<?xml version="1.0" encoding="UTF-8"?>
<source>
  <jobs>
    <job>
      <externalid>40095d79-9d0</externalid>
      <Title>FBS Delivery Director</Title>
      <Description><![CDATA[<p>FBS – Farmer Business Services is part of Farmers operations with the purpose of building a global approach to identifying, recruiting, hiring, and retaining top talent. We believe that the foundation of every successful business lies in having the right people with the right skills. That is where we come in,helping Farmers build a winning team that delivers consistent and sustainable results.  We have partnered with Capgemini, which acts as the Employer of Record. Capgemini is responsible for managing local payroll and benefits.  As an FBS Delivery Director, you will be responsible for all Program/Project management and delivery, Solution Architecture and standards in compliance with IT Governance, and IT budget for a collection of business units. You will contribute to improvement/optimization of the IT governance processes and ensure the alignment of the Strategic Information Systems Plan with business priorities and execute plans.  You will influence stakeholders throughout the organization, utilize in-depth experience in business change initiatives having a significant technology component, and translate business needs into attainable plans. You will utilize knowledge of the organization&#39;s complexities, processes, information, and technologies to build delivery frameworks to accomplish the organization&#39;s strategy.  You will contribute to establish the IT strategy, translate strategic intent into actions and execute strategic plans resulting in business and technology change. You will ensure the alignment of the Strategic Information Systems Plan with business priorities and improve organizational governance by optimizing processes.  You will consistently identify and pursue business and efficiency opportunities.  The scope of the role also bases of in these two areas:  Business Requirements (Requirements CoE) The translation layer between business pain and buildable solution.  <em> This position leads discovery and elicitation , asking the critical questions that surface what stakeholders actually need versus what they say they need , and then structure, prioritize, and govern those needs all the way through delivery. </em> They are the voice of &quot;what are we building and why&quot; from day one through final sign-off.  Program Operationalization (Program Ops) The engine that keeps everything moving.  * This position owns the roadmap, the operating model, the cross-functional coordination, and the budget , essentially making sure the right people are doing the right things in the right order without losing momentum or money. If Requirements defines what we&#39;re building, Program Ops defines how we&#39;re going to get it built.  We are looking for a candidate with +12 years of experience in IT Digital transformation, enterprise innovation, strategy and analytics, and operational excellence in a multinational company. You should have experience managing IT budgets and financial modeling for technology investments. You should have a proven track record of delivering complex business and technology projects/programs.  You should have experience with IT governance frameworks and aligning IT strategy with business goals. You should be able to lead large-scale IT programs/projects with moderate to high complexity and working in environments with multiple business units and complex organizational structures.  You should have a Master’s degree preferred and insurance background is very desirable.  As an FBS Delivery Director, you will have the opportunity to work with a diverse team of professionals and contribute to the success of the organization. You will have the chance to develop your skills and expertise in a fast-paced and dynamic environment.  If you are a motivated and experienced professional looking for a new challenge, we encourage you to apply for this exciting opportunity.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>remote</Workarrangement>
      <Salaryrange>&quot;,   &quot;salaryMin&quot;: &quot;&quot;,   &quot;salaryMax&quot;: &quot;&quot;,   &quot;salaryCurrency&quot;: &quot;&quot;,   &quot;salaryPeriod&quot;: &quot;</Salaryrange>
      <Skills>Project &amp; Program Management, Process Oriented, High Adaptability and leading with Ambiguity, Solution Architecture, IT Governance, Strategic Thinking, Stakeholder Management, Financial Acumen, Change Management, Leadership, Problem-Solving, Emotional Intelligence, Big Picture Thinking</Skills>
      <Category>IT</Category>
      <Industry>Technology</Industry>
      <Employername>Capgemini</Employername>
      <Employerlogo>https://logos.yubhub.co/capgemini.com.png</Employerlogo>
      <Employerdescription>Capgemini is a multinational consulting and technology services company with over 50 years of experience.</Employerdescription>
      <Employerwebsite>https://www.capgemini.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.workable.com/view/9mNzhvFReoYzGxb8M76P2V/remote-fbs-delivery-director.-in-mexico-at-capgemini</Applyto>
      <Location>Mexico</Location>
      <Country></Country>
      <Postedate>2026-04-24</Postedate>
    </job>
    <job>
      <externalid>eb62cebf-d2c</externalid>
      <Title>Service Management and Risk Specialist/Associate Director, Software Engineering Specialist</Title>
