Submitting more applications increases your chances of landing a job.
Here’s how busy the average job seeker was last month:
Opportunities viewed
Applications submitted
Keep exploring and applying to maximize your chances!
Looking for employers with a proven track record of hiring women?
Click here to explore opportunities now!You are invited to participate in a survey designed to help researchers understand how best to match workers to the types of jobs they are searching for
Would You Be Likely to Participate?
If selected, we will contact you via email with further instructions and details about your participation.
You will receive a $7 payout for answering the survey.
We are seeking an experienced GRC Lead to drive governance, risk, and compliance activities
in Nawy. This role ensures that security risks are identified, assessed, and managed while
maintaining compliance with relevant regulatory and industry standards.
The GRC lead leads the risk governance initiatives, oversees audits, develops policies,
manages security awareness, and partners closely with engineering, product, and legal teams
to ensure secure-by-design operations across the entire organization.
Responsibilities
● Maintain an enterprise-wide information security governance & ISMS framework that
aligns with business objectives, regulatory requirements, and industry best practices.
● Develop, maintain, and enforce security policies, standards, and procedures.
● Lead strategic planning initiatives for security risk management, ensuring alignment
with ISO 27001 requirements.
● Design, implement, and manage a security risk management framework that includes
risk assessments, control evaluations, and mitigation strategies.
● Oversee and continuously improve the processes for vendor security risk assessments,
ensuring third-party risks are effectively managed.
● Develop and monitor key risk indicators (KRIs) and performance metrics to evaluate the
effectiveness of security controls and risk mitigation efforts.
● Oversee the development, implementation, and ongoing management of the
organization’s security policies.
● Prepare and lead the organization’s readiness for external and internal security audits,
including ISO 27001 certification audits.
● Build and run security awareness and phishing simulation programs and promote an
organization-wide culture of security accountability.
● Ensure ongoing compliance with local regulatory frameworks, including those issued by
CBE, FRA, and related bodies.
You'll no longer be considered for this role and your application will be removed from the employer's inbox.