$ cat jobs/senior-cybersecurity-governance-risk-compliance-specialist-o-jane-street-12f7acdc305f.json
Senior Cybersecurity Governance, Risk & Compliance Specialist (OCaml Experience)
Jane Street Group, LLC has multiple openings for the position of Senior Cybersecurity Governance, Risk & Compliance Specialist in New York, NY. The position duties are as follows: Lead strategic cybersecurity vendor risk management initiatives to enhance the firm's vendor risk posture and regulatory compliance framework. Day-to-day job duties include: Architect and implement comprehensive cybersecurity vendor risk governance frameworks that align with regulatory requirements and establish enterprise-wide vendor risk tolerance thresholds. Provide strategic leadership in vendor security risk analysis, mentoring junior team members, and establishing standardized methodologies for vendor due diligence, security assessments, and ongoing monitoring that integrate into the organization's overall enterprise risk management strategy. Partner with procurement, legal, and business stakeholders to lead vendor assessments across the vendor lifecycle—from initial due diligence and onboarding through periodic reassessments, continuous monitoring, incident response coordination, and offboarding—designing risk mitigation solutions that balance business enablement with regulatory compliance. Oversee vendor incident management and breach response protocols, establishing clear escalation procedures and coordinating with vendors during security events to ensure timely remediation and appropriate stakeholder communication. Lead operational efficiency initiatives by implementing automated vendor compliance monitoring solutions, transforming manual assessment processes into scalable governance workflows, and establishing key risk indicators and dashboards that enable proactive risk management and decision-making. The position requires a 3 or 4 year Bachelor's degree in Finance, Engineering, Computer Science, or a related scientific or quantitative field or foreign equivalent plus three (3) years of progressively responsible experience as a cybersecurity GRC analyst, or similar occupation a