Jobs
>
London

    Information Security Manager, Compliance - London, United Kingdom - Ripple

    Default job background
    Description

    Information Security Manager, Compliance Ripple

    Ripple is the leading provider of crypto solutions for businesses. Learn how we're helping organizations of all sizes drive impact with the power of crypto.

    View company page

    At Ripple, we're building a world where value moves like information does today. It's big, it's bold, and we're already doing it. Through our crypto solutions for financial institutions, businesses, governments and developers, we are improving the global financial system and creating greater economic fairness and opportunity for more people, in more places around the world. And we get to do the best work of our career and grow our skills surrounded by colleagues who have our backs.

    If you're ready to see your impact and unlock incredible career growth opportunities, join us, and build real world value.

    THE WORK:

    Through our blockchain technology and rapidly growing network of financial institutions, Ripple is improving the global financial system and increasing economic inclusion for more people, in more places around the world. Ripple is looking for passionate Information Security professionals to build a world-class Information Security program. As part of the Information Security team, you will help us achieve this mission by actively working to protect our staff, company, and the larger crypto communities we engage with.

    WHAT YOU'LL DO:

    • Examine, evaluate, and document internal controls based on various security standards (NIST CSF, MAS, ITGC, SOC2, ISO-27001, etc.)
    • Lead IT-related audits and examinations conducted by external parties
    • Align policies, standards and procedures with compliance objectives
    • Prepare metrics and reports for management on the status of GRC objectives
    • Evaluate and respond to customer/prospect questions and audits. Assist in aligning compliance reports and public-facing Trust Page to reduce the overall number of customer requests
    • Remain up to date on current security laws, regulations and standards
    • Represent the GRC Team by participating directly with projects and provide guidance, requirements and documentation for security-related purposes when requested
    • Create, evaluate, document and maintain standards, processes and procedures relative to security and privacy
    • Engage with management to identify possible resolutions to control weaknesses and opportunities for improvement.
    • Perform GRC recurring tasks as required
    • Provide consultative guidance and oversight to project teams to design, develop, deploy and sustain solutions that meet compliance requirements, including but not limited to a set of technical deliverables, cost, schedule, quality, and status reporting
    • Assist in selecting, configuring and/or administering program via GRC tools
    • Assist with building and/or testing integrations and automations with SaaS/IaaS platforms to collect evidence for security audits and monitor for security configurations
    • Assist with developing configuration monitoring capabilities for SaaS and IaaS platforms

    WHAT YOU'LL BRING:

    • Degree or equivalent in Computer Science or related field
    • 7 years of experience in Information Security with a specialization in one area of GRC
    • A broad understanding of security domains
    • Experience working with engineering teams to understand issues and prioritize remediations
    • Experience with Money Transmitter License (MTL) regulatory standards and audits and ITGC Control audits
    • Proficiency with common information security frameworks including SOC2, NIST CSF, and ISO 27001
    • Demonstrated ability to collaborate effectively across teams
    • Demonstrated organizational, project management and documentation skills
    • Familiarity and experience with IT/Security/GRC toolset, such as : Jira, Confluence, integrated GRC platforms etc.
    • Ability to analyze empirical evidence and technical reports, identify root causes, work with teams to identify solutions to remediate gaps.
    • Familiarly with different cloud concepts and tooling including AWS, GCP
    • Experience in a remote-first and distributed environment
    • Someone willing to adapt to change in a fast moving environment
    • Experience with cloud-native pre-IPO startup companies
    • Experience with AWS security services and tooling
    • Desirable certifications: CISSP, CISA, PMP

    WHO WE ARE:

    Do Your Best Work

    • The opportunity to build in a fast-paced start-up environment with experienced industry leaders
    • A learning environment where you can dive deep into the latest technologies and make an impact. A professional development budget to support other modes of learning.
    • Thrive in an environment where no matter what race, ethnicity, gender, origin, or culture they identify with, every employee is a respected, valued, and empowered part of the team.
    • Ripple is Flexible First: in-office collaboration for moments that matter is important to our culture, and we give managers and teams the flexibility to decide which days they come in.
    • Weekly all-company meeting - business updates and ask me anything style discussion with our Leadership Team
    • We come together for moments that matter which include team offsites, team bonding activities, happy hours and more
    • Competitive benefits that cover physical and mental healthcare, retirement, family forming, and family support
    • Employee giving match