      <Description><![CDATA[<p>Join HSBC and fulfil your potential in the role of Associate Director, Software Engineering Specialist. As a key member of our team, you will embed resilience and control requirements into EUS Service Governance routines, partner with Service Governance leads to define consistent measures, thresholds, and continuous improvement loops for resilience outcomes, and provide risk-based insights to EUS leadership to prioritise remediation, target investment, and make clear risk/benefit trade-offs.</p>
<p>Influencing EUS platform leads and cross-CTO stakeholders to align on resilience outcomes, dependencies, and delivery commitments, coordinating delivery across IT Operations, Cybersecurity, Technology Risk, Operational Resilience/BCM, and Third-Party Risk to ensure consistent execution and escalation, operationalising evolving regulatory and control expectations, and maintaining audit-ready evidence with timely gap closure.</p>
<p>Running/supporting resilience maturity assessments, translating findings into prioritised roadmaps, and maintaining KRIs/KPIs and executive dashboards, strengthening accountability and capability by identifying systemic risks, supporting incident/exercise escalations and governance communications, and delivering playbooks/templates/coaching to uplift resilience practices across EUS.</p>
<p>To be successful in this role, you will require experience in operational resilience, technology risk, controls, service reliability, or IT governance in a regulated environment, a strong understanding of control design, evidence, and risk-based prioritisation, and the ability to translate mandates into practical operational/technical actions and measurable outcomes.</p>
<p>Strong stakeholder management and influencing skills in a matrix environment, experience producing metrics and executive reporting, and a composed, structured approach during incidents/exercises are also essential.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>operational resilience, technology risk, controls, service reliability, IT governance, observability, resilience testing, service management practices, third-party resilience</Skills>
      <Category>IT</Category>
      <Industry>Finance</Industry>
      <Employername>HSBC</Employername>
      <Employerlogo>https://logos.yubhub.co/portal.careers.hsbc.com.png</Employerlogo>
      <Employerdescription>HSBC is one of the largest banking and financial services organisations in the world, with operations in 64 countries and territories.</Employerdescription>
      <Employerwebsite>https://portal.careers.hsbc.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://portal.careers.hsbc.com/careers/job/563774610771243</Applyto>
      <Location>Hyderabad</Location>
      <Country></Country>
      <Postedate>2026-04-24</Postedate>
    </job>
    <job>
      <externalid>3a4cf5b1-690</externalid>
      <Title>SAP Security/GRC Senior Consultant Role</Title>
      <Description><![CDATA[<p>Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients&#39; most important challenges?</p>
<p>We are growing and are looking for people to join our team. You&#39;ll be part of an entrepreneurial, high-growth environment of 300,000 employees. Our dynamic organization allows you to work across functional business pillars, contributing your ideas, experiences, diverse thinking, and a strong mindset. Are you ready?</p>
<p>As a SAP Security/GRC Consultant, you will work closely with diverse clients to assess their SAP security risks, design and implement tailored SAP Security and Governance, Risk &amp; Compliance (GRC) solutions, and drive successful project delivery. You will act as a trusted advisor, helping clients align SAP security frameworks with business objectives and compliance mandates.</p>
<p>Responsibilities:</p>
<ul>
<li>Lead SAP Security and GRC assessment, design, and implementation projects for clients across industries.</li>
<li>Conduct client workshops and requirements gathering sessions to understand business and security needs.</li>
<li>Design and configure SAP security roles, authorizations, and GRC Access Control components (Access Risk Analysis, Emergency Access Management, Access Request Management).</li>
<li>Develop and enforce Segregation of Duties (SoD) policies to mitigate risks and ensure compliance.</li>
<li>Deliver SAP Security and GRC gap analysis, risk assessments, and remediation plans.</li>
<li>Support clients during audits by preparing documentation, reports, and facilitating access reviews.</li>
<li>Collaborate with cross-functional teams including Basis, functional consultants, and IT auditors to implement secure SAP landscapes.</li>
<li>Conduct end-user training sessions and knowledge transfer workshops.</li>
<li>Stay abreast of SAP security trends, new releases, and regulatory changes to provide proactive consulting.</li>
</ul>
<p>Requirements:</p>
<ul>
<li>5-8 years of consulting experience is necessary.</li>
<li>3+ years of SAP Security and GRC consulting experience with multiple end-to-end implementations.</li>
<li>Hands-on expertise with SAP ECC and/or S/4HANA Security.</li>
<li>Strong experience configuring SAP GRC Access Control modules (Access Risk Analysis, Emergency Access Management, Access Request Management).</li>
<li>Excellent client-facing and communication skills with the ability to explain technical concepts to non-technical stakeholders.</li>
