Jobiba hiring network

Regulatory Risk Group Manager Jobs

1,244 active opportunities · Updated for October 2026

Fresh results

15 shown

Explore current regulatory risk group manager jobs. Use filters to narrow by work mode, employment type, experience and date posted.

C
Coinbase
📍 United States• Full-time• Remote• From $194K/yr
1mo ago

Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . We're hiring a Manager, GRC to join our Technology Risk & Controls team within Security and lead second line of defense advisory coverage across critical technology and security domains. This team evaluates risk posture, improves control design, and helps engineering, infrastructure, and security leaders make better, risk-informed decisions. You'll both manage a team and directly own advisory coverage for domains that may include disaster recovery and resiliency, SDLC, artificial intelligence, identity and access management, and supply chain - building trusted partnerships that ensure Coinbase addresses its most critical risks in its most critical functions. What you'll do: Lead second line advisory coverage for key technology and security domains, assessing risk exposure, control effectiveness, policy alignment, and emerging issues across the business. Partner with engineering and technology teams to evaluate domain posture and identify where additional controls, remediation, or governance improvements are needed. Review and challenge the design of new and existing risks and their corresponding controls to ensure our mitigations are scalable, effective, and aligned to business, risk, and regulatory expectations. Drive coordination across risk, controls, policy, audit, and assurance teams to translate incidents, audit findings, and regulatory expectations i

REMOTEawsaigo
View job →
C
Coinbase
📍 United Kingdom• Full-time• Remote• From £76.5K/yr
1mo ago

Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . The Coinbase Internal Audit team is an independent, risk-based function that helps protect and strengthen the company by evaluating the effectiveness of governance, compliance, risk management, and control processes. Operating as the third line of defense, the team partners across the business to deliver objective assurance and practical recommendations that improve operations, support regulatory readiness, and help Coinbase scale with confidence. Coinbase is looking for an Associate Manager to join the Internal Audit team, focused on Financial Crimes Compliance (FCC). This role is based in the United Kingdom (Remote) and will report to the Internal Audit Manager. This individual will take a lead role in executing FCC audits end-to-end, from planning through reporting and validation, while also mentoring junior team members and beginning to take on audit leadership responsibilities. This individual has solid experience working in or with FinTech or financial services, a working knowledge of the applicable regulatory environment, and demonstrated ability to independently manage audit engagements with minimal oversight. What you’ll do: Lead FCC audits from planning through reporting, demonstrating working knowledge of regulatory requirements across the U.S. and globally Own audit scoping, stakeholder management, fieldwork execution, data analysis, and vali

REMOTEawsaigo
View job →

Citi is looking for a Commercial Credit Officer to take ownership of credit underwriting and portfolio management within its rapidly growing US Commercial Bank, serving mid-to-large companies with revenues from $100 million to $3 billion. In this role, you will sit at the center of the lending process — assessing credit risk, structuring financing solutions, and partnering directly with relationship bankers and independent risk teams to deliver best-in-class outcomes for clients. Your decisions will directly shape the credit quality and performance of a significant commercial lending portfolio for the Digital, Technology & Communications (DTC) vertical. Responsibilities Manage the end-to-end credit underwriting process for new and existing commercial relationships, from initial pre-screening and credit appetite assessment through to approval, documentation, and ongoing portfolio oversight. Assess the creditworthiness of commercial borrowers by conducting detailed financial statement analysis, cash flow modeling, trend, and ratio analysis, and evaluating complex business structures including those with international subsidiaries. Prepare comprehensive written credit analyses that articulate the financing need, key risk factors, structural considerations, and a well-supported credit recommendation. Monitor existing borrowers through monthly and quarterly financial reviews, tracking covenant compliance, identifying early warning indicators, and escalating emerging concerns to relevant stakeholders. Oversee the loan documentation process for new transactions and amendments, coordinating with internal partners and external legal counsel to ensure all approval terms are accurately reflected in closing documents. Maintain regulatory compliance across the portfolio by ensuring accurate risk ratings, appropriate classification, and adherence to all applicable credit policies and regulatory framewor

artificial intelligenceaiExcel
View job →
B
Baseten
📍 San Francisco• Full-time
1mo ago