    Take Care of Yourself

    • Twice a quarter R&R days so you can rest and recharge
    • Generous wellness reimbursement and weekly onsite & virtual programming
    • Generous vacation policy - work with your manager to take time off when you need it
    • Industry-leading parental leave policies. Family planning benefits.
    • Catered lunches, fully-stocked kitchens with premium snacks/beverages, and plenty of fun events

    Benefits listed above are for full-time employees.

    At Ripple, we're building a world where value moves like information does today. It's big, it's bold, and we're already doing it. Through our crypto solutions for financial institutions, businesses, governments and developers, we are improving the global financial system and creating greater economic fairness and opportunity for more people, in more places around the world. And we get to do the best work of our career and grow our skills surrounded by colleagues who have our backs.

    If you're ready to see your impact and unlock incredible career growth opportunities, join us, and build real world value.

    THE WORK:

    Through our blockchain technology and rapidly growing network of financial institutions, Ripple is improving the global financial system and increasing economic inclusion for more people, in more places around the world. Ripple is looking for passionate Information Security professionals to build a world-class Information Security program. As part of the Information Security team, you will help us achieve this mission by actively working to protect our staff, company, and the larger crypto communities we engage with.

    WHAT YOU'LL DO:

    • Examine, evaluate, and document internal controls based on various security standards (NIST CSF, MAS, ITGC, SOC2, ISO-27001, etc.)
    • Lead IT-related audits and examinations conducted by external parties
    • Align policies, standards and procedures with compliance objectives
    • Prepare metrics and reports for management on the status of GRC objectives
    • Evaluate and respond to customer/prospect questions and audits. Assist in aligning compliance reports and public-facing Trust Page to reduce the overall number of customer requests
    • Remain up to date on current security laws, regulations and standards
    • Represent the GRC Team by participating directly with projects and provide guidance, requirements and documentation for security-related purposes when requested
    • Create, evaluate, document and maintain standards, processes and procedures relative to security and privacy
    • Engage with management to identify possible resolutions to control weaknesses and opportunities for improvement.
    • Perform GRC recurring tasks as required
    • Provide consultative guidance and oversight to project teams to design, develop, deploy and sustain solutions that meet compliance requirements, including but not limited to a set of technical deliverables, cost, schedule, quality, and status reporting
    • Assist in selecting, configuring and/or administering program via GRC tools
    • Assist with building and/or testing integrations and automations with SaaS/IaaS platforms to collect evidence for security audits and monitor for security configurations
    • Assist with developing configuration monitoring capabilities for SaaS and IaaS platforms

    WHAT YOU'LL BRING:

    • Degree or equivalent in Computer Science or related field
    • 7 years of experience in Information Security with a specialization in one area of GRC
    • A broad understanding of security domains
    • Experience working with engineering teams to understand issues and prioritize remediations
    • Experience with Money Transmitter License (MTL) regulatory standards and audits and ITGC Control audits
    • Proficiency with common information security frameworks including SOC2, NIST CSF, and ISO 27001
    • Demonstrated ability to collaborate effectively across teams
    • Demonstrated organizational, project management and documentation skills
    • Familiarity and experience with IT/Security/GRC toolset, such as : Jira, Confluence, integrated GRC platforms etc.
    • Ability to analyze empirical evidence and technical reports, identify root causes, work with teams to identify solutions to remediate gaps.
    • Familiarly with different cloud concepts and tooling including AWS, GCP
    • Experience in a remote-first and distributed environment
    • Someone willing to adapt to change in a fast moving environment
    • Experience with cloud-native pre-IPO startup companies
    • Experience with AWS security services and tooling
    • Desirable certifications: CISSP, CISA, PMP

    WHO WE ARE:

