Senior Manager, Governance Risk and Compliance
Location
Arizona + 11 moreAll locations: Arizona | California | Florida | Illinois | New Hampshire | New Mexico | New York | North Carolina | Massachusetts | Michigan | Tennessee | Virginia
Posted
11 hours ago
Salary
$129.9K - $180K / year
Seniority
Senior
Job Description
Senior Manager, Governance Risk and Compliance
Agero, Inc.
• Command the end-to-end response strategy for annual client security assessments; direct the preparation and multi-day presentation of complex technical evidence to sophisticated enterprise partners. • Own the successful execution, maintenance, and scope validation of core compliance frameworks, including PCI-DSS, ISO 27001, SOC2 Type II, and TISAX. • Partner with the Legal and Strategic Procurement teams to draft, review, and negotiate security exhibits within client and vendor contracts, ensuring committed promises align directly with technical capabilities. • Develop, implement, and enforce a comprehensive library of corporate security policies that satisfy global standards while remaining functional and frictionless for a software-driven enterprise. • Monitor global regulatory environments (e.g., CCPA/CPRA, GDPR, and emerging automotive cybersecurity mandates); collaborate with Privacy Owners to design underlying cyber strategies, documentation, and procedures. • Direct the modernization of the GRC infrastructure by maximizing the ROI of continuous monitoring platforms and deploying/tuning Generative AI tools to automate high-volume compliance workflows. • Serve as a core member of the Cybersecurity leadership team, collaborating with Product and Engineering leads to ensure security and legal requirements are embedded natively into the product development lifecycle. • Directly manage, mentor, and evaluate the performance of GRC team professionals, aligning resource allocation with the organization's audit pipeline and strategic deadlines.
Job Requirements
- Bachelor's degree in Computer Science, Information Security, Information Technology, or a related technical field is required.
- Active CISSP or CISM certification is required.
- 8+ years of progressive experience in Cybersecurity, GRC, or IT Audit.
- A minimum of 2 years of direct people management or leadership experience.
- Proven track record managing complex frameworks (SOC2, PCI, ISO, TISAX), translating technical controls into contractual language, and implementing automated GRC workflows.
- Privacy, cloud-architecture, or specialized IT audit certifications are highly preferred.
Benefits
- Healthcare, dental, vision, disability, life insurance, and mental health benefits for associates and their families.
- 401(k) plan with company match and tuition assistance to support your future goals.
- Flexible time off, paid sick leave, and ten paid holidays annually.
- Parental planning benefits to assist associates through life’s milestones.
- Bonus/Incentive Programs
Related Guides
Related Categories
Related Job Pages
More Compliance Jobs
• Conducting KYC and due diligence checks on customers, suppliers, and third parties • Perform sanctions screening and support investigations into potential matches • Review high-risk transactions, ensuring proper controls and escalation • Maintain accurate records of compliance checks, decisions, and investigations • Support anti-bribery & corruption, sanctions, and data protection programmes • Assist with gift and hospitality reviews and conflict of interest registers • Monitor regulatory updates (UK, EU, OFAC, UN) and support compliance alignment • Maintain compliance databases and ensure audit-ready documentation • Provide operational support (reporting, presentations, mailbox management, meeting coordination) • Support internal investigations, research activities, and continuous improvement initiatives • Collaborate with stakeholders across Legal, Risk, and Operations teams
• Manage end-to-end regulatory exam processes for Stripe's international licensed entities • Serve as a primary point of contact for international regulatory examinations • Draft clear regulatory responses, narratives, and submissions • Monitor and stay current on international regulatory developments • Build and maintain strong working relationships with internal stakeholders • Track and report on the status of open regulatory exam items • Support ad hoc regulatory supervisory inquiries • Leverage AI tools and agentic workflows to streamline exam coordination
Role Description The Supplier Compliance Manager is responsible for managing all contract compliance matters including: - Vendor screening and new contractor/vendor onboarding processes - Invoice reconciliation - Contract monitoring - Purchase order creation and delivery - Maintaining the contract repository The Supplier Compliance Manager ensures compliance with corporate standards and regulatory requirements, providing vital support to the procurement and legal teams. Key Responsibilities: - Support full lifecycle of contracts, including drafting, execution, monitoring, and closure. - Define and manage end to end processes surrounding vendor screening, onboarding, classification, risk escalation, controls, and offboarding. - Conduct third party risk assessments on suppliers. - Coordinate with key business partners including operations, construction and engineering, IT, and procurement. - Establish and maintain effective communication and collaboration with internal partners and external vendors. - Evaluate vendor compliance and risk exposure at onboarding and during periodic evaluations. - Monitor contractor compliance with contractual terms and company policies. - Maintain and organize the contract repository for all facility-related contracts. - Create and deliver purchase orders in alignment with procurement activities. - Collaborate with procurement and finance to resolve invoicing compliance and payment issues. - Support internal audits by ensuring accurate and complete documentation. - Provide guidance to internal stakeholders on