Director, Governance, Risk & Compliance
JamfAbout the role
At Jamf, we believe in an open, flexible culture based on respect and trust. Our track record and thriving work environment all stem from the freedom we grant ourselves to get the job done right. We unite around common goals while respecting personal approaches, believing that fulfilled individuals create a thriving, vibrant workplace. We take pride in helping tens of thousands of customers around the globe succeed with Apple.
Jamf offers remote, in-office, and hybrid roles. Work-life balance remains our priority while feeling connected is important to maintain our strong culture, achieve our goals, and thrive as #OneJamf.
What you’ll do at Jamf:
The Director of Governance, Risk & Compliance (GRC) is a critical leadership role responsible for setting the vision and strategy for cyber governance, risk management, and compliance. This individual will lead a team dedicated to ensuring that Jamf meets established security requirements, adheres to industry standards, and complies with internal policies. The ideal candidate is a strategic thinker with strong leadership abilities, a deep understanding of relevant laws and regulations, and a proven ability to collaborate across multiple departments. Key areas of responsibility include policy development and enforcement, regulatory compliance, cyber risk management, sales and assurance support, training and awareness, audit coordination, and cross-functional collaboration. Reporting directly to the CISO, the Director of GRC will serve as a trusted advisor to the senior leadership team, providing education, awareness, and guidance on risk and compliance matters. What you can expect to do in this role: Plan, build, run, and manage an enterprise-wide governance, risk and compliance program for Jamf, including awareness and training, sales support, and policy development. Governance:- Develop and oversee security audit processes to monitor compliance with policies, procedures and security controls.
- Facilitate efficiencies by consolidating audits
- Support external audits and collaborate with internal teams supporting auditors to address security findings and implement corrective actions.
- Support the sales process with customer assurance questionnaires.
- Collaborate with various departments to ensure that security compliance considerations are integrated into business processes.
- Work closely with IT, engineering, security, and other teams to address security compliance requirements specific to their functions.
- Design and build common criteria for controls across the organization
- Maintain a current understanding of the threat landscape that could potentially impact Jamf operations and translate that knowledge into potential risks and actionable plans to protect the business
- Develop risk a register to monitor and track risk mitigation activities
- Develop policy framework and update organizational policies and procedures to ensure compliance with relevant laws, regulations, and industry standardsImplement security policies across the organization and provide guidance to engineering teams on policy compliance matters.
- Development of third-party risk management process
- Lead the development of security awareness training to increase awareness of compliance issues and ensure understanding of relevant security best practices and procedures.
- Develop a security-minded culture.
-
#LI-Remote
What we are looking for:
- Minimum of 10 years of overall experience required in security, compliance or risk management (Required)
- Minimum of 5 years of experience with governance, risk managent and compliance.
- Strong leadership and communication skills are essential criteria for this position, because the GRC program leader's success depends heavily on cooperation and commitment from every level of Jamf's business, and from personnel in many distinct roles (Required)
- Past experience directly building or leading a global GRC program (Preferred)
- Understanding of and experience in applying FedRAMP, StateRAMP, ISO 27001, COBIT, NIST or other compliance standards (Preferred)
- Ability to lead and influence cross-functional teams.
- Bachelor's Degree in Computer Science, Business Administration, or related field (Required)
Why Jamf?
- Named a 2024 Best Companies to Work For by U.S. News
- Named a 2024 Newsweek America’s Greatest Workplaces for Parents & Families
- You will have the
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s