1

Fintech Grc Jobs (NOW HIRING)

... fintech environment Nice to Have * Experience building a TPRM program from scratch at a high-growth company * Familiarity with GRC platforms and common TPRM tooling * Working knowledge of relevant ...

A systems oriented and engineering focused GRC mindset, with the ability to reason about cloud ... Experience supporting AI platforms, fintech, healthcare, or other highly regulated environments.

VP, Head of IT Audit

New York, NY · On-site

$171K - $215K/yr

... fintech organization. This leader will oversee risk-based audit coverage across technology ... Drive a data-informed audit approach by leveraging analytics, AI, automation, and GRC tools to ...

Compliance

New York, NY · On-site

$100K - $130K/yr

... GRC, or regulatory operations role, ideally at a regulated financial institution, exchange, or fintech * Familiarity with CFTC-regulated entities (DCM, DCO, FCM) strongly preferred * Strong policy ...

We're a high-growth fintech company changing the retirement industry. We are backed by a number of ... About the role The Senior Technical Program Manager, Security & GRC will work directly with our ...

We're a high-growth fintech company changing the retirement industry. We are backed by a number of ... About the role The Senior Technical Program Manager, Security & GRC will work directly with our ...

... GRC) initiatives. WHO YOU ARE * You have 7+ years of experience in regulatory compliance, legal/compliance, risk management, or advisory roles within financial services, fintech, payments, lending ...

We were founded over 30 years ago and continue to be a pioneer in the payment (FinTech) industry ... Experience with audit tools/GRC platforms (e.g., AuditBoard). * Understanding of IT General ...

... drive our FinTech automation strategy. The Financial Systems Director leads the strategy ... The director owns the financial master data framework and ensures SOXaligned IT GRC controls are ...

OR · On-site

Qualifications * 7-10 years of experience in information security, risk, GRC, or compliance operations, with meaningful ownership and a preference for fintech, crypto infrastructure, or B2B SaaS ...

... drive our FinTech automation strategy. The Financial Systems Director leads the strategy ... The director owns the financial master data framework and ensures SOX-aligned IT GRC controls are ...

QUALIFICATIONS • Experience in compliance, security assurance, GRC, audit, risk management, privacy, or a related function - ideally supporting a SaaS, cloud, AI, legaltech, fintech, healthtech, or ...

Qualifications * 7-10 years of experience in information security, risk, GRC, or compliance operations, with meaningful ownership and a preference for fintech, crypto infrastructure, or B2B SaaS ...

next page

Showing results 1-20

Fintech Grc information

What are the main challenges Fintech GRC professionals face when ensuring regulatory compliance in a rapidly evolving industry?

Fintech GRC (Governance, Risk, and Compliance) professionals often encounter the challenge of keeping up with frequent changes in regulations, as fintech operates at the intersection of finance and technology. They must interpret and implement new compliance requirements quickly, while balancing innovation and risk management. Additionally, collaborating with cross-functional teams—such as legal, IT, and product development—is essential to ensure policies are integrated into business operations without hindering growth. Staying proactive and adaptable is key to success in this dynamic environment.

What is Fintech GRC?

Fintech GRC stands for Governance, Risk, and Compliance within the financial technology sector. Professionals in this role ensure that fintech companies adhere to regulatory standards, manage risks effectively, and implement robust governance frameworks. Their responsibilities include monitoring compliance with laws, preventing financial crimes, and ensuring data privacy. With the rapidly changing regulatory landscape in fintech, GRC specialists help organizations navigate complex requirements and protect both the company and its customers.

What are the key skills and qualifications needed to thrive as a Fintech GRC (Governance, Risk, and Compliance) professional, and why are they important?

To thrive as a Fintech GRC professional, you need a solid understanding of risk management, regulatory compliance, and financial industry standards, often supported by a degree in finance, law, or a related field. Familiarity with GRC platforms, regulatory technology (RegTech) tools, and certifications such as CAMS or CISA is typically required. Exceptional analytical thinking, attention to detail, and strong communication skills help you navigate complex regulations and collaborate across departments. These skills ensure effective risk mitigation, regulatory adherence, and the safeguarding of organizational integrity in the rapidly evolving fintech industry.

What is the difference between Fintech Grc vs Compliance Analyst?

AspectFintech GrcCompliance Analyst
Required CredentialsCertifications like CFE, CAMS, or CRC; knowledge of risk management and regulatory frameworksCertifications such as CAMS, CRC, or CFE; strong understanding of compliance laws
Work EnvironmentFinancial technology firms, startups, or financial institutions focusing on risk and complianceFinancial institutions, consulting firms, or regulatory agencies
Employer & Industry UsageUsed in fintech companies to manage risk, compliance, and governanceCommon in banks, financial services, and regulatory bodies

Fintech Grc professionals focus on governance, risk, and compliance within fintech firms, often handling risk assessments and regulatory adherence. Compliance Analysts primarily ensure organizations follow legal standards and internal policies. While both roles require compliance certifications and involve regulatory environments, Grc roles have a broader scope including risk management strategies specific to fintech innovations, whereas Compliance Analysts concentrate on adherence to laws and regulations.

