evolving landscape is preferred.

Blockchains, Inc. (“Blockchains”) is proud to be a diverse workforce, and we are committed to inclusion and diversity to ensure equal opportunity for all applicants. Blockchains provides equal employment opportunities to all employees and applicants regardless of race, color, religion, sex, sexual orientation, gender identity and/or expression, national origin, age, marital status, physical or mental disability, veteran status, or any other characteristic protected by federal, state, or local laws.

This listing expired on Nov 06. Applications are no longer accepted.

Below are some other jobs we think you might be interested in.