Full-Time

Lead – Security GRC

Confirmed live in the last 24 hours

Gemini

Gemini

1,001-5,000 employees

Cryptocurrency exchange, wallet, and custodian

Fintech
Crypto & Web3

Compensation Overview

$122k - $152kAnnually

+ Bonus + Equity Grant

Senior, Expert

Remote in USA

Category
Cybersecurity
IT & Security
Required Skills
Data Analysis
Requirements
  • Bachelor’s degree in a technical domain, or equivalent experience.
  • 10+ years of experience in the Security GRC domain, with an emphasis on security governance and strategy development.
  • Demonstrated experience developing and implementing governance strategies and programs, including metrics and reporting mechanisms.
  • Strong knowledge of governance frameworks and methodologies (e.g., COBIT, NIST).
  • Proven ability to develop, implement, and maintain governance documentation, including policies, procedures, and standards.
  • Experience leading cross-functional teams in the GRC domain.
  • Strong experience in managing operational governance programs and projects such as access reviews and security training.
  • Familiarity with regulatory requirements and certifications, such as SOC 2 Type 2, ISO27001, PCI DSS, GDPR, CCPA and NYSDFS Reg. 500.
  • Strong analytical and creative problem-solving skills, with the ability to manage complex projects.
  • Exceptional organizational skills and the ability to prioritize effectively in a fast-paced environment.
  • Excellent interpersonal and communication skills, with experience collaborating with senior leaders, auditors, and diverse teams.
  • Proficiency in governance and compliance tools/technologies is an advantage.
Responsibilities
  • Develop and implement a comprehensive governance strategy, applying industry-leading practices and methodologies to achieve organizational goals.
  • Establish and maintain security governance frameworks, policies, and procedures to ensure data security, privacy, and compliance with applicable laws and standards.
  • Collaborate with data analytics and business teams to define and document data requirements, standards, and processes.
  • Drive automation projects in the security governance domain to streamline processes and improve efficiency.
  • Develop and maintain dashboards and metrics to measure governance performance, data security, and compliance, providing regular updates to senior leadership.
  • Establish and track key performance indicators (KPIs) to assess the effectiveness of governance programs and initiatives.
  • Develop, implement, and enforce data governance policies, standards, and procedures to manage risks and support business objectives.
  • Lead the periodic entitlement review program to ensure effective access management and oversight.
  • Design and deliver annual security awareness training to enhance the organization’s governance culture and compliance posture.
  • Stay informed on evolving governance and privacy regulations, providing guidance to ensure ongoing compliance.
  • Support efforts to maintain SOC 2 Type 2, ISO27001, PCI DSS, and other relevant security certifications.
  • Ensure compliance with regulatory requirements, including NYSDFS Reg. 500, CBI, and UK FCA, by implementing and overseeing governance frameworks.
  • Serve as a key advisor to security teams and leadership on governance-related risks, controls, and remediation strategies.
  • Collaborate with cross-functional teams and data owners to enforce governance roles, responsibilities, and accountability.

Gemini is a cryptocurrency exchange, wallet, and custodian that allows individuals and institutions to buy, sell, and store digital assets like Bitcoin and Ether. The platform is user-friendly and emphasizes security, offering features such as a secure wallet and custodial services for large holdings. What distinguishes Gemini from its competitors is its strong commitment to regulatory compliance and advanced security measures, which help build trust with users. The company's goal is to simplify and secure the process of engaging with digital assets, ensuring users can trade and store their cryptocurrencies confidently.

Company Stage

Debt Financing

Total Funding

$389.1M

Headquarters

New York City, New York

Founded

N/A

Growth & Insights
Headcount

6 month growth

2%

1 year growth

6%

2 year growth

10%
Simplify Jobs

Simplify's Take

What believers are saying

  • Gemini's expansion into France and the UK positions it well to capitalize on growing crypto adoption in these regions, potentially increasing its user base and market share.
  • The company's sponsorship of Real Bedford FC and integration of Bitcoin into the club's operations demonstrate Gemini's innovative approach to promoting cryptocurrency adoption.
  • Gemini's ability to maintain user trust through robust security measures and compliance with regulatory standards enhances its reputation and attractiveness to new users.

What critics are saying

  • The recent data breach at Gemini underscores the ongoing security challenges in the crypto industry, which could impact user trust and retention.
  • Regulatory uncertainties, particularly in the UK and US, pose potential challenges to Gemini's operations and expansion plans.

What makes Gemini unique

  • Gemini's strong emphasis on security and compliance sets it apart in the cryptocurrency space, providing users with a trusted platform amidst a landscape often marred by security breaches.
  • The company's strategic expansion into markets like France and the UK highlights its commitment to global growth and adaptation to regional regulatory environments.
  • Gemini's diverse product offerings, including Gemini Earn and institutional-grade custodial services, cater to a wide range of clients, from individual investors to large financial institutions.

Help us improve and share your feedback! Did you find this helpful?