Grain & Protein Technologies · 5 hours ago
Governance Risk and Compliance Sr. Manager
Grain & Protein Technologies is a leading global designer, manufacturer, and marketer of innovative equipment solutions for agriculture. They are seeking a highly skilled Global IT Governance Risk and Compliance Sr. Manager to ensure that their IT systems and processes meet legal, regulatory, and internal policy requirements while managing data privacy initiatives and compliance functions.
AgricultureFarmingManufacturing
Responsibilities
Plan, coordinate, and implement GDPR projects including risk assessments, data mapping, DPIAs, and impact analysis
Lead cross-functional initiatives to ensure compliance with global privacy laws (GDPR, LGPD, CCPA, etc.)
Plan, coordinate, and implement NIS2, NIST and other Cyber compliance projects
Work with vCISO and other outsourcing partners in the Cyber space to ensure compliance with different local legislation and standards
Develop, maintain, and continuously improve IT compliance policies, procedures, guidelines, and internal controls to support effective governance
Develop and maintain comprehensive IT compliance frameworks aligned with GDPR, ISO27001, NIST, NIS2, and SOX as applicable for the size of the organization
Implement and monitor security and privacy controls - including access management, encryption, logging, and data protection measures
Monitor regulatory changes and ensure compliance with new requirements
Ensure ‘secure by design' principles are applied across systems and projects
Support accurate maintenance of the IT asset inventory and compliance-related asset processes
Lead internal and external IT audits, regulatory reviews, and risk assessments
Produce compliance reports covering status, risk performance, KPIs, and audit findings
Build and maintain dashboards to track compliance obligations and remediation efforts
Act as point of contact with authorities and external auditors during reviews or investigations
Ensure training plans and initiatives are sufficient for staff on compliance requirements, privacy principles, and IT policies to all staff levels
Develop ongoing awareness programs to embed a culture of compliance
Building IT risk management for the organization, defining roles and responsibilities, ensuring IT risks are categorized and managed
Building plans to create risk management standards, policies and procedures, work with vCISO to ensure all required documents and processes are defined
Work with senior leaders to develop a risk balanced approach, define actions and implement such
Investigate compliance breaches and monitor investigations of security incidents, ensuring root-cause analysis and corrective action
Support incident response activities from a privacy and regulatory perspective
Qualification
Required
Bachelor's or Master's degree in law (privacy/data protection), Information Technology, Cybersecurity, Computer Science, or Risk/Compliance
5+ years of experience in a similar position
Strong understanding of IT security, data privacy, and global regulatory environments
Strong written and oral communication skills
Analytical mindset, critical thinking, and attention to detail
Experience with data ‑ mapping tools, encryption protocols, audit and logging systems, and Privacy ‑ by ‑ Design frameworks
Experience with GDPR, NIS2 and equivalent global privacy regulations
Preferred
Relevant certifications such as CIPP ‑ E, CIPM, CISSP, CISA, or CRISC are advantageous
Benefits
Health care and wellness plans
Dental and vision plans
Flexible and virtual work options (where available)
401(k) Savings Plan with company match
Paid holidays
Paid time off
Health savings and flexible spending accounts
Reimbursement for continuing education
Life insurance
Other supplemental insurance plans
Company
Grain & Protein Technologies
Grain & Protein Technologies designs, manufactures, and markets equipment for grain storage and handling, seed processing, and protein.
Funding
Current Stage
Late StageCompany data provided by crunchbase