Salary
💰 $200,000 - $260,000 per year
About the role
- Exodus is hiring a Security GRC Lead to strengthen trust, reduce risk, and safeguard our reputation by scaling governance, risk, and compliance programs.
- Define and execute the enterprise Security GRC strategy, ensuring alignment with business objectives and regulatory obligations.
- Lead and represent Exodus Security in regulatory, audit, and assurance engagements, acting as the primary interface with regulators, auditors, and senior stakeholders.
- Own the security risk management framework and processes, ensuring risk identification, assessment, reporting, and mitigation activities are embedded into business operations.
- Oversee compliance program delivery for relevant frameworks and regulations, including SOC 2, SOX, GDPR, DORA, and other applicable standards.
- Oversee third-party security risk management, from onboarding due diligence to continuous monitoring.
- Partner with the CSO to advise the executive team and Board on security risk posture, compliance readiness, and regulatory trends.
Requirements
- 6-8+ years of experience in security governance, risk, and compliance.
- Deep expertise in information security frameworks and regulatory regimes.
- Proven track record building and scaling GRC programs in complex, regulated, or high-growth environments.
- Experience leading audits, managing regulator relationships, and reporting to executive committees and boards.
- Exceptional communication and relationship-building skills across all organizational levels.
- A Plus: Crypto, financial services, fintech, or payments industry background.
- A Plus: Risk quantification experience.