<li>Proven track record of managing multiple client engagements and delivering quality results on time.</li>
</ul>
<p>Functional / Content Skills</p>
<ul>
<li>Strong knowledge of Sarbanes-Oxley (SOX), Business Process controls, IT General Controls and IT governance.</li>
<li>Deep understanding and practical experience Analysis and Design/Re-Design of Business process and IT General controls in SAP and Non-SAP landscape.</li>
<li>Strong analytical skills and a deep understanding of the overall context of underlying business processes and technologies.</li>
<li>Understanding the purpose, procedures and ways of work of internal/external audits.</li>
<li>Ability to support audits and to provide the right information &amp; data, and to mitigate and/or solve identified deficiencies and gaps.</li>
</ul>
<p>Technical Skills (Data, Technology, Implementation)</p>
<ul>
<li>Ability to retrieve and analyze and report/present data from various sources.</li>
<li>Understanding of data structures, sources, flow and integration across infrastructure platforms, functional domains, and application landscapes/service.</li>
<li>Up-to-date understanding of Concepts &amp; Integration of Cloud Services, and multi-cloud environments</li>
</ul>
<p>Tool Skill Requirements</p>
<ul>
<li>A variety of ERP systems (SAP &amp; Non-SAP), Operating systems, Databases and financial applications</li>
<li>Identity and Access Management solutions and monitoring solutions such as Splunk, Qualys, Tripwire, but also in Authorization &amp; SoD</li>
<li>Analytics &amp; reporting in area of ITGC/GRC</li>
<li>IT Service Management Tools, Market Leader (SNOW, BMC, JIRA, ..)</li>
</ul>
<p>Experience with SAP Identity Management (IdM).</p>
<p>Knowledge of cloud-based SAP security and hybrid environments.</p>
<p>Experience working in Agile/Scrum environments.</p>
<p>Experience in global delivery and working with offshore resources.</p>
<p>Project-related mobility/willingness to travel</p>
<p>Qualifications and certifications</p>
<ul>
<li>Bachelor’s degree in Computer Science, Information Technology, or related field.</li>
<li>More than 7 years of experience in Financial / IT compliance, risk management, IT audit and/or IT controls; strong experience in an audit firm (e.g. Big Four).</li>
<li>SAP Security or GRC certifications are a plus (e.g., SAP Certified Technology Associate – SAP Access Control).</li>
</ul>
<p>Given that this is just a short snapshot of the role we encourage you to apply even if you don&#39;t meet all the requirements listed above. We are looking for team members who strive to make an impact and are eager to learn. If this sounds like you and you feel you have the skills and experience required, then please apply now.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>SAP Security, GRC, SAP ECC, S/4HANA Security, SAP GRC Access Control, Segregation of Duties, SAP Security and GRC gap analysis, Risk assessments, Remediation plans, Client workshops, Requirements gathering sessions, Business and security needs, SAP security roles, Authorizations, GRC Access Control components, Access Risk Analysis, Emergency Access Management, Access Request Management, IT General Controls, IT governance, Sarbanes-Oxley, Business Process controls, Cloud Services, Multi-cloud environments, ERP systems, Operating systems, Databases, Financial applications, Identity and Access Management solutions, Monitoring solutions, Splunk, Qualys, Tripwire, Authorization &amp; SoD, Analytics &amp; reporting, IT Service Management Tools, SNOW, BMC, JIRA, SAP Identity Management</Skills>
      <Category>IT</Category>
      <Industry>Consulting</Industry>
      <Employername>Infosys Consulting - Europe</Employername>
      <Employerlogo>https://logos.yubhub.co/infosysconsulting.com.png</Employerlogo>
      <Employerdescription>Infosys Consulting is a globally renowned management consulting firm that provides services to market-leading brands across various sectors.</Employerdescription>
      <Employerwebsite>https://www.infosysconsulting.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.workable.com/view/uE3qNnBsRsXdtbyrv8YWkx/hybrid-sap-security%2Fgrc-senior-consultant-role---digital-platforms---germany-in-munich-at-infosys-consulting---europe</Applyto>
      <Location>Munich</Location>
      <Country></Country>
      <Postedate>2026-04-24</Postedate>
    </job>
    <job>
      <externalid>f5ba9866-259</externalid>
      <Title>Senior GRC Lead</Title>
      <Description><![CDATA[<p>Join Brex, the intelligent finance platform that enables companies to spend smarter and move faster in more than 200 markets. As a Senior GRC Lead, you will drive critical GRC processes that mitigate risk, keep us compliant, and build trust with our customers and partners.</p>
<p>You&#39;ll evolve the technical foundation of our Trust program by automating security controls, building integrations between security tools and GRC platforms, and creating scalable processes that enable Brex to maintain compliance efficiently as we expand into new markets.</p>
<p>You&#39;ll work at the intersection of security, engineering, and compliance , translating regulatory requirements into technical solutions and building automation that eliminates manual toil.</p>