Infographic showing various Fintech Grc job openings in the United States as of May 2026, with employment types broken down into 99% Full Time, and 1% Contract. Highlights an 77% Physical, 7% Hybrid, and 16% Remote job distribution.
Associate Director, Risk Management

Associate Director, Risk Management

Flex

New York, NY • On-site

Other

Posted 19 days ago


Job description

About Flex

Flex is a venture-backed fintech company helping businesses manage and optimize their spend with modern financial products and software. We partner with some of the most innovative companies in the world and operate in a highly regulated, fast-growing environment. As we continue to scale, building bestinclass risk and compliance programs is critical to enabling our growth.

The Role

We are looking for an Associate Director, Third-Party Risk Management (TPRM) to own the TPRM pillar at Flex. This is not a program management role. It is a pillar ownership role: you set the risk posture, define the operating model, and are accountable for outcomes across a vendor population that touches every part of the business.

You will lead a small team, establish the direction for how Flex evaluates and monitors third-party risk, and make the calls on where speed and rigor need to be balanced. You will design AI-enabled workflows that scale the team's capacity without sacrificing auditability or regulatory defensibility. And you will hold Flex's third-party risk position across the organization, shaping decisions in Product, Engineering, Finance, and Procurement rather than responding to requests from them.

This role is right for someone who has owned TPRM at a mature, regulated institution and also built something from the ground up at a high-growth fintech. Someone comfortable with ambiguity, confident in their risk judgment, and ready to be handed the reins.

What You'll Do

  1. Own Flex's third-party risk posture end-to-end: set the strategy, define the operating model, and be accountable for outcomes across the full vendor population
  2. Establish and maintain the policies, standards, and governance framework that underpin TPRM across the organization
  3. Make risk-based decisions on vendor approvals, exceptions, and escalations, including explicit tradeoffs between speed and risk exposure, and defend those positions to senior leadership and regulators
  4. Architect scalable intake, tiering, due diligence, and monitoring workflows, designing AI-enabled automation where it improves speed and consistency without removing human judgment from consequential decisions
  5. Build signal-driven monitoring systems that surface vendor risk in real time (financial distress, security incidents, operational failures) rather than relying on calendar-based review cycles
  6. Design and own AI workflows for high-volume tasks like SOC report analysis, questionnaire scoring, and exception tracking, with clear auditability and human-in-the-loop checkpoints throughout
  7. Drive risk alignment across Product, Engineering, Finance, and Procurement, shaping vendor strategy and sourcing decisions upstream rather than reviewing them after the fact
  8. Serve as Flex's authoritative voice on third-party risk in regulatory exams, audits, and customer due diligence requests
  9. Own the reporting framework that gives senior leadership real-time, decision-relevant visibility into third-party risk posture
  10. Proactively identify emerging third-party risks across new vendor categories, evolving threat landscapes, and regulatory developments, and evolve controls before they become issues
  11. Help mentor and develop more junior team members as the program and team scale

What We're Looking For

  • 7+ years of experience in third-party risk, vendor risk, or a closely related risk and compliance discipline
  • Experience at both a large, regulated institution with a mature risk function and a high-growth, venture-backed fintech or technology company
  • Demonstrated track record of making and defending risk-based decisions under ambiguity, including explicit speed-vs-risk tradeoffs
  • Experience designing AI-enabled workflows for risk or compliance use cases, with a clear point of view on where automation helps and where human oversight is non-negotiable
  • Strong working knowledge of vendor risk domains: security, privacy, operational, financial, and regulatory
  • Proven ability to influence across Product, Engineering, and Finance, not just within a compliance or risk silo
  • Strong communication skills; able to translate complex risk positions into clear recommendations for executive and board-level audiences
  • Comfort with data; SQL experience or the ability to query and analyze data independently is a strong plus
  • Experience supporting or leading regulatory exams in a financial services or fintech environment

Nice to Have

  • Experience building a TPRM program from scratch at a high-growth company
  • Familiarity with GRC platforms and common TPRM tooling
  • Working knowledge of relevant frameworks and standards (SOC 2, ISO 27001, NIST, PCI, etc.)
  • Prior people management or team lead experience

Flex Personnel logo

About Flex Personnel

Sourced by ZipRecruiter

The Flex Team is made up of Staffing Industry experts committed to serving the needs of businesses and workers by bringing people together. We are guided by our Core values Integrity, Courtesy, and Respect. At Flex we bring Businesses and People together. We carefully assess both the needs of our Business clients and the complete profiles of each candidate, and then make the connections we believe will be most mutually beneficial. With offices in select markets throughout the Country, We are continually expanding our industry reach nationwide.

Industry

Recruiting and staffing services

Company size

11 - 50 Employees

Headquarters location

Dallas, TX, US

Social media