FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Security Governance, Risk, Compliance Lead
SokinSecurity GRC Lead managing compliance across multiple frameworks in a fintech environment. Ensuring governance, risk, and compliance with industry standards while collaborating with engineering teams.
Core Competencies
Role fitCore Competencies
Use this summary to align your resume positioning with the role.
Demonstrates expertise in managing compliance programs across SOC 2, ISO 27001, PCI DSS, and GDPR, with hands-on experience in GRC automation platforms like Vanta. Proficient in risk assessment, audit coordination, and maintaining compliance documentation in tools such as Jira and Confluence.
Highest-signal resume keywords
GRC Compliance ManagementSOC 2 AuditsISO 27001 AuditsVanta Automation PlatformRisk Assessment
ATS Keywords
Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills
Compliance Program ManagementControl MappingAutomated Evidence ReviewRemediation TrackingRisk Register MaintenanceVendor Risk AssessmentExternal Audit CoordinationControl Failure InvestigationSecurity Questionnaire ResponsesPayments-Specific Risk Understanding
Tools & Technologies
VantaJiraConfluence
Industry Keywords
SOC 2ISO 27001PCI DSSGDPRInformation SecurityGRC
About the role
Key responsibilities & impact- Own and mature our compliance program across SOC 2, ISO 27001, PCI DSS, and GDPR
- Run Vanta day to day: control mapping, automated evidence review, remediation tracking
- Build and maintain the risk register
- Maintain the policy and procedure library in Confluence
- Design and run vendor/third-party risk assessments
- Lead external audits and pen test coordination
- Investigate control failures and monitoring alerts directly
- Own security questionnaire responses for customer and partner due diligence
- Report risk posture, audit status, and control health to the CISO
Requirements
What you’ll need- 4+ years in GRC, information security, or compliance
- Direct experience running SOC 2 and/or ISO 27001 audits from the compliance side
- Working technical literacy
- Hands-on experience with Vanta or an equivalent GRC automation platform
- Comfortable working daily in Jira and Confluence
- Understanding of payments-specific risk
Benefits
Comp & perks- Flexible working arrangements
- Professional development opportunities