Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Manager, Governance, Risk & Compliance (GRC) image - Rise Careers
Job details

Manager, Governance, Risk & Compliance (GRC)

Flex is a growth-stage FinTech company based in NYC focused on revolutionizing the rent payment experience. They seek a GRC Manager to lead their governance, risk, and compliance initiatives.

Skills

  • Proficiency with Vanta
  • Strong knowledge of NIST CSF
  • Experience in SOC 2 compliance
  • Analytical and problem-solving skills
  • Excellent communication skills

Responsibilities

  • Lead SOC 2 audit preparation and ongoing compliance efforts
  • Utilize Vanta to automate and streamline compliance processes
  • Contribute to NIST Cybersecurity Framework controls implementation
  • Ensure compliance with NYDFS Cybersecurity Regulations
  • Conduct risk assessments and develop mitigation strategies
  • Create and update policies and control documentation
  • Collaborate with internal stakeholders on security controls
  • Prepare reports on compliance status and risk exposure

Education

  • Bachelor's degree in Information Security, Computer Science, or related field

Benefits

  • 100% company-paid medical, dental, and vision
  • 401(k) + company equity
  • Unlimited paid time off + 13 paid holidays
  • Parental leave
  • Company match for non-profit donations
  • Free Flex subscription
To read the complete job description, please click on the ‘Apply’ button
Flex Glassdoor Company Review
3.9 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Flex DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Flex
Flex CEO photo
Revathi Advaithi
Approve of CEO

Average salary estimate

$146500 / YEARLY (est.)
min
max
$137000K
$156000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Manager, Governance, Risk & Compliance (GRC), Flex

Join the dynamic team at Flex as a Manager of Governance, Risk & Compliance (GRC) and help us revolutionize the rent payment experience! Based in the vibrant city of New York, our growth-stage FinTech company is on a mission to empower renters with flexible solutions that ease the burden of monthly expenses. As the GRC Manager, you'll report directly to the Head of Security and play a crucial role in shaping our governance, risk, and compliance programs. This hybrid position requires you to be onsite at our headquarters three days a week, ensuring you’re immersed in our collaborative culture. Your expertise will be vital as you lead SOC 2 audit preparation, leverage Vanta for compliance process automation, and implement essential NIST Cybersecurity Framework controls. You’ll conduct risk assessments, develop mitigation strategies, and create up-to-date policies that reflect our commitment to excellence. Your insights will drive the organization towards meeting regulatory requirements while maintaining alignment with industry standards. If you're self-motivated and have relevant experience, we want you to play a key role in our mission to make paying rent simple and more manageable for everyone! With competitive salaries, comprehensive benefits, and a welcoming environment that values diversity and inclusion, Flex is the perfect place to further your career while making a real difference.

Frequently Asked Questions (FAQs) for Manager, Governance, Risk & Compliance (GRC) Role at Flex
What are the responsibilities of a Manager, Governance, Risk & Compliance (GRC) at Flex?

As a Manager of Governance, Risk & Compliance (GRC) at Flex, your responsibilities include leading SOC 2 audit preparations, implementing compliance strategies using tools like Vanta, and ensuring adherence to the NIST Cybersecurity Framework. You'll also conduct risk assessments, collaborate with stakeholders on security controls, and stay updated on regulatory changes to maintain our compliance status.

Join Rise to see the full answer
What qualifications are required for the Manager, Governance, Risk & Compliance (GRC) position at Flex?

To be considered for the Manager, Governance, Risk & Compliance (GRC) position at Flex, you should have a bachelor's degree in Information Security or a related field, along with a minimum of three years of experience in GRC or information security roles. Proven knowledge of SOC 2 audit preparation, proficiency in compliance tools, and understanding of NIST CSF and NYDFS Cybersecurity Regulations are essential.

Join Rise to see the full answer
What kind of background is preferred for candidates applying to the GRC Manager role at Flex?

