Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance, Risk & Compliance Manager

F&I Sentinel

LOCATION: Remote

REPORTS TO: Corporate Counsel

The GRC Manager will operate at the intersection of Legal, IT, Security, and Business Operations, serving as a central point of coordination for governance, risk, and compliance initiatives across the organization. The Governance, Risk & Compliance Manager will work closely with Corporate Counsel to align compliance strategy with regulatory obligations and legal risk considerations.

The GRC Manager partners heavily with IT and Information Security teams to translate technical controls and security frameworks into business-aligned processes and documentation. Collaboration with Product and Engineering may be required to ensure that data handling, system controls, and security practices align with compliance requirements.

In addition, the position supports client-facing teams including Sales, Account Management, and Customer Success by responding to due diligence requests, security questionnaires, and audit inquiries, helping to build trust with lender clients and external stakeholders. The role will also coordinate with Operations and Data functions, to support data quality auditing and integrity initiatives.

Externally, the GRC Manager will interact with third-party auditors, vendors, and client stakeholders to support audits, vendor risk management, and compliance assurance activities.

THE OPPORTUNITY: The GRC Manager will mature and scale the company's GRC capabilities during a period of growth. This role offers the opportunity to build structure, drive process improvements, and enhance the company's compliance posture in a highly regulated environment.

The position plays a critical role in establishing and maintaining audit readiness (including SOC 2 Type II), strengthening vendor risk management practices, and improving the efficiency and quality of client-facing due diligence responses. The individual will help translate evolving regulatory and security requirements into actionable, business-aligned controls that support both internal operations and external trust.

This is a highly cross-functional and visible role with the opportunity to influence how compliance, risk, and security practices are operationalized across the organization. The ideal candidate will bring both strategic thinking and hands-on execution, helping F&I Sentinel continue to build credibility with financial institution partners while supporting scalable, sustainable growth.

Specifically, the GRC Manager will have responsibility in:


Audit & Certification
  • Drive SOC 2 Type II audit readiness end-to-end: evidence collection, auditor coordination, and remediation tracking
  • Execute internal audit procedures across operations for accuracy, completeness, and compliance
  • Document audit findings, develop corrective action plans, and track remediation to closure
  • Maintain GRC documentation including control narratives, procedures, and supporting artifacts for continuous audit readiness
  • Support BCP, DR, and IR programs, including tabletop exercises and plan testing
Due Diligence & Security Questionnaire Management
  • Own and optimize the end-to-end Due Diligence Questionnaire (DDQ) response workflow, drafting, reviewing, and delivering responses to security questionnaires, Request For Proposals (RFP), and vendor assessments that build trust with lender clients
  • Partner with IT, infosec, operations, and leadership to serve as the liaison between technical teams and client-facing engagements
  • Exercise sound judgment in determining how to frame sensitive topics and how to present the company's security posture accurately
  • Develop efficiencies through process improvements, implementation of automation and tools, and standardizing responses
Vendor Risk Management
  • Manage and continuously improve the vendor risk program, maintaining a current inventory of third-party providers with data access or critical dependencies
  • Apply and refine risk tiering based on data sensitivity, business impact, and regulatory exposure
  • Conduct periodic reviews of critical and high-risk vendors; track remediation of findings and ensure contractual compliance
  • Maintain vendor risk documentation that supports audit readiness and DDQ responses
Risk Management Support
  • Assist in maintaining the risk register; identify emerging risks and document mitigating controls
  • Assist with risk assessments; operationalize mitigation strategies and validate controls
Data Quality Auditing
  • Partner with the Data Analyst to define data quality audit criteria and compliance-focused reporting requirements
  • Review data quality results for accuracy and completeness; identify and escalate data integrity issues
  • Design data checks and guardrails that ensure operational data integrity across products
Professional Qualifications:

