Governance, Risk and Compliance Manager leading LEAP’s global GRC function. Connecting security and compliance practices to business growth in a technology environment.
Responsibilities
Own and mature LEAP’s global governance, risk, and compliance program, aligned to SOC 2, ISO 27001, NIST CSF, and relevant regional frameworks.
Lead audits and independent assessments, acting as the primary contact for external auditors and assessors.
Maintain a single source of truth for security policies, controls, and evidence across LEAP and its product portfolio.
Ensure compliance scales as the business grows, acquires products, and expands into new markets.
Establish and run an enterprise risk management framework, including risk assessments and executive risk acceptance.
Conduct access reviews, control effectiveness reviews, and third-party risk assessments, providing pragmatic guidance on risk and trade-offs.
Own enterprise security questionnaires, RFPs, and due diligence responses, reducing friction in the sales process.
Maintain LEAP’s client-facing Trust Centre and standardise responses to recurring customer questions.
Act as the escalation point for complex assurance topics, including AI usage, data handling, and product architecture.
Oversee security awareness and training programs to lift security maturity across the organisation.
Work closely with Information Security, Engineering, IT, Product, and Sales to embed compliance without slowing delivery.
Use automation and tooling to improve efficiency, reduce reactive work, and help build a scalable, sustainable security function.
Requirements
Proven experience in GRC, Technology Risk, or Information Security Compliance roles within SaaS, cloud, or technology environments.
Hands-on experience owning SOC 2 and/or ISO 27001 programs, and supporting enterprise customer security due diligence.
Strong understanding of cloud infrastructure, SaaS architectures, and modern software delivery practices.
Experience leading audits, managing evidence, and engaging directly with customers, auditors, and internal stakeholders.
Ability to translate technical security controls into clear, business-focused explanations that support sales and executive decision-making.
Experience operating in complex or multi-entity environments, and working pragmatically with changing requirements and incomplete information.
Prior people leadership experience, or readiness to build and lead a small GRC team.
Benefits
Flexible and hybrid working.
Enjoy an additional paid wellbeing day every year.
Director of Compliance Operations ensuring AltaLink's compliance with Alberta standards and regulations. Leading a team to manage corporate compliance activities effectively.
IT Risk and Compliance Senior Specialist at GDIT managing security for cloud and on - premises systems. Collaborating with stakeholders and developing security documentation while ensuring compliance with regulations.
Manager for Portfolio Compliance overseeing investment compliance and regulatory guidance in New York at AustralianSuper. Leading compliance monitoring and governance for investment activities.
Export Compliance Manager overseeing export compliance programs and processes. Ensuring alignment with global regulatory requirements while partnering with leadership to minimize risks in international trade.
Maintenance Programs Compliance Specialist managing compliance of maintenance programs and changes for Frontier Airlines. Responsible for auditing and oversight of regulatory adherence and program revisions.
Analista Regulatório Júnior at Thymos Energia assisting clients in navigating the energy sector regulations. Monitoring regulations and supporting strategic decision - making for compliance.
Senior Compliance Officer ensuring regulatory compliance at a digital assets boutique specializing in blockchain - based solutions. Collaborating across departments to safeguard company operations.
Compliance Analyst at ElectroRoute monitoring suspicious trading patterns and regulatory compliance. Supporting compliance team with various internal policies and procedures while managing surveillance systems.
Head of Regulatory Function leading quality assessments and degree awarding powers for higher education in the UK. Strategic leadership role shaping regulatory practice and engaging stakeholders.
Director of Compliance at Norm Ai overseeing legal, ethical, regulatory, and data compliance programs. Building a culture of compliance and advising leadership on legal risks in a fast - growing environment.