Preferred backgrounds for the GRC Manager role at Flex include individuals with ISACA CISA certification and experience in the fintech or financial services industry. Familiarity with additional frameworks such as ISO 27001 or GDPR can also be beneficial when applying for this exciting position.

Join Rise to see the full answer
What benefits can I expect as a Manager, Governance, Risk & Compliance (GRC) at Flex?

As a Manager, Governance, Risk & Compliance (GRC) at Flex, you'll enjoy a competitive pay package that includes 100% company-paid medical, dental, and vision insurance, a 401(k) with company equity, and unlimited paid time off. Additional benefits like paid parental leave, a Flex Cares Program, and a free Flex subscription ensure you have a balanced life both at work and home.

Join Rise to see the full answer
Where is the Flex office located for the Manager, Governance, Risk & Compliance (GRC) role?

The Flex office is located in the heart of New York City. As a Manager, Governance, Risk & Compliance (GRC), you are expected to be on-site three days a week to facilitate collaboration and foster a positive team environment.

Join Rise to see the full answer
Common Interview Questions for Manager, Governance, Risk & Compliance (GRC)
Can you explain your experience with SOC 2 audits as a Manager, Governance, Risk & Compliance (GRC)?

In answering this question, provide specific examples of your previous roles in conducting SOC 2 audits. Highlight your preparation strategies, the audit process you followed, and how you ensured compliance throughout.

Join Rise to see the full answer
What tools have you used for compliance automation, and how did they improve your processes?

Discuss any compliance automation tools, like Vanta, you have utilized. Explain how these tools enhanced efficiency, reduced manual work, or streamlined compliance tracking in your past positions.

Join Rise to see the full answer
Describe your approach to conducting a risk assessment.

When answering this question, outline your methodology for performing risk assessments, including identifying assets, potential threats, vulnerabilities, and how you prioritize risks to develop strategies for mitigation.

Join Rise to see the full answer
How do you stay updated on evolving regulatory requirements in the GRC space?

Discuss your research habits, such as following relevant publications, joining professional organizations, or attending webinars and conferences to continually expand your knowledge surrounding regulatory changes.

Join Rise to see the full answer
What experience do you have with the NIST Cybersecurity Framework?

Share specific examples of how you have applied the NIST Cybersecurity Framework in your previous jobs. Describe how you implemented its controls and measured compliance based on the framework's guidelines.

Join Rise to see the full answer
How would you guide a team in implementing security controls effectively?

In your response, emphasize your ability to communicate complex concepts clearly and your experience in training teams on compliance procedures. Mention any success stories or strategies you've used to ensure team buy-in.

Join Rise to see the full answer
Can you illustrate a challenging compliance issue you faced and how you resolved it?

Use a specific instance to explain the compliance issue, your analysis of the situation, and the steps you took to resolve it. Highlight your problem-solving skills and the impact of your solution on the organization.

Join Rise to see the full answer
Why do you want to work specifically at Flex as a GRC Manager?

Tailor your answer to reflect your passion for FinTech and Flex’s mission. Discuss how your skills align with their goals and how you are excited about contributing to a company focused on enhancing the rent payment experience.

Join Rise to see the full answer
What are the key components of a strong governance framework?

In your answer, list the components you believe are crucial to a solid governance framework such as clear policies, risk management procedures, reporting structures, and continuous improvement. Provide examples of how they contribute to overall compliance.

Join Rise to see the full answer
How do you communicate compliance information to non-technical stakeholders?

Discuss your approach to translating technical compliance details into relatable and actionable insights for non-technical stakeholders. Mention strategies you use to facilitate understanding and encourage compliance across the organization.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Flex Hybrid New York, United States
Posted yesterday

Join Flex, a dynamic FinTech company, as an Account Executive and help revolutionize how renters pay their bills while driving sales growth.

