Accommodations Plus International logo
Accommodations Plus International

Providing the best and most efficient layover experience for our clients and their team members.

Director, Governance, Risk & Compliance

ComplianceComplianceFull TimeRemoteLeadTeam 201-500Since 1984H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

16 days ago

Salary

$160K - $190K / year

Seniority

Lead

Bachelor Degree7 yrs expEnglishAWSAzureCloudCyber Security

Job Description

Director, Governance, Risk & Compliance

Accommodations Plus International

• Lead organization-wide risk analysis, maintaining a risk register with documented remediation and mitigation plans. • Serve as the primary advisor on information security risks to security management and business unit leads. • Establish and own the strategy for managing security audits, compliance checks, and external assessments — including GDPR, SOC 2, ISO 27001, CCPA, and other applicable standards. • Liaise with internal and external auditors to implement and sustain required controls. • Build and manage a comprehensive vendor risk program, evaluating the cybersecurity and data protection controls of third parties, vendors, and business partners. • Drive ongoing security program improvement by amplifying areas of strength and developing actionable plans to address gaps. • Lead data governance and data protection programs, ensuring alignment with enterprise risk management principles and up-to-date documentation of systems and processes. • Facilitate IT compliance across identified controls, including IT general controls (ITGCs), application, cloud, and cybersecurity controls. • Document, communicate, and enforce security policies that balance risk with business operations. • Champion cybersecurity best practices across all business units to reduce the organization’s attack surface. • Oversee GRC-related incident response activities, tracking occurrences and resolutions with strict documentation and reporting protocols. • Manage the access review process to ensure appropriate access is consistently granted, maintained, and revoked.

Job Requirements

  • 7–10+ years of experience in cybersecurity, spanning security analysis, compliance and regulatory affairs, risk management, or audit.
  • Demonstrated experience leading and managing GRC programs, including risk registers, remediation planning, and executive-level reporting.
  • Proven track record managing security audits and assessments for SOC 2, ISO 27001, GDPR, CCPA, and other standards; familiarity with PCI, HITRUST, and GLBA is a plus.
  • Hands-on experience with vendor and third-party risk management programs, including evaluation of cybersecurity and data protection controls.
  • Experience with incident response tracking, documentation, and reporting.
  • 2+ years of experience with AWS and/or Microsoft Azure cloud security configuration and management preferred.

Benefits

  • Medical, Dental, and Vision insurance
  • Flexible Spending Accounts for childcare and healthcare
  • 401(k) with matching
  • Basic Life Insurance and voluntary options including short-term disability, hospital, accident, and pet discounts at select hotels

Related Categories

Related Job Pages

More Compliance Jobs

Intersect Power logo

Air Permitting & Compliance Specialist

Intersect Power

Intersect Power is a clean energy company that brings scalable and innovative, low-carbon solutions to its customers in wholesale energy and retail markets. The

Compliance16 days ago

• Help shape permitting strategies and support environmental compliance across energy and hybrid infrastructure projects. • Influence project siting, development, engineering, construction, and operations to meet air quality regulations. • Partner with various teams and regulatory stakeholders to navigate permitting pathways. • Perform environmental due diligence for acquisitions and early-stage development opportunities. • Identify permitting and compliance risks and communicate recommendations. • Prepare and submit various permit applications and coordinate technical studies. • Support interactions with regulatory agencies throughout the permit application process. • Provide air permitting support throughout engineering, procurement, construction, and operations phases. • Maintain organized project schedules, budgets, deliverables, and stakeholder communications. • Translate technical topics into clear recommendations and contribute to internal knowledge-sharing.

California + 3 moreAll locations: California | Colorado | New York | Texas
Compliance16 days ago
Full TimeRemoteTeam 201-500Since 1962H1B Sponsor

• Serve as the primary point of contact for assigned telecommunications clients regarding regulatory reporting. • Coordinate with clients to gather necessary reporting information and ensure timely submissions. • Analyze financial and operational data to prepare and submit compliance filings to the FCC, PUCs, and other regulatory agencies. • Maintain strong knowledge of industry regulatory changes and apply updates to compliance processes.

United States
$50K - $55K / year
Careforth logo

Compliance and Privacy Specialist

Careforth

Founded in Boston, Careforth's caregiver programs and services improve health outcomes, keeping care at home longer. Additionally, our programs provide financial benefit to caregivers and cost savings to state agencies and health plans. At Careforth, we understand the challenges of caregiving and are committed to supporting family caregivers at every turn. Caregivers play a critical role in the future of healthcare—and so can you.