<p>You&#39;ll leverage your deep understanding of SOC 2, PCI DSS, ISO 27001, AI governance frameworks, and others to both design controls for emerging compliance requirements and mature existing programs through automation and continuous monitoring.</p>
<p>You’ll support Trust Assurance, Third Party Risk Management, and other Security Risk Management initiatives.</p>
<p>Working with our Engineering, Infrastructure, and Product teams, you&#39;ll translate compliance frameworks into technical controls and build automated systems that help us achieve world-class security as Brex expands.</p>
<p>Your contributions will directly accelerate Brex&#39;s maturity.</p>
<p>You&#39;ll design workflows using Tines, build integrations between security and GRC systems, and create dashboards for security metrics.</p>
<p>You&#39;ll implement controls across the technology stack, support multiple audits (SOC 2, PCI DSS, SOX/ITGC, FINRA, ISO), and contribute to AI governance framework implementation (ISO 42001, NIST AI RMF, EU AI Act).</p>
<p>You&#39;ll have autonomy to build innovative solutions, collaborating cross-functionally to implement controls that enable growth while communicating technical concepts effectively across the organization.</p>
<p>This role will be based in our San Francisco office. We are a hybrid environment that combines the energy and connections of being in the office with the benefits and flexibility of working from home.</p>
<p>Responsibilities:</p>
<p>Manage and scale IT infrastructure, services and tooling</p>
<p>Work with a diverse group of IT partners to optimize our provided services</p>
<p>Implement new services in support of Information Technologies vision</p>
<p>Scale our services by implementing configuration as code via Terraform providers or APIs</p>
<p>Operationalize and upskill IT and its partners by producing documentation and leading training sessions</p>
<p>Evangelize best practices both internally and externally facing</p>
<p>Requirements:</p>
<p>5+ years of experience in GRC, IT Governance, or Security Engineering with a strong track record of automating manual compliance workflows.</p>
<p>Deep experience with security frameworks such as SOC 2, PCI DSS, ISO 27001, and NIST CSF, specifically within cloud-native environments.</p>
<p>Technical proficiency in Python (or similar scripting languages) and experience building integrations using APIs to connect security tools with GRC systems.</p>
<p>Builder mindset with the ability to design and implement automated control testing, continuous monitoring, and data-driven security metrics.</p>
<p>Exceptional cross-functional collaboration and communication skills.</p>
<p>Strong systems thinking.</p>
<p>Bias for action.</p>
<p>Bonus points:</p>
<p>Previous experience in Fintech or banking environments navigating complex regulatory landscapes.</p>
<p>Hands-on experience with Tines or other SOAR platforms to automate security operations.</p>
<p>Familiarity with AI/ML governance frameworks (NIST AI RMF, ISO 42001) or securing agentic systems.</p>
<p>Deep knowledge of Cloud Security (AWS/GCP), infrastructure-as-code (Terraform), or DevSecOps practices.</p>
<p>Relevant industry certifications such as CISSP, CISA, or CCSP.</p>
<p>Experience building metrics dashboards for security visualization and reporting.</p>
<p>Active contributions to the GRC or Security community through open-source projects or public research.</p>
<p>Compensation: The expected salary range for this role is $153,600 - $192,000.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$153,600 - $192,000</Salaryrange>
      <Skills>GRC, IT Governance, Security Engineering, Python, APIs, Tines, SOAR, Cloud Security, Infrastructure-as-code, DevSecOps</Skills>
      <Category>Engineering</Category>
      <Industry>Finance</Industry>
      <Employername>Brex</Employername>
      <Employerlogo>https://logos.yubhub.co/brex.com.png</Employerlogo>
      <Employerdescription>Brex is a fintech company that provides an intelligent finance platform for businesses.</Employerdescription>
      <Employerwebsite>https://brex.com/</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://job-boards.greenhouse.io/brex/jobs/8378792002</Applyto>
      <Location>San Francisco, California, United States</Location>
      <Country></Country>
      <Postedate>2026-04-18</Postedate>
    </job>
    <job>
      <externalid>645cbbd8-382</externalid>
      <Title>Associate General Counsel, Non-Profit</Title>
      <Description><![CDATA[<p><strong>Compensation</strong></p>
<p>The base pay offered may vary depending on multiple individualized factors, including market location, job-related knowledge, skills, and experience. If the role is non-exempt, overtime pay will be provided consistent with applicable laws. In addition to the salary range listed above, total compensation also includes generous equity, performance-related bonus(es) for eligible employees, and the following benefits.</p>
<ul>
<li>Medical, dental, and vision insurance for you and your family, with employer contributions to Health Savings Accounts</li>
</ul>
<ul>
<li>Pre-tax accounts for Health FSA, Dependent Care FSA, and commuter expenses (parking and transit)</li>
</ul>
<ul>
<li>401(k) retirement plan with employer match</li>
</ul>
<ul>
<li>Paid parental leave (up to 24 weeks for birth parents and 20 weeks for non-birthing parents), plus paid medical and caregiver leave (up to 8 weeks)</li>
</ul>
<ul>
<li>Paid time off: flexible PTO for exempt employees and up to 15 days annually for non-exempt employees</li>
