About the job
At Engine by Starling, we are dedicated to partnering with leading banks globally, helping them to harness our innovative technology for rapid business growth.
Engine operates as Starling's software-as-a-service (SaaS) business, originally developed to empower Starling itself. Two years ago, we became an independent entity.
Starling has achieved remarkable growth, largely due to our commitment to building advanced technology from the ground up. Our SaaS platform is now accessible to banks and financial institutions worldwide, allowing them to leverage the cutting-edge digital features and streamlined back-office operations that have contributed to Starling's success.
We pride ourselves on fostering a collaborative environment where every team member contributes to our clients' success. As an engineering-driven company, we seek individuals who are enthusiastic about the transformative potential of Engine’s technology in diverse banking markets. Our core values guide us: Listen, Keep It Simple, Do The Right Thing, Own It, and Aim For Greatness.
Hybrid Working
We embrace a hybrid working model, favoring individuals who are within commuting distance of one of our offices to facilitate in-person collaboration.
About the Role
In this pivotal role, you will be key in enhancing our governance, risk, and compliance (GRC) program. You will be instrumental in ensuring our compliance with security standards and regulations, fostering trust among our clients and stakeholders. This is a hands-on position, ideally suited for individuals who excel in engaging with stakeholders across our organization.
Key Responsibilities:
- Compliance Management: Oversee daily operations of our compliance initiatives, with a focus on ISO 27001, SOC 2, and PCI DSS/3DS.
- Audit Support: Serve as a primary liaison for internal and external auditors, assisting in evidence gathering, audit preparation, and tracking the timely resolution of findings.
- Risk Management: Participate in risk assessments, identifying and documenting information security risks, and contributing to the development and monitoring of risk treatment plans.
- Policy and Procedure Maintenance: Aid in the creation, update, and maintenance of our information security policies and procedures, ensuring alignment with compliance mandates.
