OnePlan

Unlock Business Agility with products and services for enterprises on the Microsoft platform

Senior Governance, Risk & Compliance Lead

ComplianceComplianceFull TimeRemoteTeam 51-200H1B SponsorCompany SiteLinkedIn

Location

California

Posted

3 days ago

Salary

Not specified

6 yrs expEnglishAzureCloud

Job Description

• Own and manage OnePlan’s governance, risk, and compliance program across security and privacy frameworks • Maintain the company’s compliance certifications including SOC 2 Type II, ISO 27001, and ISO 27701, ensuring ongoing audit readiness and successful surveillance audits and recertifications • Coordinate with external auditors and manage evidence collection, control validation, and supporting documentation • Maintain and update security policies, procedures, and internal documentation supporting compliance frameworks • Maintain the company risk register and drive risk identification, assessment, and remediation activities across the organization • Partner closely with Engineering and IT teams to implement and document security controls across the platform • Lead OnePlan’s FedRAMP Moderate readiness initiative, including NIST 800-53 gap assessments and remediation planning • Develop and maintain the System Security Plan (SSP) and associated FedRAMP documentation • Prepare the organization for 3PAO assessment and establish processes for ongoing continuous monitoring • Manage vendor risk assessments and third party security reviews • Support enterprise and public sector security questionnaires, compliance reviews, and due diligence requests • Ensure privacy and data protection practices align with GDPR and global privacy frameworks • Support the ongoing operation of OnePlan’s ISO 27701 privacy program

Job Requirements

  • 6+ years of experience in governance, risk and compliance, information security, or security compliance roles
  • Direct experience managing SOC 2 Type II and ISO 27001 audits and maintaining ongoing compliance programs
  • Strong understanding of NIST 800-53 and FedRAMP security requirements
  • Experience using compliance automation platforms such as Vanta or similar tools
  • Experience working in a cloud native SaaS environment, ideally within Azure
  • Strong documentation, audit management, and cross functional coordination skills
  • Ability to translate security and compliance requirements into practical operational processes
  • Experience leading or supporting FedRAMP readiness or authorization programs
  • Professional certifications such as CISSP, CISM, CISA, CRISC, ISO 27001 Lead Implementer/Auditor, or CIPP
  • Experience supporting enterprise security reviews and government compliance requirements
  • Experience working in high growth SaaS or enterprise software companies

Benefits

  • We’re a remote-first company with team members across the USA, Canada, UK, and India!
  • OnePlan has been recognized as the Global Microsoft Partner of the Year in Project Portfolio Management in 2019, 2020, 2021, 2022 and 2023.
  • We’ve been named a "Strong Performer" in the latest Forrester Strategic Portfolio Management WAVE report.
  • We offer comprehensive health, dental, and vision benefits, with additional insurance options.
  • Employer RRSP and 401K matching programs.
  • A fun, collaborative, and diverse environment with regular health and team challenges to keep things light and enjoyable!

Related Categories

Related Job Pages

More Compliance Jobs

Associate Director, Compliance – North America

BeiGene

BeOne is committed to fair and equitable compensation practices. Actual compensation packages are determined by several factors that are unique to each candidate, including but not limited to job-related skills, depth of experience, certifications, relevant education or training, and specific work location. We are proud to be an equal opportunity employer. BeOne does not discriminate on the basis of race, religion, color, sex, gender identity, sexual orientation, age, disability, national origin, veteran status or any other basis covered by appropriate law. In order to ensure reasonable accommodation for individuals protected by Section 503 of the Rehabilitation Act of 1973, the Vietnam Era Veterans’ Readjustment Assistance Act of 1974, Title I of the Americans with Disabilities Act of 1990, and any other applicable federal, state or local laws, applicants who require reasonable accommodation in the job application process may contact accommodationsus@beonemed.com.

Compliance3 days ago
Full TimeRemoteTeam 2,862Since 2010

The Associate Director, Compliance will serve as a compliance partner to various teams, ensuring adherence to regulatory and ethical standards. This role involves leading compliance initiatives, managing the Compliance Champion Program, and supporting internal and external audits.

United States
$161K - $211K / year
Full TimeRemote

About AlessaAlessa is a global provider of AML, sanctions screening, fraud, and regulatory compliance software. Our platform helps financial institutions, fintechs, casinos, insurance providers, and regulated entities detect financial crime and meet ev...

United States

Senior Compliance Analyst - External Audit

Centene Corporation

Transforming the health of the communities we serve, one person at a time.

Compliance3 days ago
Full TimeRemoteTeam 10,001+Since 1984H1B No Sponsor

The role involves assisting in maintaining the Compliance Program by providing regulatory interpretation, performing compliance reporting, and leading special projects. Responsibilities also include responding to external information requests for regulatory filings and managing compliance reporting inquiries from state and federal agencies.

United States
$70.1K - $126K / year
Compliance3 days ago
Full TimeRemoteTeam 5,001-10,000

Senior Manager of Compliance and Asset Management in community development finance

North Carolina + 2 moreAll locations: North Carolina, Texas, Virginia
$152.2K - $236.7K / year