Salary
≈ $83k – $212k per year (Estimated)
Location
Remote (Europe)
Overview
Company
Impact
Profile match
We are looking for an experienced Information Security GRC Manager to lead and develop our Information Security Governance, Risk & Compliance function.
This is a hands-on leadership role with the opportunity to shape the GRC operating model, roadmap, team, and core processes in a growing international FinTech environment.
You will work directly with the CISO and collaborate closely with Security, Legal, Risk, Procurement, IT, Engineering, Product, Platform, HR, and business teams.
The role combines security governance, cyber risk, regulatory assurance, third-party risk, policy management, and security awareness, with a strong focus on building practical controls and processes that support business growth.
Requirements
- Strong practical experience in Information Security GRC, cyber/technology risk, security compliance, or assurance
- Hands-on experience with recognized frameworks such as SOC 2, ISO 27001, DORA, PCI DSS, NIST CSF, COBIT, or similar
- Experience establishing or operating security controls, risk registers, exception processes, and assurance programs
- Strong understanding of control design, operating effectiveness, evidence quality, findings, and remediation
- Experience coordinating internal or external audits and regulatory or assurance activities
- Practical experience with cyber risk assessment, risk treatment, risk acceptance, and escalation
- Understanding of third-party and ICT supplier security risk
- Ability to translate regulatory and security requirements into practical controls and processes
- Strong stakeholder management skills and ability to work effectively with technical, business, and executive audiences
- Sufficient technical understanding of cloud, infrastructure, identity, IT operations, and product development to work effectively with technical teams
- Experience leading a team, function, program, or complex cross-functional initiatives
- Strong ownership, prioritization, and decision-making skills
Responsibilities
- Own and develop the Information Security GRC strategy, roadmap, operating model, and governance cadence
- Lead security governance, regulatory assurance, cyber risk, third-party security risk, policy lifecycle, and security-awareness oversight
- Establish clear ownership for security controls, risks, exceptions, evidence, and remediation actions
- Coordinate SOC 2, DORA/CySEC-related assurance, internal and external audits, and regulatory requests
- Maintain cyber-risk and exception registers and ensure material risks are treated, accepted, or escalated
- Lead security aspects of ICT supplier tiering, due diligence, reassessment, and high-risk supplier decisions
- Develop practical security policies, standards, controls, and guidance
- Ensure audit and assurance evidence is reliable, traceable, and reusable
- Track control gaps, findings, and remediation commitments and escalate material risks
- Partner with Security, IT, Engineering, Product, Platform, Legal, and business teams on control design and risk-based decisions
- Prepare concise GRC and risk reporting for the CISO and executive stakeholders
- Build, develop, and manage the GRC team, including responsibilities, goals, and performance expectations
- Improve GRC efficiency through automation, reusable evidence, better data quality, and responsible AI-assisted workflows
We Offer
- 20 paid vacation days per year
- 10 paid sick leave days per year
- Public holidays according to company policy
- Medical budget
- Remote work opportunity
- Professional education budget
- Language learning budget
- Wellness budget (gym membership, sports gear, etc.)
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
573,000 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Free forever. No card. Under a minute.
Your match
How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.
Recommended for you based on this role
Similar stack
Same company
In your city
Cyber Security Spec II
1 day ago
≈ $34k – $89k per year (Estimated) • In office • Full-Time • Brazil
Cybersecurity
ISO 27001
PCI DSS
Apply
$130k – $160k per year • Remote • Full-Time • 8+ years exp
Python
PowerShell
Databases
Redis
Azure SQL Database
AI/ML
Anomaly Detection
DevOps
Terraform
Azure DevOps
CloudFormation
Consul
Datadog
PagerDuty
Azure
CI/CD
Jenkins
AWS
Kubernetes
Cloudflare
SaltStack
Configuration Management
Azure AKS
Amazon S3
Amazon CloudWatch
Cybersecurity
ISO 27001
SOC 2
NIST 800-53
FedRAMP
Microsoft Entra ID
Delinea
Management
Jira
Apply
$178k – $330k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • Richardson • Chicago
Cybersecurity
ISO 27001
NIST CSF
HIPAA
Apply
Regional Information Security Officer
1 day ago
$136k – $170k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • White Plains
Cybersecurity
ISO 27001
HIPAA
Least Privilege
Apply
Sr. System Engineer
1 day ago
In office • 6+ years exp • Bachelor's Degree
PowerShell
DevOps
VMWare
CloudFormation
Azure
Windows Server
AWS
Incident Management
Cybersecurity
SOC 2
Tanium
Apply
Remote
Cybersecurity
ISO 27001
SOC 2
Management
ServiceNow
Apply
≈ $40k – $94k per year (Estimated) • Remote • 2+ years exp
Apply
≈ $51k – $146k per year (Estimated) • Remote • 7+ years exp
Ruby
DevOps
CI/CD
AWS
Amazon EC2
Apply
Rust Engineer
2 days ago
≈ $91k – $193k per year (Estimated) • Remote • 5+ years exp
Rust
Databases
Redis
AI/ML
Claude Code
AI Agents
OpenAI Codex
DevOps
WebSockets
Apply
Talent Acquisition Specialist (Product)
2 days ago
≈ $40k – $94k per year (Estimated) • Remote • 2+ years exp
Apply
This is one of many
573,000 more open roles from verified company boards, updated every day.