ABOUT BASETEN Baseten powers mission-critical inference for the world's most dynamic AI companies, like Cursor, Notion, OpenEvidence, Abridge, Clay, Gamma and Writer. By uniting applied AI research, flexible infrastructure, and seamless developer tooling, we enable companies operating at the frontier of AI to bring cutting-edge models into production. We're growing quickly and recently raised our $1.5B Series F , led by Altimeter Capital, Conviction Partners, and Spark Capital. Join us and help build the platform engineers turn to to ship AI products. THE ROLE We are seeking an experienced and detail-oriented GRC (Governance, Risk, and Compliance) Manager to build, support, and continuously enhance Baseten’s security governance, compliance, and privacy programs. As one of the early members of our security organization, you will play a key role in ensuring our platform meets and exceeds the highest standards for privacy, trust, and regulatory compliance. In this role, you’ll work cross-functionally with engineering, operations, legal, and leadership teams to develop policies, manage audits, and implement controls aligned with frameworks such as SOC 2, ISO 27001, ISO 27701, and FedRAMP. You’ll be instrumental in building scalable processes to manage risk, support customer assurance, and uphold Baseten’s commitment to security and compliance as we grow. RESPONSIBILITIES Governance & Policy Development: Design, implement, and maintain security governance frameworks, policies, and procedures that align with Baseten’s risk posture and industry best practices. Risk Management: Build and manage the company-wide risk assessment program, identifying, tracking, and mitigating key security and compliance risks. Compliance Operations: Lead efforts to achieve and maintain compliance with SOC 2, ISO 27001/27701, HIPAA, FedRAMP and other applicable standards and regulations. Audit & Certification Management: Coordinate external audits and certification processes, ensuring e

awsgcpmachine learning
View job →
R
1mo ago

Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. About the Role We are seeking a mid-level AppSec Vulnerability Management Engineer with a strong software development background. In this role, you will bridge the gap between security, compliance, and engineering teams. You will identify application vulnerabilities, maintain software supply chain security, and drive tracking to satisfy strict regulatory compliance frameworks. You will also serve as a technical responder during security incidents, deploying real-time countermeasures to protect our software ecosystem. What You'll Do Core Responsibilities Vulnerability Scanning & Triage: Perform periodic application security scanning activities. Review results and prioritize flaws based on CVSS scores, real-world exploitability, and system exposure. Compliance-Driven Tracking: Track, document, and manage vulnerabilities according to strict compliance SLAs (e.g., SOC 2, ISO 27001, PCI-DSS). Maintain audit-ready evidence of remediation timelines and exception approvals. Executive Reporting & Alerting: Escalate and report critical exposures directly to the CISO and senior leadership. Maintain dashboards and alerting mechanisms that visualize vulnerability status, risk trends, and compliance posture. Software Supply Chain Security: Ownership of the organization's Software Bill of Materials (SBOM). Continually update SBOM inventories to ensure compliance with modern regulatory requirements and dependency tracking. Help Replit mature through various SLSA levels for supply chain security. Remediation Collaboration: Partner with development teams to provide clear mitigation paths. Review, write, and patch code directly when necessary to resolve security flaws. Tooling Integration: Configure and tune automated security te

javascripttypescriptpython
View job →
P
1mo ago

We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. About the Team: The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We partner closely across the company to ensure Plaid’s platform remains secure, resilient, and aligned with industry and regulatory expectations. The Security Contracts workstream is a core part of our Security Assurance and Trust Enablement program — ensuring Plaid's contractual security obligations with customers and data partners are defensible, consistent, and never a bottleneck to deal velocity, all while building trust. About the Role You will own Plaid’s Security Contracts workstream end-to-end—the DRI for how security contract reviews get done, how fast they move, and how the program improves over time. You will review security provisions in customer MSAs, DPAs, and security addenda, identify unacceptable clauses, and provide Legal and GTM with the actionable security feedback they n

