GRC经理
查看雇主原标题
Manager, GRCCoinbase · Remote - USA · From 401
职位信息来自雇主公开的招聘页面。申请前请务必在雇主官网核实详情。
为什么值得关注?
发现指数 75/100,仅依据与该职位一起存储的证据计算。
- 新的雇主官方职位
- 已披露薪资
- 远程职位
- 稀有职位匹配
分数构成
- 时效性 (随职位发布时间变化)+18
- 雇主官方来源+15
- 已披露薪资+15
- 远程职位+8
- 稀有职位+11
- 公司来源健康度+8
该职位未包含:提及签证担保、提及搬迁、未出现在监控的职位板上。
这些理由来自雇主自己的职位描述与我们核实过的来源检查结果。除了已存储的信号之外,我们不做任何推测。
职位描述
机器翻译准备好从事你职业生涯中最具影响力的工作了吗?在 Coinbase,我们对增加经济自由的使命毫不妥协。标准很高,环境紧张,而我们喜欢这样。这里不适合自满的人,而是一个让你被推过自认极限的地方。如果你准备好与那些拒绝满足于“足够好”的人一起构建金融的未来,这里就是你的归属。Coinbase 是一家远程优先、但并非仅限远程的公司。预计每季度会聚在一起进行名为“surges”的高强度线下工作会议。了解更多关于在 Coinbase 工作的信息。
我们正在招聘一名 GRC 经理,加入我们安全部门内的技术风险与控制团队,并领导对关键技术和安全领域的第二道防线咨询覆盖。该团队评估风险态势、改进控制设计,并帮助工程、基础设施和安全负责人做出更好的、基于风险的决策。你将既管理一个团队,又直接负责可能包括灾难恢复与韧性、SDLC、人工智能、身份与访问管理以及供应链等领域的咨询覆盖——建立可信赖的合作伙伴关系,确保 Coinbase 在其最关键职能中应对其最关键的风险。
岗位职责
• 领导关键技术和安全领域的第二道防线咨询覆盖,评估整个业务中的风险敞口、控制有效性、政策一致性以及新兴问题。
• 与工程和技术团队合作,评估领域态势,并确定需要在哪些方面增加控制、补救或治理改进。
• 审查并质疑新风险和现有风险及其相应控制的设计,以确保我们的缓解措施可扩展、有效,并与业务、风险和监管预期保持一致。
• 推动风险、控制、政策、审计和保证团队之间的协调,将事件、审计发现和监管预期转化为可执行的改进,以加强技术控制环境。
• 与主题专家和风险负责人一起接收、分诊并计算固有风险和剩余风险,促进风险处理决策并验证缓解计划的执行。
• 通过传达定量和定性风险权衡,并将风险、控制、政策、事件和发现连接成清晰的叙述以支持优先级排序和报告,赋能领导层决策。
• 建立、发展并辅导一支由技术和安全分析师及高级分析师组成的团队,培养敏捷、创新和持续绩效反馈的文化。
所需技能和经验:
• 8 年以上技术风险、IT 控制、IT 审计、网络安全风险或合规经验,并具备交付全栈 GRC 服务(风险管理、控制设计、持续监控、治理文档)的实操经验——并非仅控制或仅风险的背景。
• 深入理解一个或多个领域(如基础设施韧性、SDLC、变更管理或事件响应)的技术设计和治理原则,并具备挑战现状和推动改进的证明能力。
• 具备评估风险和控制设计、识别弱点,并与利益相关方合作改善风险结果和控制成熟度的实操经验。
• 具备管理和指导分析师的可靠业绩记录,提升他们的能力和职业发展,同时让团队对交付成果和时间表负责。
• 具备影响跨职能利益相关方、应对模糊性,并将复杂的风险和合规概念转化为面向技术和非技术受众的清晰功能需求的业绩记录。
• 负责任地使用生成式 AI,保持人工监督以交付可供业务使用的成果,并推动工作流效率、成本和质量的可衡量改进。
职位 ID:P78170
#LI-Remote 薪酬透明度通知:基本薪资因地点而异(见下方范围)。总薪酬还可能包括股权和奖金资格,以及福利(医疗、牙科、视力、401(k))。
年度基本薪资范围(不包括股权和奖金): $193,970 — $228,200 USD
• 申请限制:候选人可在 6 个月内最多提交 3 份申请。
• 平等机会雇主:Coinbase 是平等机会雇主。所有合格申请人都会获得录用考虑,不因种族、肤色、宗教、性别、性取向、性别认同、国籍、残疾、受保护退伍军人身份或遗传信息而受到歧视。有犯罪历史的申请人将根据适用的联邦、州和地方法律予以考虑。
• 美国申请人:查看员工权利、了解你的权利以及 E-Verify 参与通知。
• 便利安排:如果您是需要合理便利安排的残障人士,请将您的请求和联系信息通过电子邮件发送至 accommodations[at]coinbase.com。需要屏幕阅读技术?点击此处下载免费的兼容屏幕阅读器并查看教程。
• 数据隐私与仲裁:提交您的申请即表示您同意我们的候选人隐私通知。美国申请人:提交您的申请即表示您同意争议仲裁。
以上内容由机器翻译自动生成,可能存在错误;投递前请以雇主原文为准。
查看雇主原文
职位描述
Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase .
