Head of Risk and Compliance jobs in United States
cer-icon
Apply on Employer Site
company-logo

Semperis · 1 day ago

Head of Risk and Compliance

Semperis is a rapidly growing cybersecurity company recognized for its exceptional workplace culture. They are seeking a strategic leader to build and manage their global risk and compliance function, focusing on embedding security and compliance into the organization's operations.

Cyber SecurityEnterprise SoftwareIdentity ManagementInformation Technology

Responsibilities

Develop and lead the company-wide risk and compliance management strategy, policies, and framework aligned with organizational objectives and regulatory standards
Collaborate with different stakeholders to identify, assess, and mitigate operational, cybersecurity, and compliance risks
Own and evolve the company’s risk register, metrics, and reporting cadence, providing transparent insights to the CISO, senior leadership, and board committees
Manage and lead the company’s compliance frameworks including ISO, Common Criteria, FedRamp, SOCII, GDPR, and more
Quarterback compliance efforts, testing and auditing
Lead third-party and vendor risk management programs, ensuring supply chain resilience and adherence to company security requirements

Qualification

Enterprise Risk ManagementCybersecurity FrameworksCompliance ManagementQuantitative Risk AnalysisRegulatory Standards KnowledgeExecutive CommunicationStakeholder EngagementInfluencing SkillsCertifications CRISCCertifications CISSPCertifications etc.Relationship BuildingLeadership Experience

Required

7+ years of experience in enterprise risk management, cybersecurity, or information assurance, with at least 5 years in leadership capacity
Strong understanding of cybersecurity frameworks, operational risk, business continuity, and compliance programs
Proven experience working within or alongside a CISO organization in a fast-paced technology or cybersecurity environment
Expertise in quantitative and qualitative risk analysis, reporting, and executive communication
Familiarity with standards and regulations such as NIST, ISO 27001, SOC 2, GDPR, DORA, and NIS2
Excellent relationship-building and influencing skills, capable of engaging stakeholders across technical and business domains

Preferred

Relevant certifications preferred: CRISC, CISSP, CISM, CISA, ISO 27005 Risk Manager, or equivalent

Company

Semperis

twittertwittertwitter
company-logo
Semperis is a developer of enterprise identity protection and cyber resilience for cross-cloud and hybrid environments.

Funding

Current Stage
Late Stage
Total Funding
$498.3M
Key Investors
Kohlberg Kravis RobertsInsight PartnersMaverick Ventures Israel
2024-06-20Series C· $125M
2024-06-20Debt Financing· $125M
2022-05-24Series C· $208.3M

Leadership Team

leader-logo
Mickey Bresman
CEO
linkedin
leader-logo
Guy Teverovsky
CTO & Co-Founder
linkedin
Company data provided by crunchbase