compliance and contract processes. Qualifications - Bachelor's degree in business administration, supply chain management, or a related field. - 5+ years of experience in compliance or contract administration or a similar role. - Familiarity with contract management software and ERP systems (e.g., NetSuite). - Strong Excel and data management skills. - Detail-oriented with strong organizational and multitasking skills. - Excellent communication and interpersonal abilities. Requirements - Communication: Clear verbal and written communication to document incidents and ensure proper shift handoffs. - Collaboration: Ability to work closely with team members, supervisors, and cross-functional partners. - Adaptability: Flexible in responding to changes in process, tools, environment, and shift assignments. - Accountability: Takes ownership of assigned tasks and follows through with minimal supervision. - Attention to Detail: Maintains thorough and accurate logs, inspections, records, and documentation. - Time Management: Manages time effectively to meet performance expectations and service levels. - Integrity: Adheres to company policies, safety protocols, and professional ethics always. - Continuous Improvement Mindset: Recommends and supports efficiency, safety, and system innovations. - Documentation Discipline: Maintains clear, consistent records for operational continuity and compliance. - Security Compliance: Maintains awareness of data center physical and logical security expectations. - Digital Literacy: Uses productivity tools (e.g., Outlook, Teams, Excel, ticketing systems) for communication and documentation in office or hybrid settings. Physical Requirements - Able to remain in a seated position for an extended period. - Able to lift and carry up to 15 lbs. (office manuals, case notebooks, case files, case materials, standard boxes, report binders, etc.) as needed.
Compliance & Risk Testing Manager
Zip Co LimitedZip Co Limited (ASX: ZIP) is a digital financial services company, offering innovative, people-centered products. Operating in two core markets - Australia and New Zealand (ANZ) and the US, Zip offers access to point-of-sale credit and digital payment services, connecting millions of customers with its global network of tens of thousands of merchants. We’re proud to be a values-led business and our values - Customer First, Own it, Stronger Together and Change the Game - guide us in everything we do.
Role Description Zip is looking for a Compliance & Risk Testing Manager to join our Compliance & Risk organization and help strengthen our second line oversight capabilities across our bank partner compliance programs and internal control environment. This role will play a critical part in assessing the effectiveness of controls, identifying gaps and emerging risks, and helping drive a strong culture of compliance and accountability across the business. - Lead and execute second line compliance and controls testing activities across key business processes and regulatory obligations. - Assess the design and operational effectiveness of controls tied to bank partner requirements, regulatory expectations, and internal policies. - Identify control gaps, compliance risks, and process weaknesses and provide actionable recommendations for remediation. - Partner cross-functionally with Compliance, Risk, Product, Operations, Legal, and business teams to validate corrective actions and strengthen controls. - Support the development and enhancement of risk-based testing methodologies, testing scripts, and reporting frameworks. - Analyze testing results, identify trends and root causes, and communicate findings clearly to stakeholders and leadership. - Monitor remediation activities and validate closure of identified issues and action plans. - Contribute to ongoing governance initiatives that improve risk visibility, operational discipline, and compliance maturity. - Leverage data, reporting tools, and emerging technologies including AI-enabled analysis tools to improve testing efficiency, monitoring, and issue identification. - Help foster a strong risk and compliance culture aligned with Zip’s values of Customer First, Own It, Stronger Together, and Change the Game. Qualifications - 5-7 years of experience in compliance testing, controls testing, internal audit, risk management, or second line oversight within fintech, banking, payments, lending, or other regulated financial services environments. - Strong understanding of compliance risk management frameworks, controls testing methodologies, and regulatory oversight practices. - Experience evaluating operational and compliance controls tied to bank partner oversight requirements. - Demonstrated ability to identify control weaknesses, assess root causes, and drive remediation accountability across stakeholders. - Experience working cross-functionally in fast-paced and evolving environments with multiple priorities and stakeholders. - Strong analytical and investigative skills with the ability to synthesize complex information into clear findings and recommendations. - Experience using data analysis, reporting, workflow, or GRC tools to support testing execution and issue management. - Familiarity with AI-enabled tools, automation capabilities, or data-driven testing approaches and the ability to apply technology thoughtfully within compliance and risk workflows. - Strong written communication skills with experience developing testing reports, issue summaries, and executive-ready documentation. - Bachelor’s degree in Business, Finance, Risk Management, Accounting, or a related field preferred. Benefits - Flexible working culture. - Incentive programs. - Unlimited PTO. - Generous paid parental leave. - Leading family support policies. - Company-sponsored 401k match. - Learning and wellness subscription stipend. - Beautiful Union Square office with a casual dress code. - Industry-leading, employer-sponsored insurance for you and your dependents, with several 100% Zip-covered choices available.


