Job Description
📋 Description Own and evolve GRC program across PCI DSS, NYDFS (23 NYCRR 500), FFIEC guidance, and Build and maintain Compliance-as-Code, automated control validation, continuous evidence Operate and extend GRC platforms (e.g., Vanta) as the backbone for control mapping and evidence Partner with Architects and Engineering Leads to translate regulatory obligations into technical Design, implement, and validate technical controls (cardholder data environment scope/segmentation Lead risk assessments and compliance reviews for new products, payment flows, vendors, and 🎯 Requirements Bachelor's degree in computer science, Information Security, Cybersecurity, or STEM field. 8+ years in GRC, security compliance, or technology audit in fintech/regulated financial Hands-on PCI DSS experience and at least one of NYDFS (23 NYCRR 500) or FFIEC cybersecurity Experience with Compliance-as-Code and GRC automation tooling (e.g., Vanta) with focus on Technical fluency with cloud (AWS/GCP/Azure), security architecture, and collaboration with 🎁 Benefits Base salary $152,000 - $258,000 USD plus equity and comprehensive medical, vision, dental coverage. 401(k) retirement plan, short and long-term disability, life insurance, and other perks.