TikTok · 12 hours ago
Governance, Risk, & Compliance Services Lead - USDS
TikTok is the leading destination for short-form mobile video. They are seeking a Governance, Risk, & Compliance Services Lead to enhance their GRC operations and mitigate regulatory compliance risks.
Content CreatorsContent DiscoveryMedia and EntertainmentSocial MediaVideo
Responsibilities
Partner with Controls & Certifications, Policy Management, and Third-Party Risk Management ("TPRM") team leads to oversee day-to-day operations
Quickly understand current ways of working to identify maturity and efficiency gaps for each service
Develop strategic plans and underlying OKRs to achieve these initiatives
Challenge status-quo of manual operations and work to implement technology driven solutions to achieve greater coverage (i.e., control testing) and lower manual efforts (i.e., policy development, TPRM assessments)
Partner across the Security & Privacy organization and business teams to proactively align GRC operations to changing business priorities and objectives; work closely with business teams to develop ongoing compliance testing strategies
Develop metrics and reporting to communicate business initiatives and risks to the broader security and compliance organization
Collaborate with compliance assurance and compliance reporting functions to support regulatory reporting initiatives
Qualification
Required
Experience managing multiple teams and services, to align to consistent objectives, and ability to develop talent
Experience performing internal/external control testing as security control assessor or supporting security compliance as internal compliance resources of physical and cloud infrastructure
Experience in gathering technical control evidence from stakeholders, coordinating review, and analyzing artifacts received to ensure they meet the intent of the control requirements and demonstrate compliance
Expert knowledge of IT and security control frameworks (e.g., NIST-CSF, NIST 800-53, PCI-DSS, CIS Security Controls, ISO 27001, ISO 27017, etc.)
Excellent organizational direction, time management, problem-solving, prioritization, goal setting, leadership, motivation, negotiation, and interpersonal skills while proactively seeking input
Ability to collaborate with operations and engineering teams, easily partner and forge relationships with cross-functional teams and stakeholders, communicate technical concepts to a broad range of technical and non-technical staff, provide compliant solutions, and communicate appropriately to a wide-range of audiences, with a collaborative mindset
Familiar with the usage of modern GRC tooling (i.e., Archer, ServiceNow)
Preferred
Start-up high-tech experience
One of the following certifications, or equivalent certifications: CISA, CDPSE, CISSP, CISM, CRISC, etc
Experience with risk and controls frameworks including (ISO 27001, NIST CSF, NIST RMF, FAIR, COBIT, NIST RMF, ISO 31000 etc.)
Benefits
Employees have day one access to medical, dental, and vision insurance
A 401(k) savings plan with company match
Paid parental leave
Short-term and long-term disability coverage
Life insurance
Wellbeing benefits
10 paid holidays per year
10 paid sick days per year
17 days of Paid Personal Time (prorated upon hire with increasing accruals by tenure)
Company
TikTok
TikTok is a short-form video entertainment app and social network platform. It is a sub-organization of ByteDance.
H1B Sponsorship
TikTok has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (979)
2024 (601)
2023 (387)
2022 (322)
2021 (133)
2020 (72)
Funding
Current Stage
Late StageRecent News
2025-12-31
2025-12-30
Company data provided by crunchbase