GRC Risk Manager

| Los Angeles, CA, USA
Employer Provided Salary: 107,600-180,200 Annually
Salary data is provided by the employer. Please note this is not a guarantee of compensation.
Apply
By clicking Apply Now you agree to share your profile information with the hiring company.

About the job
Job Title: GRC Risk Manager
Reports to: Head of GRC
Job Location: Los Angeles, CA, USA
Job Status: Exempt, FT
About SHEIN
SHEIN is a global fashion and lifestyle e-retailer committed to making the beauty of fashion accessible to all. We use on-demand manufacturing technology to connect suppliers to our agile supply chain, reducing inventory waste and enabling us to deliver a variety of affordable products to customers around the world. From our global offices, we reach customers in more than 150 countries. Founded in 2012, SHEIN has nearly 10,000 employees operating from offices around the world, with U.S. Headquarters located in Los Angeles and Global Headquarters located in Singapore. In SHEIN, we work with outstanding, creative, and capable peers. We share an energetic and open culture for capable people to discern, work and ignite as a team.
Position Summary
SHEIN Global Security and Risk Management (GSRM) is a global security organization that oversees security infrastructure, risk management, data privacy, business fraud, governance, and regulatory compliance across SHEIN's global footprint. It is composed of a team of security professionals, innovators and thought leaders that have had decades of global security experience, led large scale transformations, and served in Fortune 500 executive roles.
Here, innovation isn't simply about protecting and defending our company. We develop solutions that are practical today and scalable tomorrow; and we create collaborative teams dedicated to innovation across each of our businesses to share our common values and vision.
We are seeking an experienced GRC Risk Manager to join our team in our Los Angeles-based corporate office. This GRC Risk Manager is a thought-leader residing within our security organization and is responsible for implementing and maintaining the risk management framework and program. This position will be part of a team of governance, risk, and compliance experts and will work with technology, legal partners, and business units to meet our global risk management needs.
The ideal candidate should have extensive experience in developing, deploying, and maturing risk management frameworks and programs, a deep understanding of general security technologies and best practices, and knowledge of global data privacy laws and regulations. This role must collaborate effectively with development, engineering, and operations counterparts as well as internal and external partners to identify, articulate, prioritize, manage, and monitor security risks to protect SHEIN data, services, and information assets.
Job Responsibilities

  • Develop, implement, mature, and champion risk management processes and concepts.
  • Deploy the risk management framework, processes, and tools to conduct risk assessments effectively and consistently.
  • Conduct risk assessments of business units, critical processes and information assets.
  • Conduct third-party risk assessments and security reviews of third-party agreements.
  • Work closely with technology and legal partners and business units to ensure appropriate security and data protection requirements are incorporated into third-party engagements.
  • Manage the risk register and define and report key risk metrics to management on a regular basis
  • Prepare risk assessment reports to inform risk treatment decisions.
  • Track and monitor remediation and risk management activities.
  • Maintain a current and comprehensive understanding of relevant industry standards to incorporate into the risk management strategy, framework, and program.
  • Support integration and maturation of policy, compliance, and risk frameworks.


Job Requirements

  • A minimum of 7 years of experience in information security risk management, including business impact analysis, risk assessment and treatment, risk metrics and trend analysis is preferred
  • Bachelor's degree or higher in the field of information security, engineering, computer science or equivalent advance technology field of study is preferred
  • Relevant security certifications, such as CISSP, CISM, CISA, ISO 27001 Lead Auditor are highly desired
  • Strong knowledge of security and data privacy standards and regulations such as ISO 27k, NIST, CIS, GDPR, CCPA, PCI DSS
  • Team management experience, including setting and aligning team and individual goals, providing clear and timely feedback, and fostering collaboration, is preferred
  • Experience developing and deploying risk management frameworks and programs, preferably with international experience in an e-commerce or technology related industry
  • Experience with deploying GRC tools is desirable
  • Practical knowledge and experience working with threat modeling frameworks such as STRIDE, MITRE ATT&CK, OCTAVE is desirable
  • Strong analytical and problem-solving skills
  • Strong written and verbal communication skills, with the ability to translate complex and technical issues to all levels of personnel
  • Detail oriented and highly organized, with the ability to thrive in a fast-paced environment and prioritize accordingly
  • High level of personal integrity, with the ability to professionally handle confidential matters and exudes the appropriate level of judgment and maturity


