Full-Time

Director – Governance Risk & Compliance

Posted on 10/5/2025

Justworks

Justworks

1,001-5,000 employees

PEO platform for payroll, HR, compliance

Compensation Overview

$250k - $300k/yr

New York, NY, USA

Hybrid

Category
Finance & Banking (1)
Required Skills
Risk Management
Requirements
  • Minimum of 10 years of cyber security experience, with a combined background of technology and compliance.
  • Minimum of 7 years experience in Governance, Risk, and Compliance, familiar with regulations such as SOC2, GDPR, CCPA, SOX or PCI compliance.
  • Minimum of 5 years in a Governance, Risk, and Compliance leadership position, with experience managing Security Governance, Risks, and Compliance functions or Internal Audit function.
  • Extensive experience in risk management, vendor and client security management.
  • Familiarity with cyber security frameworks and risk management frameworks, with experience in implementing and applying frameworks into actionable tasks.
  • Extensive experience with cloud risk management and technology companies GRC function; experiences with other industries such as human resources and health & insurance are preferred.
  • Solid experience in management and operations, with the ability to redesign ways of working and re-engineering processes to activate operational agility, efficiency, and business growth while maintaining security.
  • Strong communication and presentation skills, with the ability to present complex risk issues in an easy-to-understand manner for executive management, and the ability to communicate clearly with both technology/development and business partners.
  • Strong relationship management, team building, and facilitation skills.
  • Experience working in a complex matrix organization, with security advisory teams supporting operational and transformational efforts for business verticals while driving a security objective.
  • Solid understanding of cyber security including malware, threats, attacks, incidents, and vulnerability management.
  • Experience in a fast-paced and high-stress environment.
  • Ability to think strategically; work with a sense of urgency and attention to detail.
  • Strong team player who collaborates well with others and incorporates input from various sources.
  • Reliable and trustworthy leadership with outstanding work ethic.
  • Independent and creative thinker with willingness to step outside the box and take calculated risks.
  • CISSP and CISM certifications and/or an advanced degree in Systems Assurance or Information Systems is a plus.
Responsibilities
  • Work with the Chief Information Security Officer (CISO) and other leaders to refine and manage enterprise-wide security governance and risk management programs, and ensure Digital Security practices align with business objectives, digital security vision, and evolving threat landscape challenges.
  • Design and drive the digital security and integrated risk management strategy, framework, tools, and processes.
  • Responsible for strategizing, managing, resource planning and hiring, measuring (SLAs, OKRs), partner development, and other aspects of running Governance, Risk, and Compliance as a service.
  • Introduce the necessary GRC tools or platforms to define, simplify, and automate the risk management processes, and enhance Incident Management and Vulnerability Management.
  • Oversee, maintain, and track Justworks’s Security Risk Registry.
  • Redefine and develop a robust set of security policies and standards applicable to Justworks agile development, zero-trust environment, and emerging threat landscapes.
  • Enhance the Security Compliance Program to ensure regulatory compliance, especially with business growth and scope changes, and mature the program to measure internal compliance against new policies and standards.
  • Build a cross-functional security governance model and effectively run various governance committees to ensure stakeholders align on risk acceptance levels and priorities to manage risks.
  • Work collaboratively with procurement, legal, IT and others to enhance the third-party risk management program and ensure security risks are addressed from evaluation of vendors/suppliers and contracts negotiation to ongoing assessment of vendors/suppliers' security posture.
  • Set the direction and mature the security awareness and training program; establish an ongoing awareness and training program to educate all Justworkers on doing the right things for Justworks.
  • Refine security metrics and develop Governance, Risk, and Compliance dashboards; measure and report the effectiveness of security programs, overall security resilience, risk posture improvement, and maturity growth.
  • Work closely with Legal, Internal Audit, and external entities as needed to support Enterprise Risk Management.
Desired Qualifications
  • CISSP and CISM certifications and/or advanced degree in Systems Assurance or Information Systems, a plus.

Justworks is a Professional Employer Organization (PEO) that provides an all-in-one platform for small and mid-sized businesses to manage payroll, HR tools, corporate benefits, and regulatory compliance. It co-employs workers through its platform, handles payroll processing, benefits enrollment, and ongoing HR and compliance tasks, all available via a subscription. The product works by integrating payroll, benefits administration, HR tools, and compliance support into a single system; customers pay a monthly fee for access and services. What sets Justworks apart is its focus on offering a unified, enterprise-level benefits and compliance experience tailored for SMBs, reducing administrative workload and helping companies scale with built-in HR and payroll capabilities. Its goal is to enable business growth by taking over administrative and regulatory tasks so teams can concentrate on core activities.

