Full-Time

Senior Technology Regulatory & Controls Analyst

Confirmed live in the last 24 hours

FanDuel

FanDuel

1,001-5,000 employees

Fantasy sports platform for cash prizes

Entertainment
Gaming

Compensation Overview

$126k - $155kAnnually

+ Short-term Incentive Compensation + Long-term Incentive Compensation + Cash Bonuses + Stock Program Participation

Senior

New York, NY, USA

Hybrid position.

Category
Risk & Compliance
Legal & Compliance
Required Skills
JIRA
Requirements
  • Bachelor’s degree preferred in a technical field (e.g., Cybersecurity, Information Technology) or equivalent combination of education, training, and relevant experience.
  • 5 years related experience in technology and cybersecurity Governance, Risk, and Compliance.
  • “Stay Hungry, Stay Humble” mindset that strives to continuously learn and share new skills with others, and embraces a steep learning curve to understand our business and technology drivers to get the job done.
  • “Anything Is Possible” attitude that is highly organized and results-driven to solve our most important challenges.
  • Comfortable navigating shifting priorities in a fast-paced environment, with the ability to work independently with minimal supervision while also as an exceptional team player that excels at cultivating relationships and promoting collaboration and cohesiveness to fulfill our “We Are One Team” principle.
  • Hands-on experience executing and managing IT and security audits or regulatory assessments in a heavily regulated industry, including writing, documenting, and assessing risks/controls and drafting business process summaries for executives.
  • IT audit and regulatory compliance experience, including guiding and monitoring plan of actions and milestones.
  • Strong IT & security risk domain knowledge of technology and cybersecurity best practices, principles, tools, and industry control frameworks (e.g., GLI, NIST CSF, ISO, SOX, SOC2, PCI, CIS Critical Controls, COBIT, ITIL, CMMI).
  • Experience with data governance and privacy regulations and industry frameworks (e.g., GDPR, local state regulations, DAMA-DMBOK).
  • Ability to translate risk/control standards into functional business requirements.
  • Strong written and verbal communication skills to articulate risk/control insights to both technical and non-technical stakeholders.
  • Proficient working with Microsoft Office, GRC and project management tools (e.g., JIRA, ZenGRC).
  • Experience working as a consultant in the risk, compliance, or audit space is a plus.
  • Relevant professional certifications such as PCI ISA/QSA, CISA, CISM/CISSP, CCSK/CCSP, Security+ are preferred.
Responsibilities
  • Develop and maintain a risk-based technology & cyber control program to design, implement, and monitor the effectiveness of key controls across the Technology organization, ensuring alignment with FanDuel’s Enterprise Risk Management frameworks, and relevant industry best practices and regulatory requirements.
  • Work closely with the Technology Risk team and the 2LOD Enterprise Risk team to maintain FanDuel’s technology & cyber risk and controls framework ensuring that it is adequately designed, adopted and operating effectively.
  • Work closely with senior leadership across all three lines of defense, to support the continued maturation of the control environment.
  • Serve as the Technology organization’s first line point of contact for regulatory and compliance activities.
  • Act as a primary liaison between audit teams and control stakeholders to ensure clear communication of requirements, timelines, and expectations during audit and assessment activities.
  • Advise and support technology and cyber control owners during regulatory examinations or internal audits / assessments to ensure accurate and efficient outcomes - including clarifying scope, expectations and timelines, coordinating meetings, facilitating evidence gathering, clarifying issues with relevant SMEs & stakeholders, and developing necessary action plans and management responses.
  • Track issues throughout their lifecycle – from initial identification and evaluation to response, mitigation and reporting.
  • Support new data governance and data quality initiatives to bolster data-related control requirements.
  • Conduct or participate in periodic 1LOD control assurance activities including control rationalization exercises, process / risk / control documentation reviews, post incident reviews to evaluate root cause(s) and recommend mitigation / control improvements, etc.
  • Develop and deliver periodic reporting of technology & cyber control health and issue management.
  • Stay abreast of evolving technology & cybersecurity threats, news, and trends to enhance internal control strategies.
  • Lead cross-functional discussions and workshops to enhance awareness and foster continuous improvement of the technology & cyber control environment.
  • Utilize enhanced data, technology and cyber capabilities to perform quality assurance activities, as applicable.
  • Develop and deliver tailored training and communications on relevant regulatory and controls obligations for the technology & cyber community, as needed.
  • Assist with special regulatory and control assessment and department initiatives, as assigned.
  • Maintain procedures, playbooks, virtual webpages, and metrics dashboards.
  • Mentor and guide junior team members, sharing expertise and promoting continuous professional development.

FanDuel operates a fantasy sports platform where users can join daily and weekly contests to win cash prizes. Participants create fantasy teams by selecting real players from various sports, including football, basketball, and baseball. The performance of these teams is determined by the actual statistics of the players in real games. FanDuel generates revenue through entry fees for these contests and enhances the user experience with features like live scoring updates and player news. Unlike some competitors, FanDuel focuses on a wide range of sports and contests, primarily serving the U.S. market while expanding its offerings.

Company Stage

Acquired

Total Funding

$424M

Headquarters

New York City, New York

Founded

2009

Growth & Insights
Headcount

6 month growth

7%

1 year growth

27%

2 year growth

40%
Simplify Jobs

Simplify's Take

What believers are saying

  • FanDuel's expanding presence in new markets like North Carolina and Ontario offers significant growth opportunities.
  • The company's partnerships with sports teams and media channels can drive higher user engagement and brand loyalty.
  • Acquisitions like BeyondPlay can enhance FanDuel's technological capabilities, making it a more attractive platform for users.

What critics are saying

  • The competitive landscape in the online gaming and sports betting industry is intense, with major players like DraftKings and Bet365 posing significant threats.
  • Regulatory changes and legal challenges in different states and countries could impact FanDuel's operations and growth.

What makes FanDuel unique

  • FanDuel's strategic partnerships with major sports teams like the Carolina Panthers enhance its brand visibility and customer engagement, setting it apart from competitors.
  • The acquisition of BeyondPlay allows FanDuel to integrate innovative iGaming solutions, providing a more engaging user experience.
  • FanDuel's focus on regulatory compliance and strategic hires, such as the addition of E. Sequoyah Simermeyer, strengthens its position in the highly regulated online gaming market.

Help us improve and share your feedback! Did you find this helpful?

Benefits

From peer-to-peer learning to industry conferences, there are a number of ways to develop your career

From your head to your toes we’ve got you covered with our 100% health insurance coverage

We keep a well-stocked supply of snacks and refreshments to keep you going throughout the day

Flexible hours and vacation scheduling let you work when you’re at your best

We provide the latest tech and equipment, you get the job done