</ul>
<ul>
<li>13+ paid company holidays, and multiple paid coordinated company office closures throughout the year for focus and recharge, plus paid sick or safe time (1 hour per 30 hours worked, or more, as required by applicable state or local law)</li>
</ul>
<ul>
<li>Mental health and wellness support</li>
</ul>
<ul>
<li>Employer-paid basic life and disability coverage</li>
</ul>
<ul>
<li>Annual learning and development stipend to fuel your professional growth</li>
</ul>
<ul>
<li>Daily meals in our offices, and meal delivery credits as eligible</li>
</ul>
<ul>
<li>Relocation support for eligible employees</li>
</ul>
<ul>
<li>Additional taxable fringe benefits, such as charitable donation matching and wellness stipends, may also be provided.</li>
</ul>
<p><strong>About the Team</strong></p>
<p>OpenAI&#39;s Legal team plays a crucial role in furthering OpenAI&#39;s mission by tackling innovative, fundamental legal issues in AI. If you&#39;re passionate about doing significant and unique work as a technology lawyer, this team is for you. The team comprises professionals from diverse fields, including technology, AI, privacy, IP, corporate, employment, tax, regulatory, and litigation.</p>
<p><strong>About the Role</strong></p>
<p>As Associate General Counsel, Non-Profit you will support and lead on a broad range of matters spanning nonprofit tax, governance, and related corporate issues. This role offers a unique opportunity to advise on complex, high-impact legal issues at the intersection of mission, governance, and AI. You will work closely with OpenAI leadership, as well as partner deeply with the OpenAI legal team, to support both the nonprofit and affiliated organizations within the broader OpenAI enterprise.</p>
<p><strong>In this role, you will:</strong></p>
<ul>
<li>Serve as the primary legal advisor on nonprofit tax, governance, and fiduciary matters for OpenAI’s affiliated nonprofit. Advise on compliance with federal and state nonprofit law, tax-exempt status requirements, grants administration compliance, private benefit and excess benefit rules, and mission-aligned governance.</li>
</ul>
<ul>
<li>Lead nonprofit governance initiatives, including advising on governance matters, conflicts-of-interest processes, and implementing and operationalizing policies required for a complex, high-profile nonprofit operating alongside a PBC affiliate.</li>
</ul>
<ul>
<li>Advise on the legal and tax implications of transactions and arrangements between the nonprofit and affiliate entities, including shared support services, funding, IP and commercial relationships, and other intercompany matters.</li>
</ul>
<ul>
<li>Advise and partner with the OpenAI legal team on general corporate, governance, and disclosure matters that require coordination with the Foundation, including public disclosures, compensation matters, governance initiatives, and other enterprise-level legal issues.</li>
</ul>
<ul>
<li>Partner closely with Finance, Tax, Accounting, Investor Relations, and other Legal teams to design and maintain compliant structures, processes, and controls across OpenAI, including entity management, subsidiary governance, and regulatory compliance.</li>
</ul>
<ul>
<li>Develop and scale legal frameworks and operating processes for nonprofit governance, tax compliance, and related corporate matters, in close collaboration with cross-functional stakeholders, to support the organization’s growth, complexity, and public profile.</li>
</ul>
<p><strong>You might thrive in this role if you:</strong></p>
<ul>
<li>Have 12+ years of legal experience, including significant experience advising nonprofits on tax, governance, and compliance matters. Experience spanning both nonprofit and affiliated organizations is strongly preferred.</li>
</ul>
<ul>
<li>Have deep expertise in nonprofit tax and regulatory issues, nonprofit governance, and the design and operation of compliance programs for complex, high-visibility nonprofit organizations.</li>
</ul>
<ul>
<li>Exercise sound judgment in ambiguous, high-stakes situations and are comfortable serving as a trusted advisor to senior leaders and boards on important governance matters.</li>
</ul>
<ul>
<li>Take strong ownership of your work, are intellectually curious, and are energized by novel legal issues at the intersection of technology, mission, and organizational structure.</li>
</ul>
<ul>
<li>Communicate clearly and effectively, manage multiple complex workstreams in parallel, and collaborate well across legal, finance, tax, and other cross-functional teams.</li>
</ul>
<ul>
<li>Operate with humility, integrity, and a strong sense of responsibility to mission, stakeholders, and the public interest.</li>
</ul>
<ul>
<li>Hold a JD and are licensed to practice law in California, or are eligible to become licensed.</li>
</ul>
<p><strong>About OpenAI</strong></p>
<p>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. We push the boundaries of the capabilities of AI systems and seek to safely deploy them to the world through our products. AI is an extremely powerful tool that must be created with safety and human needs at its core, and to achieve our mission, we must encompass and value the many different perspectives, voices, and experiences that form the full spectrum of humanity.</p>
<p><strong>Equal Employment Opportunity</strong></p>