Compliance16 days ago
Full TimeRemoteTeam 501-1,000

Role Description Reporting to the Compliance and Privacy Manager (“CPM”), the Compliance and Privacy Specialist is responsible for ensuring the completion of projects and initiatives associated with the Annual Compliance Work Plan and Annual Privacy Plan. - Work collaboratively with stakeholders throughout the organization to ensure effective execution of the Annual Compliance Work Plan and Annual Privacy Plan. - Assist CPM with tracking and monitoring of all reported privacy incidents and/or complaints. - Organize and maintain compliance and privacy policies as well as organizational contracts and other required documentation, ensuring documents are kept up to date through periodic review. - Assist with development of training materials, identifying target audiences and delivering specialized training; track and manage completion of trainings. - Monitor changes in applicable statutes, rules, regulations, and other compliance standards. Assist in preparation of reports and other summaries related to the impact of new and existing requirements. - Document and track external audits performed by governmental entities. - Perform vendor screening and auditing for excluded individuals or entities. - Perform other duties as assigned. Qualifications - 2-4 years of experience in privacy and compliance within a healthcare setting or equivalent; bachelor’s degree preferred. - General knowledge of governmental and healthcare reporting requirements (HIPAA/FWA); experience with Medicaid and information privacy laws preferred. - Excellent organizational skills with high attention to detail; ability to multitask and manage competing priorities in fast-paced environment. - Strong communication skills, and attention to detail; comfortable working with people at all levels of an organization. - Strong research skills with ability to analyze regulatory requirements. - Experience working in highly confidential environment with sensitive information. - Experience working with Microsoft Products, etc. (Excel, PDFs, and AI). - CHC or IAP preferred but not required. Benefits - Flexible schedules. - Remote-first culture. - Nationally recognized wellness program. - Pay range for this position is $56,200 - $82,900, depending on budget and candidate experience, knowledge, skills, qualifications, and geographic location. - Hours are flexible 8-5p, 7-3p, 10-6p. Company Description A pioneer in the caregiving space, Careforth supports family caregivers across the United States to confidently care for their loved ones at home. Through a combination of in-person home visits, remote coaching, and our proprietary digital collaboration app, we provide caregivers with support, guidance, confidence, and connection to resources they need. The Caregivers and families we support stay with Careforth for many years, building lasting relationships along the way. Founded in Boston, Careforth's caregiver programs and services improve health outcomes, keeping care at home longer. Additionally, our programs provide financial benefit to caregivers and cost savings to state agencies and health plans. At Careforth, we understand the challenges of caregiving and are committed to supporting family caregivers at every turn. Caregivers play a critical role in the future of healthcare—and so can you.

United States
$56.2K - $82.9K / year
The Duckhorn Portfolio logo

Manager, Regulatory Compliance

The Duckhorn Portfolio

The standard for American fine wine

Compliance16 days ago
Full TimeRemoteTeam 501-1,000Since 1976H1B No Sponsor

• Oversee federal TTB systems and reporting for 12 production sites, ensuring the absolute accuracy and timely submission of monthly wine premises operations reports. • Utilize industry-specific software (InnoVint, NAV, and TTB.gov) to monitor bulk wine movements, evaluate/report wine losses, and advise on Bills of Lading (BOL). • Collaborate with the Quality Control (Supply Chain) team to maintain an updated registry of approved wine processing aids/additives, ensuring strict adherence to legal limits and restrictions. • Manage the California Deputy Weighmasters list and handle all associated licensing updates with state entities (CDTFA, CDFA). • Maintain FDA registrations and DUNS numbers. • Partner with creative teams to design compliant packaging. • Oversee extensive federal label approvals (COLAs) and navigate COLA waivers. • Track, maintain, and execute the company’s extensive national licensing portfolio, including federal permits, state bonds, solicitor permits, and out-of-state DTC/Wholesale shipping licenses. • Develop, streamline, and execute digital workflows for multi-channel product registrations and distributor appointment updates. • Facilitate all required export order documentation, managing the generation of paperwork, official signatures, and notarizations. • Support VP Regulatory Counsel with rigorous regulatory research into international sales expansion, providing clear, organized country-by-country compliance tracking to support strategic growth. • Assist and support senior Legal and Finance personnel with compliance-related excise tax practices, bond assessments, and tax-paid inventory movements. • Identify and investigate month-end data discrepancies in ShipCompliant alongside Finance; advise Sample and Wholesale Customer Service teams to implement quick corrections. • Evaluate current regulatory tech stacks and workflows to drive automation, efficiency, and organizational ease for all internal and external partners. • Work closely with the VP, Regulatory Counsel and the EVP, Chief Strategy & Legal Officer on special projects, including Mergers & Acquisitions (M&A) and revenue-driving regulatory strategies. • Provide ongoing regulatory compliance support and structured training sessions for wine trackers and the broader production team. • Communicate across all departments in a professional manner above reproach; champion a workplace culture that actively emphasizes the mission, vision, and values of The Duckhorn Portfolio.

United States
$87K - $110K / year