About the company
Gemini is a regulated cryptocurrency exchange, wallet, and custodian that makes it simple and secure to buy bitcoin, ether, and other cryptocurrencies.
Job Summary
Responsibilities:
šGovernance Ownership šLead the Security Governance function, setting vision, priorities, and operating model. šEstablish and maintain security policies, standards, and procedures that align with organizational objectives and regulatory frameworks. šOversee governance forums, steering committees, and working groups to ensure decisions and actions align with governance standards. šSecurity Governance Oversight šOwn the lifecycle of security policies and standards, ensuring they are current, practical, and enforceable across the enterprise. šGovern alignment of security controls to established policies and standards, maintaining consistency and accountability. šProvide oversight of control design, implementation, and reporting, while avoiding duplication of compliance team responsibilities. šLead and execute the enterprise-wide entitlement review process, ensuring proper access governance and accountability. šOwn and govern the third-party software assessment and approval process, ensuring consistent enforcement of security requirements. šIntegrate data privacy and data protection frameworks (e.g., GDPR, CCPA) into governance processes, ensuring security and privacy are addressed holistically. šDrive process redesign and audit remediation efforts, ensuring governance gaps are closed, controls are strengthened, and improvements are sustainable. šOversee governance aspects of SOX 404 IT General Controls (ITGC), including access management, change management, and audit readiness. šOperate effectively in a fast-paced, dynamic environment, managing multiple priorities and stakeholders simultaneously while maintaining governance discipline
Minimum Qualifications:
šBachelorĆ¢ĀĀs degree in cybersecurity, information security, or related field, or equivalent experience. š8+ years of experience in security governance or related roles in highly regulated industries. šDemonstrated success in establishing governance frameworks, policies, and oversight mechanisms. šStrong knowledge of security frameworks and standards (ISO 27001, NIST CSF, SOC 2, PCI DSS, NYDFS). šProven ability to influence senior leadership and drive accountability across departments. šExceptional communication and presentation skills.
If youāre passionate about blockchain and decentralized technologies, explore more opportunities in web3 and cryptocurrency careers.