    Do Your Best Work

    • The opportunity to build in a fast-paced start-up environment with experienced industry leaders
    • A learning environment where you can dive deep into the latest technologies and make an impact. A professional development budget to support other modes of learning.
    • Thrive in an environment where no matter what race, ethnicity, gender, origin, or culture they identify with, every employee is a respected, valued, and empowered part of the team.
    • Ripple is Flexible First: in-office collaboration for moments that matter is important to our culture, and we give managers and teams the flexibility to decide which days they come in.
    • Weekly all-company meeting - business updates and ask me anything style discussion with our Leadership Team
    • We come together for moments that matter which include team offsites, team bonding activities, happy hours and more

    Take Control of Your Finances

    • Competitive salary , bonuses, and equity
    • Competitive benefits that cover physical and mental healthcare, retirement, family forming, and family support
    • Employee giving match
    • Mobile phone stipend

    Take Care of Yourself

    • Twice a quarter R&R days so you can rest and recharge
    • Generous wellness reimbursement and weekly onsite & virtual programming
    • Generous vacation policy - work with your manager to take time off when you need it
    • Industry-leading parental leave policies. Family planning benefits.
    • Catered lunches, fully-stocked kitchens with premium snacks/beverages, and plenty of fun events

    Benefits listed above are for full-time employees.

    Ripple is an Equal Opportunity Employer. We're committed to building a diverse and inclusive team. We do not discriminate against qualified employees or applicants because of race, color, religion, gender identity, sex, sexual identity, pregnancy, national origin, ancestry, citizenship, age, marital status, physical disability, mental disability, medical condition, military status, or any other characteristic protected by local law or ordinance. Please find our UK/EU Applicant Privacy Notice and our California Applicant Privacy Notice for reference.

    Explore more InfoSec / Cybersecurity career opportunities

    Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

    #J-18808-Ljbffr

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    **Tradition is currently seeking to appoint a Compliance Manager to be based in London.** · **Role synopsis and key accountabilities within the Compliance Manager position**: · The Tradition Managed Services (TMS) Compliance Manager is a key member of the TMS Compliance team supp ...

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    **Compliance Manager - Insurance** · **City of London** · **Permanent** · **£dependant on experience** · cer Financial are working alongside an International insurance company, who are looking for a Compliance Manager to join them on a permanent basis and support the Head of Comp ...

  • Supporting Education

    Compliance Manager

    1 week ago


    Supporting Education London, United Kingdom

    Compliance Manager - Educator Talent Solutions Division · **Salary**: £37,825-£44,500 (DOE) & competitive benefits · Contract type: Full Time, Permanent · Location: Southern Region (London, Hertfordshire, Northampton Milton Keynes, etc), with regular travel between Kingston and W ...

  • Office Angels

    Compliance Manager

    1 day ago


    Office Angels London, United Kingdom

    **Are you?an expert?Compliance Manager with exceptional analytical skills?** · **Want to work for an incredibly well known and respected business?** · **Our client is offering competitive salary, fantastic benefits and the chance to be part of a great team** · This company needs ...

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    Our client is FCA Regulated, full scope AIFM, Private Equity Investment firm based in London, dedicated to Technology Sector and Digital Asset investments. · They are seeking a Compliance Officer / General Counsel (GC) with a strong background in Compliance, and experience workin ...

  • Avencia Consulting

    Compliance Manager

    1 week ago


    Avencia Consulting London, United Kingdom

    **About us** · Avencia Consulting are currently recruiting on behalf of a leading Specialty Insurer based in the City, who are looking to hire a Compliance Manager to join. · The Company currently writes lines of business including; specialty insurance: aviation & aerospace, ener ...

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    Responsibilites: · To possess a good, up-to-date understanding of both the PRA and FCA regulatory requirements in particular in relation to COBS, execution only investment business, COBS 10 appropriateness assessments, training and competence, GDPR, MiFID2 and DISP. · - Remain up ...

