Program Manager III, Regional Risk and Compliance

London, UK

Google

Google’s mission is to organize the world's information and make it universally accessible and useful.

View company page

Minimum qualifications:

  • Bachelor's degree in a relevant field, or equivalent practical experience.
  • Candidates will typically have 5 years of experience in program management.
  • Typically 5 years of experience with risk management and/or compliance in regulated industries (i.e., financial services, public sector, healthcare).
  • Typically 5 years of experience in program definition and management with a focus on audit compliance or cloud compliance.

Preferred qualifications:

  • Typically 5 years of experience managing cross-functional and/or cross-team projects.
  • Experience in one or more of the following: data protection, threat modeling, incident/emergency response, security risk mitigation or evaluation, OS hardening, vulnerability management, penetration testing, access management, or familiarity with cryptographic concepts.
  • Experience in a customer-facing role.
  • Experience with ISO 27k family, SOC reports, PCI DSS, FedRAMP, or equivalent information security and privacy compliance certifications.
  • Experience in problem solving within fast-paced and constantly changing environments.
  • Knowledge of security capabilities of cloud products.

About the job

A problem isn’t truly solved until it’s solved for all. That’s why Googlers build products that help create opportunities for everyone, whether down the street or across the globe. As a Program Manager at Google, you’ll lead complex, multi-disciplinary projects from start to finish — working with stakeholders to plan requirements, manage project schedules, identify risks, and communicate clearly with cross-functional partners across the company. Your projects will often span offices, time zones, and hemispheres. It's your job to coordinate the players and keep them up to date on progress and deadlines.

Our goal is to build a Google that looks like the world around us — and we want Googlers to stay and grow when they join us. As part of our efforts to build a Google for everyone, we build diversity, equity, and inclusion into our work and we aim to cultivate a sense of belonging throughout the company.

As part of the Google Cloud Risk and Compliance organization, the Cloud Audit and Assurance team is responsible for Compliance Assurance and Audits. The Cloud Audit and Assurance program is offered to external parties providing customers and partners the right level of assurance in cases where these parties invoke their "Right to Audit" to Google Cloud.

Facilitating audits is both a regulatory requirement and contractual obligation. If Google does not provide a contractual audit right and facilitate audits and assurance activities, regulated customers cannot use the Google Cloud Platform and Google Workspace products and services.

Google Cloud accelerates every organization’s ability to digitally transform its business and industry. We deliver enterprise-grade solutions that leverage Google’s cutting-edge technology, and tools that help developers build more sustainably. Customers in more than 200 countries and territories turn to Google Cloud as their trusted partner to enable growth and solve their most critical business problems.

Responsibilities

  • Lead cloud security risk, operational resilience, and regulatory compliance audit engagements requested by Google Cloud’s largest customers, their internal IT audit teams, assigned third-party auditors and/or their regulators.
  • Collaborate across Google engineering, data center operations, and other teams to prepare and execute audit engagements and educate customers on Google Cloud’s ongoing compliance postures to meet business and regulatory requirements.
  • Lead the regulatory intake process and perform regulatory compliance analysis and control mapping for the responsible regions.
  • Build long-term relationships with key leadership stakeholders across all lines of defense to retain and enhance continuous trust in Google Cloud’s products and services.
  • Review and approve "in-scope" contractual commitments and geo-expansion proposals that materially impact Google Cloud and Technical Infrastructure's control environment, internal policies and procedures, and operational capabilities.
Apply now Apply later
  • Share this job via
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Tags: Audits Cloud Compliance FedRAMP GCP ISO 27000 PCI DSS Pentesting Privacy Risk management SOC Vulnerability management

Perks/benefits: Career development Startup environment

Region: Europe
Country: United Kingdom
Job stats:  4  1  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.