1h ago
Senior Staff Analyst, GRC
Remote Spain
full-timesenior RemoteTechnology
Description
You will define, develop, and implement a Governance, Risk and Compliance framework for both Enterprise and Product verticals at Mozilla, aligning security, privacy, regulatory, and risk management initiatives to build a safer internet. You'll lead GRC strategy, risk assessments, compliance with standards like ISO/NIST/SOC2/GDPR, and partner cross-functionally.
Requirements
- 10+ years progressive experience developing and delivering an integrated GRC framework
- Deep knowledge of regulatory frameworks, processes, and tools for a robust GRC framework
- Experience leading cross-functional requirements to implement compliance controls
- Relevant industry certifications (CISA, CISSP, CISM, CRISC, etc.)
- Hands-on experience with technology and tools (SIEM, BI tools, etc.)
Responsibilities
- Develop and maintain a comprehensive GRC strategy and roadmap aligned with business objectives
- Lead creation and enforcement of standards, policies, controls, audits, reporting across enterprise and product verticals
- Operationalize a risk assessment and management framework for prioritization and remediation
- Ensure compliance with regulatory standards (ISO, NIST, SOC2, CCPA, GDPR) and lead audit activities
- Define requirements and reporting for data life cycle management across enterprise and product domains
0 views 0 saves 0 applications