Photo of the Rise User
Posted 7 days ago

Join Flex as a Paid Media Designer to create innovative ad content driving engagement for their groundbreaking finance super app.

Photo of the Rise User

Visa is looking for a skilled and business-minded attorney to join its Legal team in supporting Corporate Services and Events.

Photo of the Rise User
Nexamp Remote Washington, District of Columbia, United States
Posted 3 days ago

Join Nexamp as an Assistant General Counsel, Finance, working on innovative legal solutions in the clean energy sector.

Posted 13 days ago

Seeking a Family Law & General Practice Attorney to join Hebbon Law and make a meaningful impact in a supportive environment.

Photo of the Rise User
Posted 5 days ago
Inclusive & Diverse
Empathetic
Collaboration over Competition
Growth & Learning
Transparent & Candid
Medical Insurance
Dental Insurance
Mental Health Resources
Life insurance
Disability Insurance
Child Care stipend
Employee Resource Groups
Learning & Development

Lead legal efforts in a pivotal role at American Express, supporting the dynamic U.S. acquiring partners team within the growing payments ecosystem.

Photo of the Rise User
Unilever Remote Col. Bosques de las Lomas, Mexico
Posted 4 days ago

Explore a meaningful legal career at Unilever, contributing to impactful innovations while enhancing your professional skills.

Photo of the Rise User

Join Accion, a nonprofit organization, as a part-time Junior Paralegal to support their Legal Department in managing critical legal operations.

Photo of the Rise User
City of New York Hybrid New York City, NY
Posted 10 days ago

The NYC Department of Citywide Administrative Services is looking for a dynamic General Counsel to lead legal strategy and oversight in a municipal setting.

Photo of the Rise User
Moneyfarm Remote No location specified
Posted 13 days ago

Join Moneyfarm as a Junior Compliance Analyst and contribute to ensuring regulatory responsibilities are met in a dynamic FinTech environment.

Make great products for our customers that create value and improve people's lives.

45 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
SALARY RANGE
$137,000/yr - $156,000/yr
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
March 30, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
C
Someone from OH, Massillon just viewed RN Ambulatory - Outpatient Infusion Therapy at CCF
Photo of the Rise User
Someone from OH, Columbus just viewed HR Business Partner (Maternity Cover) at Marshmallow
Photo of the Rise User
Someone from OH, Columbus just viewed Community Outreach Canvasser $24/Hr at Confidential
Photo of the Rise User
Someone from OH, Cincinnati just viewed Email Marketing Coordinator at Creative Circle
Photo of the Rise User
Someone from OH, Columbus just viewed UX Researcher, Amazon Autos at Amazon
Photo of the Rise User
Someone from OH, Cincinnati just viewed AI training and enablement at Writer
Photo of the Rise User
Someone from OH, Cincinnati just viewed Data Analyst (Contact Center-Hybrid) at Dow Jones
Photo of the Rise User
Someone from OH, Delaware just viewed Practice Group Manager at LifeStance Health
Photo of the Rise User
Someone from OH, Youngstown just viewed Event Services Human Resources Coordinator at Allied Universal
Photo of the Rise User
Someone from OH, Columbus just viewed IP Network Engineering Intern - Summer 2025 at Bandwidth
Photo of the Rise User
Someone from OH, Cleveland just viewed Director, Education Programs & Partnerships at Encoura
Photo of the Rise User
Someone from OH, Cleveland just viewed Operations Associate (Part-Time) - Pinecrest at Alo Yoga
Photo of the Rise User
Someone from OH, Dayton just viewed Medical Receptionist at LifeStance Health
Photo of the Rise User
Someone from OH, Coldwater just viewed Engineering Design Checker Jobs at Lockheed Martin
Photo of the Rise User
Someone from OH, Loveland just viewed SEO Admin & Business Support at Outliant
Photo of the Rise User
Someone from OH, Columbus just viewed Casting: Cedar Lake - Pilot Episode at Backstage