





Strong employer brand and metro location increase applicant density despite niche senior GRC skillset.
Role requires deep financial-services regulatory and GRC experience, limiting cross-industry transferability.
Explicit 10–15 years requirement and domain-specific regulatory/GRC experience tighten shortlisting.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Maintain and improve cybersecurity governance frameworks aligned with industry standards (e.g., NIST CSF, ISO 27001) and manage security policies and documentation for audits and compliance.
Support enterprise-wide cyber risk assessments, maintain IT risk registers, manage vendor risk processes, and develop risk/compliance metrics and reports for leadership.
Assist with regulatory compliance activities including MAS, CSCRF, IFSCA, GDPR, DORA, CCPA; prepare for audits and ensure control testing and remediation tracking.
10–15 years experience in GRC, risk, audit, or compliance roles, preferably in financial services or regulated industries.
Experience developing and maintaining risk or compliance metrics, KRIs, KPIs, or dashboards.
Familiarity with cybersecurity frameworks such as NIST CSF, NIST RMF, ISO 27001, CIS Controls and regulatory standards like MAS, CSCRF, IFSCA, GDPR, DORA, CCPA.
Bachelor's degree in Information Security, Business, Finance, or related field preferred; certifications like CISA, CRISC, or Security+ are a plus but not mandatory.
Experienced in applying risk-based thinking and governance in financial services cybersecurity environments at a senior level.
Capable of managing complex regulatory compliance and audit readiness across multiple jurisdictions and standards.
Strong organizational ability to maintain governance and risk documentation and produce clear analytical reports for diverse audiences.