<p>We are an equal opportunity employer, and we do not discriminate on the basis of race, religion, color, national origin, sex, sexual orientation, age, veteran status, disability, genetic information, or other applicable legally protected characteristic.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>Full time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange>$347K – $385K</Salaryrange>
      <Skills>nonprofit tax, governance, fiduciary matters, compliance with federal and state nonprofit law, tax-exempt status requirements, grants administration compliance, private benefit and excess benefit rules, mission-aligned governance, nonprofit governance initiatives, conflicts-of-interest processes, implementing and operationalizing policies, transactions and arrangements between nonprofit and affiliate entities, shared support services, funding, IP and commercial relationships, intercompany matters, general corporate, governance, disclosure matters, public disclosures, compensation matters, governance initiatives, entity management, subsidiary governance, regulatory compliance</Skills>
      <Category>Legal</Category>
      <Industry>Technology</Industry>
      <Employername>OpenAI</Employername>
      <Employerlogo>https://logos.yubhub.co/openai.com.png</Employerlogo>
      <Employerdescription>OpenAI is an AI research and deployment company dedicated to ensuring that general-purpose artificial intelligence benefits all of humanity. It is a significant player in the AI industry.</Employerdescription>
      <Employerwebsite>https://jobs.ashbyhq.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.ashbyhq.com/openai/597e5531-39a8-49eb-bb8d-0ca11cbbd9b4</Applyto>
      <Location>San Francisco</Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
    <job>
      <externalid>16051af0-2b0</externalid>
      <Title>SAP Security/GRC Consultant- Poland</Title>
      <Description><![CDATA[<p>Do you want to boost your career and collaborate with expert, talented colleagues to solve and deliver against our clients&#39; most important challenges? We are growing and are looking for people to join our team. You&#39;ll be part of an entrepreneurial, high-growth environment of 300,000 employees. Our dynamic organization allows you to work across functional business pillars, contributing your ideas, experiences, diverse thinking, and a strong mindset. Are you ready?</p>
<p>The Digital Platforms Practice helps some of the largest global firms and most recognizable brands deliver value and business transformation enabled by digital ERP solutions and services. Our ERP services, covering strategy, implementation and innovation, help clients deliver true value and achieve their transformation agenda.</p>
<p>As a SAP Security/GRC Consultant, you will work closely with diverse clients to assess their SAP security risks, design and implement tailored SAP Security and Governance, Risk &amp; Compliance (GRC) solutions, and drive successful project delivery. You will act as a trusted advisor, helping clients align SAP security frameworks with business objectives and compliance mandates.</p>
<p><strong>Responsibilities</strong></p>
<ul>
<li>Lead SAP Security and GRC assessment, design, and implementation projects for clients across industries.</li>
<li>Conduct client workshops and requirements gathering sessions to understand business and security needs.</li>
<li>Design and configure SAP security roles, authorizations, and GRC Access Control components (Access Risk Analysis, Emergency Access Management, Access Request Management).</li>
<li>Develop and enforce Segregation of Duties (SoD) policies to mitigate risks and ensure compliance.</li>
<li>Deliver SAP Security and GRC gap analysis, risk assessments, and remediation plans.</li>
<li>Support clients during audits by preparing documentation, reports, and facilitating access reviews.</li>
<li>Collaborate with cross-functional teams including Basis, functional consultants, and IT auditors to implement secure SAP landscapes.</li>
<li>Conduct end-user training sessions and knowledge transfer workshops.</li>
<li>Stay abreast of SAP security trends, new releases, and regulatory changes to provide proactive consulting.</li>
</ul>
<p><strong>Requirements</strong></p>
<ul>
<li>At least 5 years of consulting experience is necessary.</li>
<li>3+ years of SAP Security and GRC consulting experience with multiple end-to-end implementations.</li>
<li>Hands-on expertise with SAP ECC and/or S/4HANA Security.</li>
<li>Strong experience configuring SAP GRC Access Control modules (Access Risk Analysis, Emergency Access Management, Access Request Management).</li>
<li>Excellent client-facing and communication skills with the ability to explain technical concepts to non-technical stakeholders.</li>
<li>Proven track record of managing multiple client engagements and delivering quality results on time.</li>
</ul>
<ul>
<li>Functional / Content Skills</li>
</ul>
<ul>
<li>Strong knowledge of Sarbanes-Oxley (SOX) , Business Process controls, IT General Controls and IT governance.</li>
<li>Deep understanding and practical experience Analysis and Design/Re-Design of Business process and IT General controls in SAP and Non-SAP landscape.</li>
<li>Strong analytical skills and a deep understanding of the overall context of underlying business processes and technologies.</li>
<li>Understanding the purpose, procedures and ways of work of internal/external audits.</li>
