
Senior Director, Global Risk and Compliance
Posted Sep 8

Posted Sep 8
This is a fully remote position, open to applicants in Maryland.
• Establish and spearhead Blend360's inaugural centralized risk management and compliance division.
• Collaborate with executive leadership to define the firm’s risk appetite and tolerance thresholds.
• Develop and uphold the enterprise risk management framework, escalation protocols, and master risk register.
• Conduct annual risk assessments across various regions and business units.
• Design procedures for incident response and lead post-incident reviews.
• Provide quarterly updates to senior leadership on risk status, threats, and mitigation efforts.
• Formulate policies related to AI governance, data management, information security, and business continuity.
• Set standards for data quality, performance, bias detection, and responsible use in AI models.
• Evaluate technology infrastructure risks associated with AWS, Snowflake, and client systems.
• Monitor data safety throughout collection, processing, sharing, and cross-border movement.
• Assess client projects involving cloud, data, and AI, offering risk-informed recommendations.
• Develop standards for evaluating vendor and partner risks.
• Oversee global insurance programs, broker relationships, and annual renewals.
• Lead SOC 2 compliance efforts, manage audit relationships, own the framework, and track remediation.
• Supervise ESG compliance, Mastercard requirements, and sustainability reporting.
• Monitor regulatory changes across North America, Europe, and Latin America.
• Coordinate compliance with regional legal teams and operations in North America, Latin America, EMEA, Uruguay, and India.
• Address the compliance needs in EMEA until dedicated legal resources are appointed.
• Facilitate quarterly regional compliance reviews and report findings to the SVP Finance.
• Represent Blend360 in discussions with enterprise clients regarding risk and compliance issues.
• Manage client security, privacy, ESG, and AI governance questionnaires.
• Create checklists for client contract reviews and assist with high-risk contract evaluations.
• Maintain a record of client contracts that exceed risk thresholds.
• 8+ years of experience in risk management, compliance, or legal operations within professional services, technology, AI/data, or consulting sectors.
• 5+ years in a global or multi-regional capacity overseeing policies and compliance initiatives.
• Extensive knowledge of GDPR, CCPA/CPRA, LGPD, EU AI Act, NIST AI RMF, COSO, and ISO 31000.
• Proficient in technology, including AWS, Snowflake, Databricks, and AI/ML risks, such as bias, data quality, and model drift.
• Experience in managing corporate insurance, including professional liability, cyber, and D&O, and collaborating with brokers.
• Proven track record of direct engagement with Fortune 500 clients on security, compliance, and risk-related matters.
• Excellent written and verbal communication skills; capable of presenting to executives, boards, and clients.
• Demonstrated ability to influence across regions and functions within a dynamic, matrixed organization.
• Bachelor’s degree is required.
• JD, MBA, or relevant advanced degree is preferred.
• Experience with AI/ML services, data analytics, cloud-native, or digital transformation companies is preferred.
• Certifications such as CRISC, CISM, CISA, CIPP/E, ARM, or equivalent are preferred.
• Experience with SOC 2 audits and ESG/sustainability reporting is preferred.
• Knowledge of NIST CSF and ISO 27001 at a governance level is preferred.
• Proficiency in Spanish is preferred.
• Familiarity with Latin American regulations, including those in Colombia and Uruguay, is preferred.
• Experience in establishing a compliance function from the ground up at a growth-stage company is preferred.
• Full-time employment.
• Confidential handling of applicant information in accordance with EEO guidelines.
RTX
EnergyHub
Johnson & Johnson
Johnson & Johnson
Get handpicked remote jobs straight to your inbox weekly.