This role has closed. Jane Street has taken the posting down.
hirly last saw it live on 8 September 2026. See similar open roles below, or browse all jobs in New York.
Jane Street
Senior Cybersecurity Governance, Risk & Compliance Specialist (OCaml Experience)
New York, New York, United States
Similar open jobs
- Global Cybersecurity Governance AnalystUL Solutions · Northbrook, IL, United States; Chicago, IL, United StatesFirst seen 2d ago
- Director of Cybersecurity Governance, Risk and ComplianceUtaustin · UT MAIN CAMPUSFirst seen 8d ago
- Senior Cybersecurity Governance & TPRM SpecialistCapgemini · Milano, ITFirst seen 2d ago
- Virtual Chief Information Security Officer (vCISO) - OT & Cybersecurity GovernanceZensar · IndiaFirst seen 2d ago
- EU Cybersecurity Governance, Risk and Compliance Lead (m/w/d)Emerson · BERLIN, GermanyFirst seen 2d ago
- Technology Risk and Controls Lead (Cybersecurity Governance)JPMorgan Chase · Dublin, IrelandFirst seen 2d ago
- Technology Risk and Controls Lead (Cybersecurity Governance)JPMorgan Chase · LuxembourgFirst seen 2d ago
- Junior Consultant - Cybersecurity Governance, Risk & ComplianceEY · Bucharest, ROFirst seen 2d ago
- Cybersecurity Governance Specialist (f/m/d) - Software Development (Agile)Siemens AG · Nürnberg, Mittelfranken, Bayern, GermanyFirst seen 3d ago
- Cybersecurity Governance, Risk & Compliance (GRC) AnalystItron · Budapest, Hungary (Local Office)First seen 6d ago
- Cybersecurity Governance, Risk & Compliance (GRC) AnalystItron · Budapest, Hungary (Local Office)First seen 6d ago
- Engineer II, Cybersecurity Governance, Assurance & Data ProtectionCircles · SingaporeFirst seen 22d ago
- Cybersecurity Governance Analyst Agero · RemoteFirst seen 26d agoremote
hirly's read of this role
- Seniority
- Senior
- Country
- US
- Work mode
- On-site / unstated
- First seen by hirly
- 8 Sept 2026
Derived automatically from the posting.
the posting
Jane Street Group, LLC has multiple openings for the position of Senior Cybersecurity Governance, Risk & Compliance Specialist in New York, NY.
The position duties are as follows: Lead strategic cybersecurity vendor risk management initiatives to enhance the firm's vendor risk posture and regulatory compliance framework. Day-to-day job duties include:
Architect and implement comprehensive cybersecurity vendor risk governance frameworks that align with regulatory requirements and establish enterprise-wide vendor risk tolerance thresholds.
Provide strategic leadership in vendor security risk analysis, mentoring junior team members, and establishing standardized methodologies for vendor due diligence, security assessments, and ongoing monitoring that integrate into the organization's overall enterprise risk management strategy.
Partner with procurement, legal, and business stakeholders to lead vendor assessments across the vendor lifecycle—from initial due diligence and onboarding through periodic reassessments, continuous monitoring, incident response coordination, and offboarding—designing risk mitigation solutions that balance business enablement with regulatory compliance.
Oversee vendor incident management and breach response protocols, establishing clear escalation procedures and coordinating with vendors during security events to ensure timely remediation and appropriate stakeholder communication.
Lead operational efficiency initiatives by implementing automated vendor compliance monitoring solutions, transforming manual assessment processes into scalable governance workflows, and establishing key risk indicators and dashboards that enable proactive risk management and decision-making.
The position requires a 3 or 4 year Bachelor's degree in Finance, Engineering, Computer Science, or a related scientific or quantitative field or foreign equivalent plus three (3) years of progressively responsible experience as a cybersecurity GRC analyst, or similar occupation at a financial services or technology firm. Experience must include:
Two (2) years of experience applying knowledge of vendor-related regulatory requirements related to global regulatory bodies - including FCA, DORA, SEBI, SEC, and Finra - to the vendor assessment and onboarding process;
One (1) year of experience managing vendor risk governance programs, including stakeholder management across technical and business teams;
One (1) year of experience developing vendor risk frameworks and conducting risk assessments of third-party integrations;
One (1) year of experience leading vendor security assessments and determining appropriate evaluation scope based on factors such as data sensitivity, system criticality, and operational dependencies; and
One (1) year of experience conducting vendor assessments for a trading environment built primarily in OCaml and Python.
All technical requirements for this role may be subject to employer conducted testing to assess minimum proficiency.
Part time telecommuting may be permitted with manager approval.
Ref. SCGRCS26