With 1,000 intelligence professionals, over $300M in sales, and serving over 1,900 clients worldwide, Recorded Future is the world's most advanced, and largest, intelligence company! Recorded Future seeks a Technology Risk & Compliance Lead to manage regulatory compliance audits for using established risk and security frameworks. Additionally, experience in business continuity/crisis management, insider risk programs, and/or FedRamp certification would be key as this role is at the forefront of maturing integrations across Legal & Compliance, Information Security, Technology, and key business partners. The individual will have a critical role in problem-solving through independent work, collaboration across teams, engagement with senior leadership, and helping create recommendations for executive decisioning.
What You'll Do:
- Prepare for internal and external assessments ( ISO, SOC, FedRampetc.) by ensuring controls are audit-ready and validated on an ongoing basis
- Conduct risk assessments to identify potential security risks and advise on process and governance improvements to mitigate these risks
- Help conduct post-audit after action reports to remediate any risks and identify areas for continuous improvement (process, training, automation, etc.)
- Coordinate closely with information security and technology teams to holistically mature enterprise resilience through remediation of audit findings, adaptive business continuity practices, engagement in tabletop exercises, and policy updates. Maintain evidence repositories and gather evidence to support both internal and external assessment and certification testing
- Report risk and control status to senior management and governance committees (Legal, Privacy, Enterprise Risk Management, etc.)
- Participate in multi-stakeholder meetings and provide administrative support for senior-level discussions
- Maintain a deep understanding of the business operation priorities and align compliance obligations to shape successful execution of priorities
- Ensure ongoing compliance with statutory and regulatory requirements andanticipate future legislation and/or customer demands, advising management on required actions and adjustments as needed
- Regularly define and review key success metrics for data-focused tracking and proactively seek out new and improved mechanisms for visibility, ensuring the program stays aligned with organizational objectives
What You'll Bring:
- Experience with artifact collection and compliance, either through technical control frameworks (e.g., SOC2, ISO27001, FedRAMP, ) or through comparable evidence collection and documentation obligations that require great attention to detail (i.e. Woods review, litigation discovery stage, facility clearance application, etc)
- Strong interpersonal, communication, and presentation skills necessary for interaction with business leaders and teams across all levels of the organization
- Strong negotiation and consensus-building skills
- The ability to meet project deliverables
- Contribute to a work environment that encourages knowledge of, respect for, and the development of skills to engage with those of other cultures and backgrounds
Preferred Qualifications:
- Bachelor's degree or equivalent combination of education and experience; with strong preference for work experience in program management, crisis management, and/or sensitive investigations. a degree in Prior work in a highly regulated industry or classified work environment
- Experience with executive briefings and/or participation in solutions-oriented working groups
- Spanish and/or Ukrainian language proficiency is a plus
- Willingness to invest time into professional development (training, conferences, certifications)
The base salary range for this full-time position is $108,000-$162,000. Our salary ranges are determined by role, level, and location. The salary displayed reflects the range for new hire salaries for the position across all US locations. Within the range, individual pay is determined by state, work location and additional factors, including job-related skills, experience, and relevant education or training. This position may be eligible for incentive compensation, equity, and medical, dental, vision, life insurance and 401K. Your recruiter can share more about the specific details of the compensation and benefit package during the hiring process.
Why should you join Recorded Future? Recorded Future employees (or "Futurists"), represent over 40 nationalities and embody our core values of having high standards, practicing inclusion, and acting ethically. Our dedication to empowering clients with intelligence to disrupt adversaries has earned us a 4.6-star user rating on G2 and more than 50% of Fortune 100 companies as customers. Want more info? Blog & Podcast: Learn everything you want to know (and maybe some things you'd rather not know) about the world of cyber threat intelligence Linkedin, Instagram&Twitter: What's happening at Recorded Future The Record: The Record is a cybersecurity news publication that explores the untold stories in this rapidly changing field Timeline: History of Recorded Future Recognition: Check out our awards and announcements We are committed to maintaining an environment that attracts and retains talent from a diverse range of experiences, backgrounds and lifestyles. By ensuring all feel included and respected for being unique and bringing their whole selves to work, Recorded Future is made a better place every day.
If you need any accommodation or special assistance to navigate our website or to complete your application, please send an e-mail with your request to our recruiting team at careers@recordedfuture.com
Recorded Future is an equal opportunity and affirmative action employer and we encourage candidates from all backgrounds to apply. Recorded Future does not discriminate based on race, religion, color, national origin, gender including pregnancy, sexual orientation, gender identity, age, marital status, veteran status, disability or any other characteristic protected by law.
Recorded Future will not discharge, discipline or in any other manner discriminate against any employee or applicant for employment because such employee or applicant has inquired about, discussed, or disclosed the compensation of the employee or applicant or another employee or applicant.
Recorded Future does not administer a lie detector test as a condition of employment or continued employment. This is in compliance with the law of the Commonwealth of Massachusetts, and in alignment with our hiring practices across all jurisdictions. Notice to Agency and Search Firm Representatives: Recorded Future will not accept unsolicited resumes from any source other than directly from a candidate. Any unsolicited resumes sent to Recorded Future, including those sent to our employees or through our website, will become the property of Recorded Future. Recorded Future will not be liable for any fees related to unsolicited resumes. Agencies must have a valid written agreement in place with Recorded Future's recruitment team and must receive written authorization before submitting resumes. Submissions made without such agreements and authorization will not be accepted and no fees will be paid.
Note: Our interview process for all final-round candidates requires a mandatoryin-person interviewor a live, scheduledvideo conference with the hiring manager. We do not conduct interviews via instant messaging or text. All communications during the application process will come from individuals within our HR department via their Recorded Future email address.
|