Head of Risk and Compliance jobs in United States
cer-icon
Apply on Employer Site
company-logo

Semperis · 1 day ago

Head of Risk and Compliance

Semperis is a rapidly growing cybersecurity company focused on creating a supportive employee experience. They are seeking a strategic Head of Risk to build and lead their global risk and compliance management function, ensuring that security, compliance, and business resilience are integrated into operations.

Cyber SecurityEnterprise SoftwareIdentity ManagementInformation Technology

Responsibilities

Develop and lead the company-wide risk and compliance management strategy, policies, and framework aligned with organizational objectives and regulatory standards
Collaborate with different stakeholders to identify, assess, and mitigate operational, cybersecurity, and compliance risks
Own and evolve the company’s risk register, metrics, and reporting cadence, providing transparent insights to the CISO, senior leadership, and board committees
Manage and lead the company’s compliance frameworks including ISO, Common Criteria, FedRamp, SOCII, GDPR, and more
Quarterback compliance efforts, testing and auditing
Lead third-party and vendor risk management programs, ensuring supply chain resilience and adherence to company security requirements

Qualification

Enterprise Risk ManagementCybersecurity FrameworksCompliance ProgramsQuantitative Risk AnalysisRegulatory StandardsRisk ReportingVendor Risk ManagementExecutive CommunicationStakeholder EngagementISO 27001CISSPCISMCISACRISCLeadership SkillsRelationship Building

Required

7+ years of experience in enterprise risk management, cybersecurity, or information assurance, with at least 5 years in leadership capacity
Strong understanding of cybersecurity frameworks, operational risk, business continuity, and compliance programs
Proven experience working within or alongside a CISO organization in a fast-paced technology or cybersecurity environment
Expertise in quantitative and qualitative risk analysis, reporting, and executive communication
Familiarity with standards and regulations such as NIST, ISO 27001, SOC 2, GDPR, DORA, and NIS2
Excellent relationship-building and influencing skills, capable of engaging stakeholders across technical and business domains

Preferred

Relevant certifications preferred: CRISC, CISSP, CISM, CISA, ISO 27005 Risk Manager, or equivalent

Company

Semperis

twittertwittertwitter
company-logo
Semperis is a developer of enterprise identity protection and cyber resilience for cross-cloud and hybrid environments.

Funding

Current Stage
Late Stage
Total Funding
$498.3M
Key Investors
Kohlberg Kravis RobertsInsight PartnersMaverick Ventures Israel
2024-06-20Series C· $125M
2024-06-20Debt Financing· $125M
2022-05-24Series C· $208.3M

Leadership Team

leader-logo
Mickey Bresman
CEO
linkedin
leader-logo
Guy Teverovsky
CTO & Co-Founder
linkedin
Company data provided by crunchbase