We're hiring a Manager, GRC to join our Technology Risk & Controls team within Security and lead second line of defense advisory coverage across critical technology and security domains. This team evaluates risk posture, improves control design, and helps engineering, infrastructure, and security leaders make better, risk-informed decisions. You'll both manage a team and directly own advisory coverage for domains that may include disaster recovery and resiliency, SDLC, artificial intelligence, identity and access management, and supply chain - building trusted partnerships that ensure Coinbase addresses its most critical risks in its most critical functions.
岗位职责
• Lead second line advisory coverage for key technology and security domains, assessing risk exposure, control effectiveness, policy alignment, and emerging issues across the business.
• Partner with engineering and technology teams to evaluate domain posture and identify where additional controls, remediation, or governance improvements are needed.
• Review and challenge the design of new and existing risks and their corresponding controls to ensure our mitigations are scalable, effective, and aligned to business, risk, and regulatory expectations.
• Drive coordination across risk, controls, policy, audit, and assurance teams to translate incidents, audit findings, and regulatory expectations into actionable improvements that strengthen the technology control environment.
• Intake, triage, and calculate inherent and residual risk with subject matter experts and risk owners, facilitating risk treatment decisions and validating execution of mitigation plans.
• Enable leadership decision-making by communicating quantitative and qualitative risk tradeoffs and connecting risks, controls, policies, incidents, and findings into clear narratives that support prioritization and reporting.
• Build, grow, and coach a team of technology and security analysts and senior analysts, fostering a culture of agility, innovation, and continuous performance feedback.
Required Skills and Experience:
• 8+ years in technology risk, IT controls, IT audit, cybersecurity risk, or compliance, with hands-on experience delivering full-stack GRC services (risk management, control design, continuous monitoring, governance documentation) - not a controls-only or risk-only background.
• Deep understanding of technical design and governance principles across one or more domains such as infrastructure resiliency, SDLC, change management, or incident response, with demonstrated ability to challenge status quo and drive improvement.
• Hands-on experience evaluating risks and control design, identifying weaknesses, and partnering with stakeholders to improve risk outcomes and control maturity.
• Proven track record managing and mentoring analysts, growing their capabilities and careers while holding teams accountable to deliverables and timelines.
• Track record of influencing cross-functional stakeholders, navigating ambiguity, and translating complex risk and compliance concepts into clear functional requirements for both technical and non-technical audiences.
• Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality.
Position ID: P78170
#LI-Remote Pay Transparency Notice: Base salary varies by location (see range below). Total compensation may also include equity and bonus eligibility, and benefits (medical, dental, vision, 401(k)).
Annual base salary range (excluding equity and bonus): $193,970 — $228,200 USD
• Application Limit: Candidates may submit a maximum of 3 applications within a 6-month period.
• Equal Opportunity Employer: Coinbase is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or genetic information. Applicants with criminal histories will be considered consistent with applicable federal, state, and local laws.
• US Applicants: View Employee Rights , Know Your Rights , and E-Verify Notice of Participation.
• Accommodations: If you are an individual with a disability who needs a reasonable accommodation, email us your request and contact info at accommodations[at]coinbase.com. Need screen reading technology? Click here to download a free compatible screen reader and view the tutorial .
• Data Privacy & Arbitration: By submitting your application, you agree to our Candidate Privacy Notice . US applicants: By submitting your application, you agree to Arbitration of Disputes .