Pay
$107,600.00 min - $180,200.00 max annually. Bonus & RSU offered.
Benefits and Culture
Healthcare (medical, dental, vision, prescription drugs)
Health Savings Account with Employer Funding
Flexible Spending Accounts (Healthcare and Dependent care)
Company-Paid Basic Life/AD&D insurance
Company-Paid Short-Term and Long-Term Disability
Voluntary Benefit Offerings (Voluntary Life/AD&D, Hospital Indemnity, Critical Illness, and Accident)
Employee Assistance Program
Business Travel Accident Insurance
401(k) savings plan with discretionary company match and access to a financial advisor
Vacation, Paid holidays and sick days
Employee Discounts
Perks (HQ Location)
Free weekly catered lunch at HQ
Dog-Friendly office
Free Gym Access at HQ
Free Swag Giveaways
Annual Holiday Party
Invitations to pop-ups and other company events
Complimentary daily office snacks and beverages
Free Shuttle Service from HQ to LA Union Station
SHEIN Distribution is an equal opportunity employer committed to a diverse workplace environment.
Show more Show less
Top skills for this role
NIST
IT Risk Management
Mandarin
Enterprise Risk Management
ISO 27001
Risk Management
Threat Modeling
Governance, Risk Management, and Compliance (GRC)
Cybersecurity
Risk Assessment
Strengthen your skills with these courses
Employer-provided
Pay range in Los Angeles, CA
Exact compensation may vary based on skills, experience and location
Base pay range
$107,600.00/yr - $180,200.00/yr

Read Full Job Description
Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.

Technology we use

  • Engineering
  • Product
  • People Operations
    • C#Languages
    • C++Languages
    • JavaLanguages
    • JavascriptLanguages
    • PerlLanguages
    • PythonLanguages
    • SqlLanguages
    • ShellLanguages
    • jQueryLibraries
    • jQuery UILibraries
    • HadoopFrameworks
    • Node.jsFrameworks
    • SparkFrameworks
    • HBaseDatabases
    • HiveDatabases
    • Microsoft SQL ServerDatabases
    • MySQLDatabases
    • Google AnalyticsAnalytics
    • TableauAnalytics
    • AxureDesign
    • CanvaDesign
    • IllustratorDesign
    • PhotoshopDesign
    • ConfluenceManagement
    • Google DriveManagement
    • Google DocsManagement
    • JIRAManagement
    • Microsoft ProjectManagement
    • Microsoft TeamsCollaboration
    • ZoomCollaboration
    • Oracle FusionProject Management

An Insider's view of SHEIN Technology LLC

How does the company support your career growth?

Working at a start-up like SHEIN presents many opportunities for growth. As the company grows, we can and must learn and grow together. The company empowers employees in many ways, whether it be formal courses and certifications to on-the-job learning experiences. Exceptional contributors are recognized and rewarded accordingly.

Danny Chi

Head of Governance Risk and Compliance

What are SHEIN Technology LLC Perks + Benefits

SHEIN Technology LLC Benefits Overview

• Healthcare (medical, dental, vision, prescription drugs)
• Health Savings Account with Employer Funding
• Flexible Spending Accounts (Healthcare and Dependent care)
• Company-Paid Basic Life/AD&D insurance
• Company-Paid Short-Term and Long-Term Disability
• Voluntary Benefit Offerings (Voluntary Life/AD&D, Hospital Indemnity, Critical Illness, and Accident)
• Employee Assistance Program
• Business Travel Accident Insurance
• 401(k) savings plan with discretionary company match and access to a financial advisor to meet retirement planning goals.
• Vacation-Paid time off
• Paid Holidays and Sick Days
• Employee Discounts
• Perks (HQ Location)
• Free weekly catered lunch at HQ
• Dog-Friendly office
• Free Gym Access at HQ
• Free Swag Giveaways
• Annual Holiday Party
• Invitations to pop-ups and other company events
• Complimentary daily office snacks and beverages
• Free Shuttle Service from HQ to LA Union Station

Culture
Partners with nonprofits
Open door policy
OKR operational model
Open office floor plan
Quarterly engagement surveys
Health Insurance + Wellness
Flexible Spending Account (FSA)
Disability insurance
Dental insurance
Vision insurance
Health insurance
Life insurance
Financial & Retirement
401(K) matching
Child Care & Parental Leave
Family medical leave
Company sponsored family events
Vacation + Time Off
Paid holidays
Paid sick days
Office Perks
Company-sponsored outings
Free snacks and drinks
Some meals provided
Catered lunch weekly
Onsite office parking
Pet friendly
Relocation assistance
Onsite gym
Professional Development
Promote from within
Mentorship program

More Jobs at SHEIN Technology LLC

Apply Now
By clicking Apply Now you agree to share your profile information with the hiring company.
Learn more about SHEIN Technology LLCFind similar jobs like this