P
Plaid
📍 San Francisco• Full-time
1mo ago

We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We own Plaid’s security compliance frameworks, run our audits and risk programs, and partner across the company to keep Plaid’s platform secure, resilient, and aligned with industry and regulatory expectations. GRC Engineering is how we make all of that scale — turning compliance into code, evidence into telemetry, and audits into a continuous, automated capability. The Role: You will own GRC Engineering at Plaid — a foundational, high-ownership role defining an emerging discipline from the ground up. Today most of our compliance work is manual and point-in-time; you will turn it into an engineered system that is continuous, data-driven, and scalable, and set the technical direction for the field. You will: Define the discipline and the architecture — how GRC Engineering works at Plaid, not just execute with

pythonsqlaws
View job →
M
Midjourney
📍 San Francisco• Full-time
1mo ago

What you’ll do Own day-to-day operations for the scanner program and scanner builds in the spa: purchasing/procurement, vendor management, receiving, inventory, and logistics. Stand up lightweight production operations as we move from prototypes to repeatable builds: build planning, kitting, work instructions, and readiness checklists. Partner with Quality to ensure the operational system supports compliance: traceability, document control, training records, NCR/CAPA workflows, and audit readiness. Drive cross-functional execution for the physical spa build-out and scanner integration: schedules, dependencies, risk register, and weekly coordination with vendors and internal teams. Own the “integration glue” across facilities + device ops: commissioning plans, acceptance criteria, and operational handoff (runbooks, maintenance, spares, escalation paths). Build and track operational metrics: cost, budget, lead times, vendor performance, build throughput, and reliability of critical subsystems. Audit of import/export documentation, management of contract renewals, regulatory compliance. What we’re looking for Proven operations leadership in hardware/medical/robotics (or similarly complex electromechanical products), including procurement and vendor management. Strong program management instincts: can run schedules, unblock cross-functional dependencies, and keep priorities clear under ambiguity. Comfort operating in quality/regulatory environments and building processes that are rigorous without slowing a small team. High ownership and bias to action: can jump between spreadsheets, docks, and the lab/site to keep the program moving. Useful experience Experience running prototype-to-production transitions (NPI, EVT/DVT/PVT-style builds, CM/EMS collaboration). Facilities / construction operations experience (GC coordination, MEP commissioning, site readiness). Familiarity with inventory systems and procurement tooling (even “simple but disciplined”).

PE
Private Employer
📍 Istanbul Maslak• Full-time• Hybrid
1mo ago

About the Team At Trendyol Tech, our mission is to create a positive impact in our ecosystem by enabling commerce through technology. We solve complex problems with data, creativity, and agility — always driven by real outcomes. With a culture built on learning, collaboration, and ownership, we grow together while building what’s next. About the Role This role is part of the Security Architecture & Engineering team and focuses on embedding security into systems, platforms, products, and infrastructure by design. The role provides security architecture consultancy to technical and business stakeholders, helping teams make pragmatic, risk-based security decisions while supporting business objectives. It is responsible for identifying architectural security risks, design flaws, and security gaps across new initiatives, infrastructure changes, cloud adoption, platform services, and business-critical systems. In addition, the role contributes to building reusable reference security architectures, design principles, and assessment frameworks aligned with regulatory and industry frameworks such as NIST, ISO, PCI DSS, GDPR, and KVKK. The role also drives process improvement and automation initiatives to improve the scalability, consistency, and maturity of security architecture practices across the organization.

