
Senior Risk Management/GRC Manager
Posted Aug 12

Posted Aug 12
This is a fully remote position, open to applicants in Netherlands.
• Develop, implement, and sustain the organization’s security, governance, risk management, and compliance initiatives within zerohash’s European Risk Function, with a focus on DORA compliance.
• Take ownership of and manage daily compliance with DORA.
• Track laws, regulations, and industry standards pertinent to IT security and compliance.
• Oversee technical compliance programs, carry out assessments, and prepare documentation for audits.
• Create and uphold governance policies, procedures, standards, and technical frameworks.
• Manage ISO 27001, SOC 1, and SOC 2 governance frameworks in collaboration with global security and audit teams.
• Establish governance committees and lead reviews of policies and procedures.
• Formulate and execute IT security strategies and solutions.
• Administer and supervise firewalls, intrusion detection systems, and endpoint protection.
• Execute security assessments, vulnerability scans, penetration tests, forensic investigations, and root cause analyses.
• Identify, evaluate, prioritize, monitor, and report on technical risks and the effectiveness of controls.
• Develop strategies for risk mitigation, action plans, security policies, and procedures.
• Oversee technical incident management and ensure corrective actions are taken.
• Create and deliver training on technical security, GRC, and compliance.
• Collaborate with auditors, regulators, technical teams, management, staff, and global response teams.
• Prepare and present reports to senior management and the board of directors.
• Maintain precise technical records and documentation.
• Previous experience in a leadership role focused on Risk Management / GRC is essential.
• Prior experience with the Digital Operational Resilience Act (DORA) is mandatory.
• Demonstrated experience in technical IT security, governance, risk management, and compliance roles.
• In-depth technical knowledge of IT governance frameworks, regulatory requirements, and industry best practices.
• Experience with SOC 1, SOC 2, and ISO 27001 is highly preferred.
• Strong analytical and problem-solving abilities with meticulous attention to detail.
• Capability to manage multiple technical projects and priorities in a dynamic environment.
• Familiarity with technical security and GRC tools and software.
• Exceptional communication and interpersonal skills, enabling effective collaboration with cross-functional teams.
• Proficiency in risk assessment methodologies and tools.
• Experience with IT audit processes and procedures.
• Knowledge of GDPR, NYDFS Part 500, and other relevant laws and regulations.
• Certifications such as CISSP, CISM, CRISC, or CISA are advantageous.
• Opportunity to earn equity.
• Maternity & Paternity leave.
• WeWork Membership.
• Work From Home Yearly Stipend.
• Learning & Development Stipend (available after 6 months).
Staffing For Doctors
Circle
Lincoln Financial
Affirm
Get handpicked remote jobs straight to your inbox weekly.