<li>Ability to support audits and to provide the right information &amp; data, and to mitigate and/or solve identified deficiencies and gaps.</li>
</ul>
<ul>
<li>Technical Skills (Data, Technology, Implementation)</li>
</ul>
<ul>
<li>Ability to retrieve and analyze and report/present data from various sources.</li>
<li>Understanding of data structures, sources, flow and integration across infrastructure platforms, functional domains, and application landscapes/service.</li>
<li>Up-to-date understanding of Concepts &amp; Integration of Cloud Services, and multi-cloud environments</li>
</ul>
<ul>
<li>Tool Skill Requirements</li>
</ul>
<ul>
<li>A variety of ERP systems (SAP &amp; Non-SAP), Operating systems, Databases and financial applications</li>
<li>Identity and Access Management solutions and monitoring solutions such as Splunk, Qualys, Tripwire, but also in Authorization &amp; SoD</li>
<li>Analytics &amp; reporting in area of ITGC/GRC</li>
<li>IT Service Management Tools, Market Leader (SNOW, BMC, JIRA, ..)</li>
</ul>
<ul>
<li>Experience with SAP Identity Management (IdM).</li>
</ul>
<ul>
<li>Knowledge of cloud-based SAP security and hybrid environments.</li>
<li>Experience working in Agile/Scrum environments.</li>
<li>Experience in global delivery and working with offshore resources.</li>
<li>Project-related mobility/willingness to travel</li>
</ul>
<ul>
<li>Qualifications and certifications</li>
</ul>
<ul>
<li>Bachelor’s degree in Computer Science, Information Technology, or related field.</li>
<li>More than 7 years of experience in Financial / IT compliance, risk management, IT audit and/or IT controls; strong experience in an audit firm (e.g. Big Four).</li>
<li>SAP Security or GRC certifications are a plus (e.g., SAP Certified Technology Associate – SAP Access Control).</li>
</ul>
<p><strong>Benefits</strong></p>
<p>We offer industry-leading compensation and benefits, along with top training and development opportunities so that you can grow your career and achieve your personal goals. Curious to learn more? We’d love to hear from you.... Apply today!</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>onsite</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>SAP Security, GRC, SAP ECC, S/4HANA Security, SAP GRC Access Control, Sarbanes-Oxley (SOX), Business Process controls, IT General Controls, IT governance, Analysis and Design/Re-Design of Business process and IT General controls, SAP and Non-SAP landscape, Identity and Access Management solutions, Monitoring solutions, Analytics &amp; reporting, IT Service Management Tools, SAP Identity Management (IdM), Cloud-based SAP security and hybrid environments, Agile/Scrum environments, Global delivery and offshore resources, Project-related mobility</Skills>
      <Category>IT</Category>
      <Industry>Consulting</Industry>
      <Employername>Infosys Consulting - Europe</Employername>
      <Employerlogo>https://logos.yubhub.co/view.com.png</Employerlogo>
      <Employerdescription>Infosys Consulting is a globally renowned management consulting firm that works with market leading brands across sectors. It is a mid-size consultancy within the scale of Infosys, a top-5 powerhouse IT brand.</Employerdescription>
      <Employerwebsite>https://jobs.workable.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.workable.com/view/fUHbJmygaqVeehYWCazHTH/sap-security%2Fgrc-consultant--poland-in-wroc%C5%82aw-at-infosys-consulting---europe</Applyto>
      <Location>Wrocław, Lower Silesian Voivodeship, Poland</Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
    <job>
      <externalid>0d6b0b5c-92a</externalid>
      <Title>Governance, Risk, and Compliance (GRC) SME- (m/w/d) DACH-Region</Title>
      <Description><![CDATA[<p><strong>Job Description</strong></p>
<p>You will be part of a team that supports CIOs in managing central challenges such as geopolitical and macroeconomic uncertainty, cybersecurity, digital transformation, and budget restrictions. As a Cyber GRC Senior Consultant, you will work with security, IT, and compliance teams to strengthen cybersecurity, manage cyber risks, and ensure regulatory compliance.</p>
<p><strong>Key Responsibilities</strong></p>
<ul>
<li>Participate in global projects in an international team, supported by over 330,000 technical professionals from our parent company</li>
<li>Contribute to the development of consulting offerings and innovative go-to-market solutions for the C-Suite to make cyber risks understandable and reducible</li>
<li>Lead and conduct risk analyses according to the NIST CSF</li>
<li>Be responsible for conceiving innovative new services using AI and ML where they offer real added value</li>
<li>Support pre-sales, sales, and account management activities from the perspective of a subject matter expert</li>
</ul>
<p><strong>Requirements</strong></p>
<ul>
<li>You have a clear career progression and experience working with renowned consulting firms and large commercial sector customers</li>
<li>You bring a strong passion for cybersecurity and actively follow current industry trends and developments</li>
<li>Your cybersecurity expertise includes:</li>
</ul>
<p>+ A relevant university degree (Bachelor or Master) in Information Security, Cybersecurity, or IT Security 	+ At least 1-5+ years of experience in the field of Cyber Security/Information Security 	+ A broad business competence profile, including stakeholder management, problem-solving ability, and resilience 	+ Experience in collecting, validating, analyzing, documenting, and communicating information to stakeholders</p>