Company Size

1,001-5,000

Company Stage

Late Stage VC

Total Funding

$159.8M

Headquarters

New York City, New York

Founded

2012

Simplify Jobs

Simplify's Take

What believers are saying

  • Supports payments to contractors in 60+ countries via platform integration.
  • Launched standalone Justworks Payroll and Expenses for global expansion.
  • Automates 1099 filings ensuring IRS compliance for year-end reporting.

What critics are saying

  • Deel undercuts with 20% lower EOR fees, eroding SMB market share.
  • Rippling captures 35% more SMBs via superior HR-payroll-EOR automation.
  • Papaya Global sues Via for IP theft, halting international payments.

What makes Justworks unique

  • Justworks integrates PEO payroll, HR, compliance into single platform for SMBs.
  • Acquired Via in September 2023 to enable international contractor payments.
  • Offers 24/7 human support with corporate-level benefits for modern workforce.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health - Believe in our vision. Medical and dental, too. Get support for your mental and financial health. Beta test new benefits and perks for our platform.

Workplace - Volunteer and get paid to give back. Take paid parental leave. Enjoy monthly team events that help turn coworkers into lifelong friends.

Wellness - Enjoy subsidized ClassPass memberships. Take advantage of regular yoga, meditation, and other wellness programming.

Perks - Be an owner, not an employee. Get time off whenever you need it. Take a sabbatical. Invest in your future financially and with professional learning and development opportunities.

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

-3%

2 year growth

0%
PR Newswire
Feb 3rd, 2025
Entreprenista 100 Awards Now Accepting Applications From Accomplished Women Founders

The Entreprenista 100 Awards highlights the Top 100 Women Business Owners of 2024NEW YORK, Feb. 3, 2025 /PRNewswire/ -- The Entreprenista League, a leading membership community for ambitious, entrepreneurial women, is excited to announce its call for applications for its third annual Entreprenista 100 Awards

FinSMEs
Nov 3rd, 2024
3 Ways To Streamline Your Payroll Process

Run a Google search for “why people hate payroll departments” and you’ll come across endless articles bashing human resources. Some of the many reasons commonly cited include overcomplicated processes, incompetence, and failure to address all but the least important problems. While not all companies lump payroll into HR, the criticisms can often still apply. Legacy software, inefficient procedures, and employee frustrations can be endemic to payroll.To solve these problems, most organizations should take a multi-pronged approach, addressing employee development, siloed or unwieldy workflows, and technology issues. Hire and train good employees, hand them well-crafted, up-to-date SOPs, and give them the tools they need to do their work quickly and accurately. Below is a look at some of the best ways to troubleshoot and optimize your payroll processes.1

TechCrunch
May 29th, 2024
Meet Visa, Mercury, Artisan, Golub Capital And More At Tc Disrupt 2024

TechCrunch Disrupt 2024 will be in San Francisco on October 28–30, and we’re already excited! This is the startup world’s main event, and it’s where you’ll find the knowledge, tools and connections you need to grow a successful business.Helping startups reach their full potential takes a global village, and we could not bring you this world-class event without our world-class partners. Take advantage of the opportunity to leverage the expertise and resources of some of tech’s leading companies. Their participation elevates, engages and supports early-stage founders.Take a look at the latest group of companies ready to help you move your startup to the next level. Here’s what they’re doing and where you’ll find them. Pop over and hang out on the second-floor lobby with:Deep dive into a roundtable session with:Recharge over the Coffee and Espresso Bar with:Meet companies from around the world at these startup pavilions:Connect with these companies in the Exhibition Hall:• FlashIntel• Duplocloud• Remote• Justworks• Multiplier• IDC Research• DigiLion• Agile Dream Team• ZenmuTech• Establish PRThanks to Trade Travel for sponsoring our Disrupt badge lanyards and to Stastig for their support in our Space industry meetup area

Securities and Exchange Commission
Nov 3rd, 2023
SEC FORM D

The Securities and Exchange Commission has not necessarily reviewed the information in this filing and has not determined if it is accurate and complete.The reader should not assume that the information is accurate and complete.

AlleyWatch
Nov 2nd, 2023
The AlleyWatch Startup Daily Funding Report: 11/2/2023

Charm, a developer tool startup that's focused on making the command line more useful, has raised $6M in Venture funding from investors that include Gradient Ventures, Cavalry Ventures, Fuel Capital, and Firestreak.

INACTIVE