Governance, Risk, & Compliance Services Lead - USDS jobs in United States
cer-icon
Apply on Employer Site
company-logo

TikTok · 6 hours ago

Governance, Risk, & Compliance Services Lead - USDS

TikTok is the leading destination for short-form mobile video, and they are seeking a Governance, Risk, & Compliance Services Lead to be part of the US Security & Privacy Risk and Compliance team. This role will have a significant impact on mitigating regulatory compliance risk and maturing GRC operations, focusing on strategic maturity in Controls & Certifications, Policy Management, and Third-Party Risk Management.

Content CreatorsContent DiscoveryMedia and EntertainmentSocial MediaVideo
check
H1B Sponsor Likelynote

Responsibilities

Partner with Controls & Certifications, Policy Management, and Third-Party Risk Management ("TPRM") team leads to oversee day-to-day operations
Quickly understand current ways of working to identify maturity and efficiency gaps for each service
Develop strategic plans and underlying OKRs to achieve these initiatives
Challenge status-quo of manual operations and work to implement technology driven solutions to achieve greater coverage (i.e., control testing) and lower manual efforts (i.e., policy development, TPRM assessments)
Partner across the Security & Privacy organization and business teams to proactively align GRC operations to changing business priorities and objectives; work closely with business teams to develop ongoing compliance testing strategies
Develop metrics and reporting to communicate business initiatives and risks to the broader security and compliance organization
Collaborate with compliance assurance and compliance reporting functions to support regulatory reporting initiatives

Qualification

GRC operations managementIT security control frameworksTechnical control evidence gatheringModern GRC toolingRiskControls frameworksLeadership skillsProblem-solving skillsInterpersonal skillsNegotiation skillsTime management

Required

Experience managing multiple teams and services, to align to consistent objectives, and ability to develop talent
Experience performing internal/external control testing as security control assessor or supporting security compliance as internal compliance resources of physical and cloud infrastructure
Experience in gathering technical control evidence from stakeholders, coordinating review, and analyzing artifacts received to ensure they meet the intent of the control requirements and demonstrate compliance
Expert knowledge of IT and security control frameworks (e.g., NIST-CSF, NIST 800-53, PCI-DSS, CIS Security Controls, ISO 27001, ISO 27017, etc.)
Excellent organizational direction, time management, problem-solving, prioritization, goal setting, leadership, motivation, negotiation, and interpersonal skills while proactively seeking input
Ability to collaborate with operations and engineering teams, easily partner and forge relationships with cross-functional teams and stakeholders, communicate technical concepts to a broad range of technical and non-technical staff, provide compliant solutions, and communicate appropriately to a wide-range of audiences, with a collaborative mindset
Familiar with the usage of modern GRC tooling (i.e., Archer, ServiceNow)

Preferred

Start-up high-tech experience
One of the following certifications, or equivalent certifications: CISA, CDPSE, CISSP, CISM, CRISC, etc
Experience with risk and controls frameworks including (ISO 27001, NIST CSF, NIST RMF, FAIR, COBIT, NIST RMF, ISO 31000 etc.)

Benefits

Day one access to medical, dental, and vision insurance
A 401(k) savings plan with company match
Paid parental leave
Short-term and long-term disability coverage
Life insurance
Wellbeing benefits
10 paid holidays per year
10 paid sick days per year
17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure)

Company

TikTok is a short-form video entertainment app and social network platform. It is a sub-organization of ByteDance.

H1B Sponsorship

TikTok has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (979)
2024 (601)
2023 (387)
2022 (322)
2021 (133)
2020 (72)

Funding

Current Stage
Late Stage

Leadership Team

leader-logo
N Ali Mohamed
CEO
linkedin
leader-logo
Blake Chandlee
VP Global Business Solutions
linkedin
Company data provided by crunchbase