About the company
Gemini is a regulated cryptocurrency exchange, wallet, and custodian that makes it simple and secure to buy bitcoin, ether, and other cryptocurrencies.
Job Summary
Responsibilities:
📍Governance Ownership 📍Lead the Security Governance function, setting vision, priorities, and operating model. 📍Establish and maintain security policies, standards, and procedures that align with organizational objectives and regulatory frameworks. 📍Oversee governance forums, steering committees, and working groups to ensure decisions and actions align with governance standards. 📍Security Governance Oversight 📍Own the lifecycle of security policies and standards, ensuring they are current, practical, and enforceable across the enterprise. 📍Govern alignment of security controls to established policies and standards, maintaining consistency and accountability. 📍Provide oversight of control design, implementation, and reporting, while avoiding duplication of compliance team responsibilities. 📍Lead and execute the enterprise-wide entitlement review process, ensuring proper access governance and accountability. 📍Own and govern the third-party software assessment and approval process, ensuring consistent enforcement of security requirements. 📍Integrate data privacy and data protection frameworks (e.g., GDPR, CCPA) into governance processes, ensuring security and privacy are addressed holistically. 📍Drive process redesign and audit remediation efforts, ensuring governance gaps are closed, controls are strengthened, and improvements are sustainable. 📍Oversee governance aspects of SOX 404 IT General Controls (ITGC), including access management, change management, and audit readiness. 📍Operate effectively in a fast-paced, dynamic environment, managing multiple priorities and stakeholders simultaneously while maintaining governance discipline
Minimum Qualifications:
📍Bachelorâs degree in cybersecurity, information security, or related field, or equivalent experience. 📍8+ years of experience in security governance or related roles in highly regulated industries. 📍Demonstrated success in establishing governance frameworks, policies, and oversight mechanisms. 📍Strong knowledge of security frameworks and standards (ISO 27001, NIST CSF, SOC 2, PCI DSS, NYDFS). 📍Proven ability to influence senior leadership and drive accountability across departments. 📍Exceptional communication and presentation skills.
If you’re passionate about blockchain and decentralized technologies, explore more opportunities in web3 and cryptocurrency careers.


