Dropbox Logo

Dropbox

Governance, Risk, & Compliance Program Manager

Reposted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in Canada
Mid level
Remote
Hiring Remotely in Canada
Mid level
The Compliance Program Manager will build and manage compliance initiatives to protect data and foster trust, working closely with various teams and facilitating audits.
The summary above was generated by AI
Role Description

As a Compliance Program Manager on the Governance, Risk, & Compliance team, you will play a crucial role in building Compliance across our product set.

Protecting Dropbox and our users is critical to being worthy of trust. As a Compliance Program Manager at Dropbox, you will join a growing team to design, implement, and coordinate programs to promote user trust and manage risks to their data. You will work with teams across the organization, including Engineering, Product, Design, and Sales, in order to manage risks to Dropbox and users alike. You will work in depth with other parts of the business to ensure Dropbox meets our security, privacy, and regulatory commitments.

If you are passionate about protecting Dropbox and our users, are looking for an opportunity to stretch and grow yourself in a dynamic team, and thrive in an environment where you can constantly learn, then this role is for you.

Responsibilities
  • Promote and foster a culture of trust within and outside of Dropbox.
  • Partner with teams to execute on cross-team and/or multi-phase projects from design through implementation against a wide variety of regulatory and compliance frameworks, especially AI-specific standards/frameworks
  • Identify the right solutions to clarify and solve ambiguous, open-ended problems across various compliance programs. 
  • Mature our overall compliance program. Improve and implement controls for internal systems, processes, and policies through bold and innovative approaches and leveraging automation and AI-enabled processes 
  • Facilitate ongoing AI Governance, Risk and Compliance initiatives and monitor control effectiveness.
  • Collaborate with internal teams and external auditors throughout compliance assessments.
  • Play an active part in responding and mitigating compliance challenges across multiple time zones and jurisdictions.
  • Drive automation efforts across the Compliance function via the AI-enabled GRC automation tools
  • Identify opportunities impacting the Compliance function and establish the strategy and cross-functional alignment to achieve these objectives.  
  • Conduct gap assessments to identify areas of non-compliance or areas for improvement, and develop action plans to address these gaps.
  • Provide guidance to management on the impact of new laws and regulations and recommend changes in business practices where necessary
Requirements
  • 4+ years of experience building or maintaining programs to mitigate risks around security, confidentiality, integrity, availability, and privacy
  • Independently executes and manages projects with high-level direction from a manager
  • Consistently utilize AI tools to enhance workflows, evaluate outputs with critical judgment, and help others adopt tools where appropriate.
  • Experience facilitating or being the subject of SOC, ISO, HIPAA and/or PCI audits at a fast-paced technology company, public accounting firm, or similar environment
  • Experience partnering with Engineering, Product, & Development teams to define compliance needs in a multi-product environment
  • Moderate familiarity with a broad range of technical concepts relevant to cloud computing environments: logical access control, agile development process, secure coding principles, security architecture, information security, network security, and privacy
  • Experience with implementing compliance programs for emerging new products, including AI enabled products
  • Moderate understanding of cloud-based technologies and their implications for governance, risk, and compliance, with a focus on AI compliance needs
  • Strong project management and organizational skills - must drive your own projects to completion with high-level direction from a manager, while also fostering collaboration and bringing teams together to achieve common objectives.
  • Great people skills and ability to work well in fast paced team environment with a wide range of technical and non-technical teams
  • Excellent writing, communication, and organizational skills - strong attention to detail
  • Passion to aim higher and develop new skills
  • CISA, CISSP, CCSK, CIPP, or other professional certifications/associations required 
Preferred Qualifications
  • Experience in scaling compliance programs in high-growth technology company
Compensation
Canada Pay Range
$104,100$140,900 CAD

Dropbox Singapore Office

Similar Jobs at Dropbox

30 Minutes Ago
Remote
Senior level
Senior level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
The role involves re-architecting Identity systems, providing technical leadership, mentoring, and collaborating across teams to support high-quality software development and operations.
Top Skills: GoPython
7 Hours Ago
Remote
Senior level
Senior level
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
The Senior Machine Learning Engineer will design, build, and deploy AI agents, advance ML systems, and mentor junior engineers.
Top Skills: C/C++GoJaxPythonPyTorch
Yesterday
Remote
Expert/Leader
Expert/Leader
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
The role involves designing scalable backend systems for Dropbox's Commerce Platform, focusing on system strategy, reliability, and cross-department collaboration.
Top Skills: BillingCpqDistributed SystemsEcommerceSalesforce CRM

What you need to know about the Singapore Tech Scene

The digital revolution has driven a constant demand for tech professionals across industries like software development, data analytics and cybersecurity. In Singapore, one of the largest cities in Southeast Asia, the demand for tech talent is so high that the government continues to invest millions into programs designed to develop a talent pipeline directly from universities while also scaling efforts in pre-employment training and mid-career upskilling to expand and elevate its workforce.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account