Head of Customer Audits, Risk and Compliance
New York City, USA
Minimum qualifications:
- Bachelor's degree or equivalent practical experience.
- 10 years of experience in program or project management, specific to Risk, Compliance, and Security.
- 7 years of experience in a leadership role.
- Experience with audit compliance, risk assessments, risk management compliance, cloud, people management, and compliance policies.
- Experience leading the regulatory intake process, performing regulatory compliance analysis and control mapping for the sub-regions under ownership when there are new regulations or changes to existing regulations.
- Ability to travel up to 20%.
Preferred qualifications:
- Relevant professional certifications including CISSP, CISA, CIPP, GIAC, or related information security certifications.
- Experience in information security and compliance, IT audit, consulting, and risk management.
- Experience with ISO 27k family, SOC reports, PCI DSS, FedRAMP, or equivalent information security and privacy compliance certifications.
- Experience translating compliance requirements into operational and technical control objectives.
- Deep knowledge and understanding about cloud security compliance and infrastructure.
- Ability to drive complex programs across business and engineering teams with high collaboration and leadership.
About the job
A problem isn’t truly solved until it’s solved for all. That’s why Googlers build products that help create opportunities for everyone, whether down the street or across the globe. As a Program Manager at Google, you’ll lead complex, multi-disciplinary projects from start to finish — working with stakeholders to plan requirements, manage project schedules, identify risks, and communicate clearly with cross-functional partners across the company. Your projects will often span offices, time zones, and hemispheres. It's your job to coordinate the players and keep them up to date on progress and deadlines.
Our goal is to build a Google that looks like the world around us — and we want Googlers to stay and grow when they join us. As part of our efforts to build a Google for everyone, we build diversity, equity, and inclusion into our work and we aim to cultivate a sense of belonging throughout the company.
As part of the Google Cloud CISO Risk and Compliance organization, the Cloud Audit and Assurance team is responsible for Compliance Assurance and Audits. The Cloud Audit and Assurance program is offered to external parties providing customers and partners the right level of assurance in cases where these parties invoke their "Right to Audit" to Google Cloud.
Facilitating audits is both a regulatory requirement and contractual obligation. If Google does not provide a contractual audit right and facilitate audits and assurance activities, regulated customers cannot use the Google Cloud Platform and Google Workspace products and services.
Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.
The US base salary range for this full-time position is $208,000-$296,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.
Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits. Learn more about benefits at Google.
Responsibilities
- Deliver executive and industry communications that enable business growth.
- Establish a reliable and visible cadence for portfolio reviews, decision making, prioritization, and resource management.
- Be a change advocate responsible for initiating and leading multiple organizations through pivots needed to address shifts in business trends and priorities.
- Lead the strategic planning framework for a complex program portfolio including direct influence over resourcing decisions, planning cadence, and planning stakeholders.
- Lead cloud security risk, operational resilience, and regulatory compliance audit engagements requested by Google Cloud’s key customers, their internal IT audit teams, assigned third party auditors, or their regulators.
Tags: Audits CIPP CISA CISO CISSP Cloud Compliance FedRAMP GCP GIAC ISO 27000 PCI DSS Privacy Risk assessment Risk management SOC Travel
Perks/benefits: Career development Equity Salary bonus Startup environment
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Information Security Officer jobs
- Open Information Security Specialist jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Cyber Security Engineer jobs
- Open Ethical hacker / Pentester H/F jobs
- Open Cyber Security Architect jobs
- Open Cyber Security Specialist jobs
- Open Product Security Engineer jobs
- Open Manager Pentest H/F jobs
- Open Cybersecurity Analyst jobs
- Open Staff Security Engineer jobs
- Open Chief Information Security Officer jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Security Specialist jobs
- Open Senior Information Security Analyst jobs
- Open Senior Information Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Senior Penetration Tester jobs
- Open Consultant SOC / CERT H/F jobs
- Open IT Security Analyst jobs
- Open Security Researcher jobs
- Open Sr. Security Engineer jobs
- Open Security Operations Analyst jobs
- Open Cybersecurity Specialist jobs
- Open IT Security Engineer jobs
- Open CISM-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open ISO 27001-related jobs
- Open Agile-related jobs
- Open Application security-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open Analytics-related jobs
- Open CISA-related jobs
- Open IAM-related jobs
- Open Threat intelligence-related jobs
- Open SaaS-related jobs
- Open Security assessment-related jobs
- Open APIs-related jobs
- Open Malware-related jobs
- Open Forensics-related jobs
- Open Java-related jobs
- Open Security Clearance-related jobs
- Open DevOps-related jobs
- Open CEH-related jobs
- Open IDS-related jobs
- Open EDR-related jobs
- Open Kubernetes-related jobs