<p><strong>Desired Skills</strong></p>
<ul>
<li>Good knowledge of the NIST Cybersecurity Framework (CSF)</li>
<li>A further university degree in Cyber or Information Security</li>
<li>Cyber Due Diligence Assessments</li>
<li>Cyber Risk Management for third parties and supply chains</li>
<li>Review of Incident Response Plans</li>
<li>Support in tenders, RFP responses, and offers</li>
<li>Conducting Crisis Management Exercises (CMX)</li>
<li>Certifications such as CISSP, CISM, CISA, GSLC, GSTRT, GCPM</li>
<li>Participation in the development of Target Operating Models (TOMs) and RACI matrices</li>
<li>Creation of Cyber Security Roadmaps</li>
<li>Support in Post-Incident Reviews</li>
<li>Analysis and summarization of Cyber Threat Intelligence Reports</li>
<li>Implementation of Cyber Compliance Programs (DSGVO, DORA, ISO 27001, NIS2, SOX)</li>
<li>Cyber Risk or Maturity Assessments</li>
<li>Conception and/or implementation of Awareness Trainings</li>
<li>Participation in Identity &amp; Access Management Projects</li>
<li>Participation in Privileged Access Management Projects</li>
</ul>
<p><strong>Ideal Candidate Profile</strong></p>
<ul>
<li>Our ideal candidates have the following skills:</li>
</ul>
<p>+ Strong business competence, particularly in stakeholder management and problem-solving 	+ Experience in preparing and communicating complex information to stakeholders 	+ Very good communication skills in German (C2) and English (C2) and project-related travel readiness 	+ Enjoy working with customers from different industries 	+ Experience in balancing technical and commercial requirements to develop practical solutions 	+ Ability to build lasting business relationships at all levels 	+ Ability to provide expert support and guidance to less experienced colleagues 	+ Ability to explain complex cyber methods in a non-technical and understandable way (written and oral)</p>
<p><strong>Benefits</strong></p>
<p>You will be part of a team that supports CIOs in managing central challenges such as geopolitical and macroeconomic uncertainty, cybersecurity, digital transformation, and budget restrictions. Our team of business analysts, enterprise architects, and cyber security specialists combines operational, strategic, analytical, and innovative competencies to drive business-IT alignment, IT governance transformation, IT cost optimization, efficiency improvement, innovation promotion, and cyber risk, governance, and compliance topics.</p>
<p><strong>About Infosys Consulting</strong></p>
<p>You will be part of a globally renowned management consulting firm that is on the front-line of industry disruption. We are a mid-size player with a supportive, entrepreneurial spirit that works with a market-leading brand in every sector, while our parent organization Infosys is a top-5 powerhouse IT brand that is outperforming the market and experiencing rapid growth.</p>
<p>Our consulting business is annually recognized as one of the UK&#39;s top firms by the Financial Times and Forbes due to our client innovations, our cultural diversity, and dedicated training and career paths we offer to our consultants. We are committed to fostering an inclusive work culture that inspires everyone to deliver their best.</p>
<p style="margin-top:24px;font-size:13px;color:#666;">XML job scraping automation by <a href="https://yubhub.co">YubHub</a></p>]]></Description>
      <Jobtype>full-time</Jobtype>
      <Experiencelevel>senior</Experiencelevel>
      <Workarrangement>hybrid</Workarrangement>
      <Salaryrange></Salaryrange>
      <Skills>Cybersecurity, Risk Management, Regulatory Compliance, NIST CSF, Cyber Due Diligence Assessments, Cyber Risk Management, Incident Response Plans, Crisis Management Exercises, Certifications, Target Operating Models, RACI matrices, Cyber Security Roadmaps, Post-Incident Reviews, Cyber Threat Intelligence Reports, Cyber Compliance Programs, Cyber Risk Assessments, Awareness Trainings, Identity &amp; Access Management, Privileged Access Management, German, English, Stakeholder Management, Problem-Solving, Resilience, Communication, Project Management, Business Analysis, Enterprise Architecture, Cyber Security, IT Governance, IT Cost Optimization, Efficiency Improvement, Innovation Promotion</Skills>
      <Category>IT</Category>
      <Industry>Consulting</Industry>
      <Employername>Infosys Consulting - Europe</Employername>
      <Employerlogo>https://logos.yubhub.co/view.com.png</Employerlogo>
      <Employerdescription>Infosys Consulting is a globally renowned management consulting firm that works with a market-leading brand in every sector, while its parent organization Infosys is a top-5 powerhouse IT brand.</Employerdescription>
      <Employerwebsite>https://jobs.workable.com</Employerwebsite>
      <Compensationcurrency></Compensationcurrency>
      <Compensationmin></Compensationmin>
      <Compensationmax></Compensationmax>
      <Applyto>https://jobs.workable.com/view/oexxh4mvWPKhUMdVS3q5pd/hybrid-governance%2C-risk%2C-and-compliance-(grc)-sme--(m%2Fw%2Fd)-dach-region-in-munich-at-infosys-consulting---europe</Applyto>
      <Location></Location>
      <Country></Country>
      <Postedate>2026-03-09</Postedate>
    </job>
  </jobs>
</source>