Employee Applicant Privacy Notice Who we are: Shape a brighter financial future with us. Together with our members, we’re changing the way people think about and interact with personal finance. We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world. The role: We are seeking an Operations Control Analyst - SMB who will support the Vendor Relationship Manager in maintaining the operational integrity and regulatory compliance of third-party vendors within the Small Business Lending unit. This role focuses on the execution of the control framework, ensuring that vendor activities across the entire SMB lifecycle—including sales, servicing, and collections—align with SoFi’s internal policies and external regulatory requirements. What you’ll do: To assist the Vendor Relationship Manager - SMB in maintaining the operational integrity of the Small Business Lending unit, the Operations Control Analyst — SMB will focus on the following structured responsibilities: Process Integrity and Resilience: You will execute consistent monitoring and rigorous testing of vendor processes to ensure all workflows are thoroughly documented, testable, and capable of supporting long-term operational resilience. Risk Mitigation and Compliance: Working closely with the Vendor Manager and the Operations Exam & Control Support Manager, you will assess vendor risk across customer acquisition and servicing to ensure alignment with internal policies and regulatory requirements. Data-Driven Insights: By utilizing advanced Excel or Google Sheets functions, you wil

restaigo
View job →
M
Mongodb
📍 United States• Full-time• From $151K/yr
1mo ago

MongoDB’s Security Product Management team is seeking a Staff Product Manager to own security, compliance, and public sector product strategy within Atlas for Government (A4G). In this role, you will be a key member of the security product management team, helping make data security a market differentiator that enables MongoDB to win in enterprise and regulated industries. You will lead product strategy and execution for capabilities and programs that support federal compliance requirements and broader regulated-industry needs. You will work across Engineering, Compliance, Legal, Security, and Go-to-Market teams to translate complex regulatory and customer requirements into clear product investments, roadmaps, and outcomes. This role is suited for a candidate who can orchestrate multiple interlinked product areas, own cross-team product and architectural trade-offs, and align senior stakeholders around multi-year bets. You will be expected to identify opportunities and dependencies that cut across team boundaries, bring clarity to ambiguous problem spaces, and establish reusable ways of working that help MongoDB deliver secure, compliant platform capabilities for public sector and other regulated markets. You will partner closely with senior engineering and business leaders to evaluate trade-offs, sequence investments, and bring clarity to decisions that balance customer impact, execution risk, and long-term business value. This role can be based out of of our offices or remotely in the United States. The Federal Risk and Authorization Management Program (FedRAMP) is a US government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services. Our FedRAMP program requires that anyone who is accessing customer data or metadata inside the Authorization Boundary be a US Person on US Soil. Responsibilities Security and Compliance Product Strategy Own the public sector compliance roadm

mongodbawsazure
View job →
M
Mongodb
📍 United States• Full-time• From $69K/yr
1mo ago

The Travel Manager Americas is accountable for the strategy, operations, and optimization of the company’s corporate travel program across the Americas region, while also providing support for the regional leads. This role requires a consistent, cost‑effective, and employee‑centric travel experience while maintaining compliance with global travel & expense (T&E) policy and regional regulatory requirements. The role partners closely with Finance, HR, Procurement, Security, and regional business leaders to support business growth, traveler safety, and operational excellence. This role can be based remotely in the United States, or hybrid near one of our hub offices. Key Responsibilities Travel Program Strategy & Governance Own the Americas travel program, aligned to global T&E policy and mobility strategy Localize global travel policies for regional requirements (tax, labor, safety, visa, and regulatory) Act as the primary regional escalation point for travel‑related issues Supplier & Vendor Management Manage regional relationships with Travel Management Company (TMC)- Navan, Airlines, hotel chains, car rental providers Support sourcing, RFPs, and contract renewals in partnership with Procurement Track supplier performance against SLAs, cost targets, and traveler satisfaction metrics Financial & Cost Management Drive cost optimization through preferred supplier adoption and traveler behavior change Partner with Finance on budgeting, forecasting, and savings initiatives Monitor leakage, out‑of‑policy spend, and compliance trends Traveler Experience & Support Ensure a seamless, inclusive, and regionally relevant traveler experience Define traveler communications, guidance, and self‑service resources Oversee issue resolution related to disruptions, escalations, or complex bookings Risk, Duty of Care & Compliance Partner with Security and Legal to support duty of care obligations Ensure regional alignment with traveler tracking, emergency r

