About the job
YOUR MISSION:
As a Senior IS&T Governance Partner at Parloa, you will be instrumental in maintaining the integrity and credibility of our platform by upholding the highest standards of governance, security, and regulatory compliance. Your role is pivotal in enabling Parloa to expand rapidly while ensuring compliance, security, and readiness for audits at all times.
Our IS&T Governance Department is crafting a world-class framework for governance, assurance, and risk management. We are establishing a robust structure of internal controls, reviews, and audits to validate our products and operations against leading international standards, including ISO 27001, ISO 22301, PCI DSS, HIPAA, and other relevant regulatory frameworks.
Currently, our team comprises four specialists covering Risk Management, Compliance, Business Continuity, and Information Security Management. We are expanding this function to align with the company’s growth and increasing regulatory and security demands.
This is a unique opportunity to join Parloa’s internal Governance function at an early stage and significantly influence how security, compliance, and risk management are integrated into a high-growth, AI-driven organization. You will ensure that Parloa not only meets all applicable regulatory and contractual obligations but also excels in setting the benchmark for compliance.
IN THIS ROLE YOU WILL:
- Be a core member of the distributed IS&T Governance team, promoting a strong culture of security and compliance awareness across all planning, development, and operational activities.
- Ensure that changes in product, development, and operational processes are meticulously documented, risk-assessed, and reviewed in a timely and structured manner.
- Collaborate with the Commercial organization by assisting with security and compliance questionnaires, contributing to contract and Data Processing Agreement (DPA) reviews, and participating in customer calls as a trusted subject matter expert.
- Manage and respond to incidents effectively, ensuring timely resolution and compliance with incident response protocols.

