Logo of Huzzle

Program Manager, Regional Risk and Compliance

image

Google

3d ago

  • Job
    Full-time
    Expert Level
  • Government & Politics
    IT & Cybersecurity
  • London
    Remote

AI generated summary

  • You need a bachelor's degree, 5 years in program management and risk/compliance in regulated industries, experience in audit/cloud compliance, and familiarity with security frameworks and cloud security.
  • You will lead security audits, collaborate with teams for compliance, analyze regulations, maintain stakeholder relationships, and review agreements affecting operational controls.

Requirements

  • Minimum qualifications:
  • Bachelor's degree or equivalent practical experience.
  • 5 years of experience in program management.
  • 5 years of experience with risk management or compliance in regulated industries (i.e., financial services, public sector, healthcare).
  • 5 years of experience in program definition and management with a focus on audit compliance or cloud compliance.
  • Preferred qualifications:
  • 5 years of experience managing cross-functional or cross-team projects.
  • Experience in one or more of the following: data protection, threat modeling, incident/emergency response, security risk mitigation or evaluation, OS hardening, vulnerability management, pen testing, access management, or familiarity with cryptographic concepts.
  • Experience with ISO 27k family, SOC reports, PCI DSS, FedRAMP, or equivalent information security and privacy compliance certifications.
  • Experience in a customer-facing role.
  • Experience in problem-solving within fluid environments.
  • Knowledge of security capabilities of cloud products.

Responsibilities

  • Lead cloud security risk, operational resilience, and regulatory compliance audit engagements requested by Google Cloud’s largest customers, their internal IT audit teams, assigned third-party auditors or their regulators.
  • Collaborate across Google engineering, data center operations, and other teams to prepare and execute audit engagements and educate customers on Google Cloud’s ongoing compliance postures to meet business and regulatory requirements.
  • Lead the regulatory intake process and perform regulatory compliance analysis and control mapping for the responsible regions.
  • Build long-term relationships with key leadership stakeholders across all lines of defense to retain and enhance continuous trust in Google Cloud’s products and services.
  • Review and approve in-scope agreementals commitments and geo-expansion proposals that impact Google Cloud and Technical Infrastructure's control environment, internal policies and procedures, and operational capabilities.

FAQs

What are the minimum qualifications required for the Program Manager, Regional Risk and Compliance position?

The minimum qualifications include a Bachelor's degree or equivalent practical experience, 5 years of experience in program management, 5 years of experience with risk management or compliance in regulated industries, and 5 years of experience in program definition and management with a focus on audit compliance or cloud compliance.

What preferred qualifications are beneficial for this role?

Preferred qualifications include 5 years of experience managing cross-functional or cross-team projects, experience in areas such as data protection and incident response, knowledge of security compliance frameworks like ISO 27k and SOC reports, experience in a customer-facing role, problem-solving skills in fluid environments, and knowledge of cloud product security capabilities.

What responsibilities will I have in this role?

Responsibilities include leading cloud security risk and compliance audit engagements, collaborating with teams to execute audits, performing regulatory compliance analysis, building relationships with stakeholders, and reviewing and approving commitments that impact Google Cloud's control environment and operational capabilities.

What kind of projects will I be working on?

You will lead complex, multi-disciplinary projects that involve coordinating with stakeholders to plan requirements, manage schedules, identify risks, and communicate with cross-functional partners.

Will I need to travel for this position?

The job involves working with teams across different offices and time zones, so some travel may be required for meetings or audits, but the specific travel requirements can vary.

Is this position an equal opportunity role?

Yes, Google is an equal opportunity workplace and an affirmative action employer committed to equal employment opportunity regardless of various factors like race, gender, or disability.

How can I apply for this position?

You can apply for the position through Google's career portal by submitting your resume and cover letter highlighting your qualifications and experience.

Is experience in cloud security necessary for this role?

While not explicitly required, experience in cloud security is highly beneficial and aligns well with the responsibilities of the position, especially in relation to managing cloud compliance and risk.

What is Google Cloud's commitment to diversity and inclusion?

Google aims to build a diverse, equitable, and inclusive environment throughout the company, with a focus on cultivating a sense of belonging for all employees.

Technology
Industry
10,001+
Employees
1998
Founded Year

Mission & Purpose

A problem isn't truly solved until it's solved for all. Googlers build products that help create opportunities for everyone, whether down the street or across the globe. Bring your insight, imagination and a healthy disregard for the impossible. Bring everything that makes you unique. Together, we can build for everyone.