The Role
Support IT audit and regulatory requests by gathering evidence and coordinating with stakeholders; perform gap assessments and help draft remediation plans; maintain control documentation in a GRC platform (e.g., Vanta); support IT policy reviews and ongoing certification maintenance (PCI DSS, ISO 27001).
Summary Generated by Built In
We are a leading trading platform that is ambitiously expanding to the four corners of the globe. Our top-rated products have won prestigious industry awards for their cutting-edge technology and seamless client experience. We deliver only the best, so we are always in search of the best people to join our ever-growing talented team.
IT Assurance & Compliance sits at the intersection of technology, regulation, and business — translating regulatory obligations into controls that work in a fast-moving fintech environment. This role owns IT audit readiness, gap assessments, and day-to-day IT Assurance & Compliance work.
Responsibilities:
- Own end-to-end preparation for IT audits and regulatory reviews — evidence gathering, coordination with tech teams, and timely delivery of complete audit packages;
- Conduct gap assessments against new regulatory requirements — document findings and propose remediation plans with clear owners and deadlines;
- Act as the subject-matter expert for IT compliance questions across the Company — translate regulatory requirements into practical implementation guidance for technical teams;
- Draft and maintain audit-ready documentation across all IT Assurance & Compliance activities, including evidence repositories and compliance registers;
- Draft, review and contribute to IT and Security policies, standards, and procedures — providing IT compliance input to ensure alignment with regulatory requirements and practical
applicability across teams.
Requirements:
- 4+ years in IT compliance, IT audit, or information security governance;
- Experience in FinTech, crypto, payment or another regulated financial services area;
- Hands-on experience conducting gap assessments and building remediation plans — not just documenting findings, but driving them to closure;
- Working knowledge of at least two of: DORA, ISO27001, SOC 2, or similar frameworks; awareness of how they interact in a multi-jurisdiction environment is a plus;
- Ability to work independently on complex, ambiguous IT compliance tasks;
- Strong communication skills — able to translate regulatory requirements into practical terms for technical teams and present compliance positions clearly to regulators and senior stakeholders;
- Attention to detail that extends to documentation: evidence packages, policy versions, control registers.
What you will get in return:
- Competitive Salary: We believe great work deserves great pay! Your skills and talents will be rewarded with a salary that makes you feel valued and motivated.
- Work-Life Harmony: Join a company that genuinely cares about you—because your life outside of work matters just as much as your time on the clock.
- Annual Performance Bonus: Your hard work doesn’t go unnoticed! Celebrate your achievements with a well-deserved annual bonus tied to your performance.
- Generous Time Off: Need a breather? Our annual leave policy lets you recharge and enjoy life outside of work without a worry.
- Employee Referral Program: Love working here? Share the love! Bring your talented friends on board and get rewarded for growing our awesome team.
- Comprehensive Health & Pension Benefits: From medical insurance to pension plans, we’ve got your back. Plus, location-specific benefits and perks!
- Workation Wonderland: Live your digital nomad dreams with 30 extra days to work remotely from anywhere in the world (some restrictions apply). Adventure awaits!
- Volunteer Days: Make a difference! Take two additional paid days each year to support causes you care about and give back to the community.
Be a key player at the forefront of the digital assets movement, propelling your career to new heights! Join a dynamic and rapidly expanding company that values and rewards talent, initiative, and creativity. Work alongside one of the most brilliant teams in the industry.
Skills Required
- 2+ years in IT compliance, IT audit, or IT governance
- Hands-on experience with gap assessments and supporting remediation plans
- Knowledge of at least one of DORA, PCI DSS, SOC 2, NIST, or similar frameworks
- Able to handle day-to-day compliance tasks independently and escalate complex issues
- Good communication skills to explain regulatory requirements to technical teams
- Strong attention to detail
- Experience in FinTech, banking, or another regulated industry
- Experience working with a GRC platform (e.g., Vanta)
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
Capital provides software that enables founders to raise, hold, spend, and send funds all in one place. Capital has evolved its flagship fundraising tool (formerly known as Party Round) to provide founders with banking solutions that streamline their startups.