mongodbawsazure
View job →
O
Okta
📍 New York• Full-time• From $180K/yr
1mo ago

Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted, neutral infrastructure that enables organizations to safely embrace this new era. This work requires a relentless drive to solve complex challenges with real-world stakes. We are looking for builders and owners who operate with speed and urgency and execute with excellence. This is an opportunity to do career-defining work. We're all in on this mission. If you are too, let's talk. Ready to scale your career at the intersection of law and innovation? Join Okta’s Public Sector and Regulated Offerings Legal Team . As Corporate Counsel, you won’t just be reviewing regulatory requirements—you’ll be a foundational builder of a scalable, global Public Sector practice. In this role, you will provide frontline legal counseling for Okta’s most critical regulated environments, working both independently and alongside senior leadership to navigate the complexities of the U.S. government’s regulatory frameworks. You will partner with business and technology teams to guide the development and implementation of Okta’s Public Sector solutions. Our Public Sector legal team drives the legal strategy for introducing new products and features into regulated environments (e.g., FedRAMP, GovRAMP, DoD CC SRG). In this role, you must use sharp critical thinking to provide pragmatic legal solutions that balance aggressive business objectives with necessary risk mitigation. Finally, you serve as a bridge between legal, engineering, compliance, security, and sales teams to ensure our products meet the rigorous standards of our public sector customers. What You Bring to the Table Comfortable working independently in a fast-paced, remote-friendly environment and can pivot as business goals evolve. A deep understanding of the unique legal and regulatory hurdles associated with U.S. regulated industries, specifically: ○ FedRAMP

awsrestmachine learning
View job →
C
Coinbase
📍 - USA• Full-time• Remote• From $176K/yr
1mo ago

Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . As the Operations Manager for Coinbase Bermuda (CBBM and CBSL), you'll report to the Chief Operating Officer and help run all aspects of our Bermuda operations, from product and regulatory operations to service delivery, technology, and outsourcing oversight. The Operations team drives country-level growth initiatives that align Coinbase Bermuda's business plans to our global strategy. You'll own operational execution across critical business areas and work directly with regulators, banking partners, and cross-functional teams to ensure our Bermuda entities operate with resilience and in full regulatory compliance. What you'll do: Own the oversight and management of operational functions within CB Bermuda and outsourced to intragroup or third-party entities, including implementing policies, managing SLA frameworks, and ensuring delivery in line with Bermuda regulations and contractual obligations. Build and maintain supervision frameworks across critical business areas of Coinbase Bermuda, ensuring alignment with both regulatory requirements and operational best practices. Lead the establishment of operational resilience frameworks, including risk identification, contingency planning, incident response coordination, and communication with regulators and service providers to uphold business continuity. Partner with internal and external stakeholders, including banking

REMOTEawsaigo
View job →
C
Coinbase
📍 - USA• Full-time• Remote• From $218K/yr
1mo ago

Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . Coinbase's Compliance organization manages regulatory obligations across products, operations, and growth — spanning transaction monitoring, sanctions screening, regulatory change management, and exam readiness across 60+ global entities. This role sits directly inside the Office of the CTO, embedded as a founding engineer within Compliance. You'll identify high-value workflow opportunities, rapidly prototype solutions using Coinbase's existing AI platform, and drive measurable adoption of AI tooling across the Compliance org. You'll be the connective tissue between Compliance stakeholders and the engineering teams who maintain Coinbase's AI platform, acting as advocate, translator, and builder in one. What you'll do: Embed with Compliance leadership and frontline teams to surface the automation opportunities with the greatest business leverage — developing ground-level understanding of workflows like transaction monitoring, sanctions screening, regulatory change management, and exam preparation. Prototype quickly and pragmatically using Coinbase's existing AI platform as the default foundation before recommending net-new builds. Own the Compliance automation roadmap in partnership with the Chief Compliance Officer and Compliance leadership, translating complex regulatory workflows — case resolution, trade surveillance, risk assessment, policy management — into engin

REMOTEawsaigo
View job →
🔔

Get new regulatory risk group manager jobs by email

Daily job updates · Unsubscribe anytime