Logo of Huzzle

Director, Regulatory Compliance

image

Santander

1mo ago

Applications are closed

  • Job
    Full-time
    Senior & Expert Level
  • Software Engineering
  • Dallas

Requirements

  • Demonstrated experience working with key Information Security frameworks including NIST and FFIEC CAT.
  • 7+ years of experience in related work.
  • Pro-active approach to problem solving, with experience in identifying areas of improvement, determining, and implementing solution.
  • Knowledge of domestic and international laws governing information security; ability to interpret and take action on the aspects of information security laws that impact the business.
  • Knowledge of technologies and technology-based solutions dealing with information security issues; ability to apply these in protecting information security across the organization.
  • Knowledge of tools, techniques, approaches and processes of cybersecurity risk management; ability to ensure organizational network operation and minimize negative effect by cybersecurity risks.
  • Understanding of the importance of inter-team collaboration in breaking down silos and achieving business results; ability to lead employees from various functions to communicate, coordinate work across divisions, and collaborate in solving problems as one team.
  • Understanding of the importance of "big picture" thinking and planning and ability to apply organizational acumen to identify and maintain focus on key success factors for the organization.
  • Demonstrated understanding of technological trends and developments in the areas of information security, risk management, web architectures, and cloud computing.
  • Ability to maintain and implement best practices within Information Security
  • Ability to drive execution of goals through effective planning, prioritization, resource management and follow through.
  • Ability to manage multiple, ongoing initiatives.

Responsibilities

  • Manage and monitor technology, audit and regulatory risk through governance, oversight and reporting.
  • Manage audit and regulatory calendar including all regulatory/audit interactions, findings, and regulatory reviews. This includes interaction and coordination of team members across the organization.
  • Drive annual Information Security compliance attestation processes across US entities.
  • Support a data-driven program using data and reporting.
  • Manage key strategic initiatives relating to Third Party Risk Management and Vendor Management.
  • Identify, Assess, and manage Information security risks. Provide oversight of remediation activities and timelines.
  • Be a Coach / Mentor to junior team members.

FAQs

What are the primary responsibilities of the Director, Regulatory Compliance?

The primary responsibilities include managing and monitoring technology, audit and regulatory risk, overseeing the audit and regulatory calendar, driving annual compliance attestation processes, supporting a data-driven program, managing strategic initiatives related to Third Party Risk Management and Vendor Management, identifying and managing information security risks, and mentoring junior team members.

What experience is required for this position?

A candidate should have 7+ years of experience in related work, with demonstrated experience working with key Information Security frameworks such as NIST and FFIEC CAT.

What skills are essential for the Director, Regulatory Compliance role?

Essential skills include a proactive problem-solving approach, knowledge of domestic and international information security laws, familiarity with information security technologies and solutions, understanding of cybersecurity risk management techniques, and the ability to promote inter-team collaboration.

How does this role interact with regulatory and audit activities?

The role involves managing the audit and regulatory calendar, which includes all regulatory and audit interactions, findings, and reviews, while coordinating with team members across the organization to ensure effective communication and execution.

What kind of mindset is expected from candidates for this position?

Candidates are expected to have a "big picture" thinking mindset, with the ability to apply organizational acumen to maintain focus on key success factors and drive execution of goals through effective planning and resource management.

What opportunities for growth and mentorship does this role offer?

The role offers the opportunity to be a Coach/Mentor to junior team members, providing guidance and support in their professional development within the Information Security GRC team.

What technologies and trends should candidates be familiar with?

Candidates should have a demonstrated understanding of technological trends and developments in information security, risk management, web architectures, and cloud computing, as well as the ability to implement best practices within Information Security.

What is the reporting structure for this position?

The Director, Regulatory Compliance will report to the Head of Information Security GRC as part of the Technology Information Security GRC Team.

How does this role contribute to the overall Information Security Program?

This role plays a key part in driving strategic initiatives and maintaining operational excellence within the Information Security Governance, Risk, and Compliance (GRC) function, which is integral to the broader Santander US Information Security Program.

Here to help you prosper

Finance
Industry
10,001+
Employees
1857
Founded Year

Mission & Purpose

Santander is a leading global bank, founded in 1857 and headquartered in Spain, and is one of the largest banks in the world by market capitalisation. It provides a wide range of financial products and services, including personal and corporate banking, wealth management, and insurance. With a strong presence in Europe, Latin America, North America, and Asia, Santander's mission is to help people and businesses prosper by offering customer-centric solutions. Its purpose is to support growth and innovation while fostering responsible banking practices to benefit individuals, businesses, and communities.