Overview
Security compliance manager Jobs in Frisco, TX at SoFi
Employee Applicant Privacy Notice
Who we are:
Shape a brighter financial future with us.
Together with our members, we’re changing the way people think about and interact with personal finance.
We’re a next-generation fintech company using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way.Join us to invest in yourself, your career, and the financial world.
About The Role
The Governance, Risk, and Compliance (GRC) team handles a wide range of cross-functional activities, from security compliance certifications and audits, to risk management, inbound and outbound due diligence, third party risk management, security awareness, policy and procedures, and more.
Each of these ongoing parallel activities entails interpreting and setting requirements, assessing the effectiveness of security controls, risk-based decision making, cross-functional collaboration and communication, and staying up-to-date on security best practices and how changes in the evolving threat landscape need to inform our strategy.
We are seeking an experienced Security Compliance Manager responsible for monitoring and governing security controls in the cloud based on regulatory/compliance requirements and industry standards. Candidate must be able to assimilate knowledge quickly, understand stakeholder’s business challenges/risks, and act as a trusted advisor to lead change, policy adoption and monitor compliance against policies and standards.
Key job responsibilities:
Oversee audit and governance management: optimize year-round compliance, audit and regulatory efforts for SoFi and subsidiaries
Build and maintain an integrated cybersecurity controls framework
Monitor and report on compliance against Information Security policies and standards
Maintain security compliance programs within a GRC or compliance automation solution
Facilitate governance and track remediation within SLA’s for vulnerabilities, gaps, and control deficiencies and work with business stakeholders to establish plans for sustainable resolution
Define and execute existing or new compliance initiatives (i.e. SOC2, PCI, FFIEC CAT, NIST CSF, GLBA)
Work independently to conduct compliance quantitative assessments from beginning to end with minimal supervision, manage key stakeholders relationships
Identify the root cause of control gaps and exceptions and suggest remediation steps
Maintain a cybersecurity risk register
Prioritize and drive cross-functional remediation efforts for identified gaps based on risk impact and criticality
Compile and present compliance posture to senior leadership via metrics and dashboards
Minimum requirements:
BS degree in Computer Information Systems or related field
7+ years of experience with security GRC initiatives
Experience with onboarding and monitoring cybersecurity controls in cloud environments specifically AWS
Experience managing SOC2, PCI DSS, SOX ITGC, GLBA or other compliance standards and framework programs
Strong knowledge of security risk management and running audits/certification programs
Self-starter with strong interpersonal and communication skills
Demonstrate abili…
Title: Security compliance manager
Company: SoFi
Location: Frisco, TX
Category: