Altana AI
Altana AI

Director of Governance, Risk and Compliance

Altana provides the world’s only dynamic, intelligent map of the global supply chain - the Altana Atlas - using AI and machine learning models to connect with and learn from massive sets of public and private data. Through the Atlas, companies and governments can understand the distant origins of products well beyond their own direct suppliers; discover trading relationships and national security risks deep in their networks; measure labor and environmental impacts; identify related risks and opportunities; ensure effective compliance and enforcement with trade requirements; and collaborate to manage all of it. 

We have built a fundamental understanding of how the world’s economy works, and the implications for global resiliency, sustainability and opportunity are enormous. Backed by leading investors and used by the world’s most important organizations (Maersk, US Customs and Border Protection, Merck, Boston Scientific, and more), Altana’s mission is to power a new era of globalization organized around trusted supply chain networks.

This is a lofty mission, and our success depends on building a diverse, global team and creating an environment in which they can thrive. We operate in accordance with our values: we focus on value creation, not capture; we foster diversity and embrace difference; we embrace reality; we get things done; we amaze our clients. When you join Altana, you’ll be joining a vibrant, collaborative team working together to solve complex problems with the potential for global societal impact. 

The Opportunity at Altana

We are looking for a talented Information Security leader to guide governance, risk, and compliance (GRC) initiatives across the company.  In this role, you’ll be responsible for designing and leading a comprehensive governance program, including the establishment of security policies, standards, and procedures; designing a comprehensive security Risk Management program to identify, quantify, classify, and manage risks for the organization; and leading compliance efforts to accomplish SOC2 Type II, ISO 27001, FedRAMP and other certifications and attestations to demonstrate cybersecurity assurance internally and to our customers.  You will be responsible for collaborating cross-functionally with the business on GRC activities and leading the company’s obligation to identify technology and security risks, and manage legal, regulatory and compliance risks.  In this role, you’ll report to the VP of Information Security and play a critical role in maturing our controls and overall Information Security program.

 

Over the next 12 months, you will:

  • Deliver Information Security compliance initiatives to ensure alignment to applicable standards/regulations, including necessary certifications or audits
  • Serve as the liaison for all Information Security GRC audit and assessment initiatives for the organization with customers
  • Define Altana’s Information Security standards, and oversee the security training and mentorship of Altana staff
  • Maintain our control database; inventorying control ownership, control objectives, and control efficacy
  • Recommend, develop, and manage the company’s risk register, including the definition and reporting on key risk indicators (KRIs) and key performance indicators (KPIs)
  • Develop strong cross-functional working relationships internally and externally to support the ongoing maturation of Altana’s Information Security initiatives

 

What you bring to Altana:

  • Deep understanding of and experience achieving/maintaining compliance with risk management methodologies, frameworks, and principles (e.g. SOC2, NIST CSF, NIST 800-53, DOD SRG, and ISO 27001, etc.).
  • 10+ years of experience in Technology risk and compliance roles; preferably at a technology or SaaS / Cloud and / or as an auditor at a 3PAO
  • Demonstrated ability to create and successfully implement GRC programs
  • Strong project management skills to ensure accountability and results
  • Strong oral and written communication skills along with refined presentation skills and the ability to work with other departments at varying levels of the organization, from executive to engineering to sales.
  • Strong oral and written communication skills along with presentation skills; the ability to quickly build rapport with internal and external stakeholders
  • Demonstrated experience presenting detailed, technical concepts to both technical and non-technical audiences
  • Results oriented, values collaboration, self-motivated, and willing to adapt to change in a fast moving environment

 

Compensation at Altana

We are committed to providing competitive compensation for all roles at Altana. We carefully consider multiple factors when determining compensation, including your skills, experience, and location while balancing internal equity relative to peers at the company. The target base salary range for this role is $190,000 to $230,000. All full-time employees receive a competitive new hire equity grant, and may be eligible for additional bonus compensation depending on role.

Why it’s great to work at Altana

  • We love to collaborate, and we win as a team!
  • We are committed to engineering excellence
  • We value personal and professional development
  • We learn from diverse backgrounds and perspectives
  • We impact the world, from enabling developing countries to identifying drug traffickers

Altana is an equal opportunity employer with a commitment to inclusion across race and ethnicity, gender, sexual orientation, age, religion, physical ability, veteran status, and national origin. We offer a comprehensive healthcare package and paid parental leave of 3 months for the primary caregiver and 1 month for the secondary caregiver.

Altana AI builds an AI-powered product network that serves as a trusted source of truth for the global supply chain. We're focused on enabling governments and businesses to create safe, resilient, and sustainable trade practices, ensuring the flow of goods without compromising security. Our technology stands out by combining data intelligence with a robust understanding of trade dynamics.

Founded
Founded 2018
Employees
51-200 employees
Industry
Semiconductors & Semiconductor Equipment
Total raised
$120M raised
View company profile
Report this job

This job is no longer available