1h ago

Senior Staff Analyst, GRC

Remote Spain
full-timesenior RemoteTechnology

Description

You will define, develop, and implement a Governance, Risk and Compliance framework for both Enterprise and Product verticals at Mozilla, aligning security, privacy, regulatory, and risk management initiatives to build a safer internet. You'll lead GRC strategy, risk assessments, compliance with standards like ISO/NIST/SOC2/GDPR, and partner cross-functionally.

Requirements

  • 10+ years progressive experience developing and delivering an integrated GRC framework
  • Deep knowledge of regulatory frameworks, processes, and tools for a robust GRC framework
  • Experience leading cross-functional requirements to implement compliance controls
  • Relevant industry certifications (CISA, CISSP, CISM, CRISC, etc.)
  • Hands-on experience with technology and tools (SIEM, BI tools, etc.)

Responsibilities

  • Develop and maintain a comprehensive GRC strategy and roadmap aligned with business objectives
  • Lead creation and enforcement of standards, policies, controls, audits, reporting across enterprise and product verticals
  • Operationalize a risk assessment and management framework for prioritization and remediation
  • Ensure compliance with regulatory standards (ISO, NIST, SOC2, CCPA, GDPR) and lead audit activities
  • Define requirements and reporting for data life cycle management across enterprise and product domains
0 views 0 saves 0 applications