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    Our client is a specialist hedge fund, HQ'd in London. After recent good performance and the recent launch of new funds, they are now looking to add a Compliance Manager to their existing team in London. · Reporting into the Chief Compliance Officer, the Compliance Manager will b ...

  • Colyer Dodd & Co Ltd

    Compliance Manager

    1 week ago


    Colyer Dodd & Co Ltd London, United Kingdom

    This exciting and broad real estate investment management based compliance role will use your communication and influencing skills; your ability to work as a member of a team and on your own initiative and will require you to utilize your analytical talentsto produce reports for ...

  • Clear IT Recruitment Limited

    Compliance Manager

    4 days ago


    Clear IT Recruitment Limited London, United Kingdom

    **My client, a Top 50 International firm, is recruiting for a Compliance Manager to join their law firm in Finsbury, London. The firm is happy for 3 days of remote working per week.** · **Role overview** · To support the Compliance team to ensure the firm remains compliant with A ...

  • eFinancialCareers

    Compliance Manager

    1 day ago


    eFinancialCareers London, United Kingdom

    **Compliance Manager - Private Equity (12 month Mat Cover)** · My client is one of London's most impressive funds which leads the way in their particular niche. · This is a 12 month maternity cover contract which can start in February or March allowing for a month or so hand over ...

  • The Legists

    Compliance Manager

    1 week ago


    The Legists London, United Kingdom

    Our client is an international law firm who is currently looking for a compliance manager to join their global compliance team. · This role will be best suited for someone who is looking to join a team on a permanent basis. · Key Responsibilities: · - Responding to complex regula ...

  • eFinancialCareers

    Compliance Manager

    23 hours ago


    eFinancialCareers London, United Kingdom

    Our client is FCA Regulated, full scope AIFM, Private Equity Investment firm based in London, dedicated to Technology Sector and Digital Asset investments. · They are seeking a Compliance Officer / General Counsel (GC) with a strong background in Compliance, and experience workin ...

  • eFinancialCareers

    Compliance Manager

    23 hours ago


    eFinancialCareers London, United Kingdom

    A niche Investment business is looking to hire a Compliance Manager, specialising in Insurance, to join their small Compliance function. The role is a Generalist Compliance role that will work closely with the Legal team and advise their Underwriting businesson a daily basis whil ...

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    Exciting opportunity to be a member of a business-aligned compliance team instrumental in supporting Macquarie Capital, private business for EMEA. The role is business aligned and you will have responsibility for oversight and execution of compliance monitoringcoupled with transa ...

  • Concept Resourcing

    Compliance Manager

    1 week ago


    Concept Resourcing London, United Kingdom

    **Compliance Manager** · **3-month contract - NHS Trust, London · £270 per day · Onsite** · **Overview**: · You will be responsible for providing a lead in all matters related to auditing and ensuring that the Estates and Facilities Directorate and The Trust's PFI partners are fu ...

  • Pure Resourcing Limited

    Compliance Manager

    1 week ago


    Pure Resourcing Limited London, United Kingdom

    **Compliance Manager - Property Finance Lender** · A newly created opportunity is available for a Compliance Manager to join a highly successfully property finance lender based in London. Specialising within BTL and Bridging Finance lending, our client prides itself on service an ...

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    Who we're looking for · We are looking for a Compliance Manager who will be reporting into the Head of Global Investments and Product Compliance · About Schroders · We're a global investment manager. We help institutions, intermediaries and individuals around the world invest mon ...

  • eFinancialCareers

    Compliance Manager

    1 week ago


    eFinancialCareers London, United Kingdom

    Compliance Manager - Insurance · Perm · £dependant upon experience · My client is a General Insurance business, who are based in the UK, and support a UK and International clientele by offering a range of Personal and Commercial Insurance products. · Due to recent growth, they ar ...

  • Lorien

    Compliance Manager

    2 days ago


    Lorien London, United Kingdom

    **Compliance Manager - Outside IR35 - Hybrid Working** · Our client, a leading global Insurance firm, are currently looking to hire a Compliance Manager to join the team on an Outside IR35 contract basis. This role will be for an initial 6 months, and hybrid working with the clie ...