The following knowledge, skills, education, and experiences are required:
  • 3-6+ years of professional working experience
  • Hands-on experience with SOC 2 audits, either managing or as a key contributor
  • Working knowledge of security frameworks such as NIST CSF, ISO 27001, FTC Safeguards Rule, or similar
  • Proven ability to draft and manage security questionnaire responses for enterprise clients
  • Strong written communication skills - you will be writing client-facing materials that reflect the company's professionalism
  • Ability to operate independently, manage multiple workstreams, and escalate appropriately
  • Comfort working in a fully remote environment with a distributed team
The following knowledge, skills, and experiences are preferred, but not required:
  • Experience in fintech, insurtech, automotive finance, or another regulated industry
  • Familiarity with F&I (Finance & Insurance) products or the automotive dealer ecosystem is a strong plus
  • Exposure to vendor/third-party risk management programs
  • Understanding of basic data privacy requirements (CCPA, state privacy laws)
  • Experience with data quality analysis and reporting tools
  • Bachelor's degree in Information Systems, Business, Accounting, Risk Management, or a related field; relevant certifications such as CISA, CRISC, or GRCP are a plus
Why Consider Joining FIS now?
  • The business is poised for accelerated growth with increasing demand from financial institutions and regulatory scrutiny creating a strong need for scalable GRC capabilities
  • Opportunity to build and shape foundational GRC processes and programs, rather than inherit a fully mature system
  • High visibility role with direct impact on client trust, audit outcomes, and enterprise risk posture
  • Exposure to a unique intersection of fintech, automotive finance, and regulatory compliance
  • Collaborative, cross-functional environment with access to leadership and influence on strategic decisions
  • Hybrid/remote culture offering flexibility and autonomy
  • Competitive compensation and benefits, with opportunity for growth as the company scales
The following behaviors are required:
    • Ownership mindset: takes full accountability for outcomes, follows through, and proactively addresses gaps
    • Detail-oriented and quality-driven: maintains high standards for documentation, accuracy, and audit readiness
    • Sound judgment and discretion: handles sensitive security and compliance information appropriately
    • Strong written communicator: translates complex technical and regulatory concepts into clear, client-ready language
    • Cross-functional collaborator: builds trust and works effectively across Legal, IT, Security, and business teams
    • Process-oriented and disciplined: creates repeatable, scalable workflows and continuously improves them
    • Risk-aware and pragmatic: balances regulatory requirements with business practicality and speed
    • Self-directed and organized: manages multiple priorities independently in a remote environment
    • Continuous learner: stays current on evolving regulations, frameworks, and industry best practices
    • Problem-solver: identifies root causes, proposes solutions, and drives issues to resolution
    • Client-focused: understands the importance of external trust and represents the company professionally in due diligence interactions
    • Adaptable and resilient: operates effectively in a growing, evolving organization with shifting priorities.

F&I Sentinel is an Equal Opportunity Employer. Employment decisions are made without regard to race, color, religion, national origin, gender, sexual orientation, gender identity, age, physical or mental disability, genetic factors, military/veteran status, or other characteristics protected by law.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Governance, Risk & Compliance Manager in Winter Park, FL vacancy
  • $110k - $145k

     ...Description Job Description: Title: Risk Manager - Insurance Fully Remote: applicants in Eastern or Central Time Zone...  ...solutions with business objectives while ensuring regulatory compliance, cost efficiency, and effective claims management. Key... 
    Suggested
    Work at office
    Remote work

    Insurance Office of America

    Winter Park, FL
    18 hours ago
  • $80k - $100k

     ...Cybersecurity Compliance Analyst - Orlando, FL Salary: $80,000-$100,000 base + 25% bonus...  ...Compliance Analyst to support governance, risk, compliance, and audit readiness initiatives...  ...controls and resolve compliance gaps • Help manage policies, documentation, ownership,... 
    Suggested
    Relocation package
    Shift work

    Crawford Thomas Recruiting

    Orlando, FL
    23 hours ago
  •  ...Risk Manager Orlando, Florida (Onsite) 6 months Contract About the Job As a Risk Manager you will lead a team on cybersecurity...  ...specifically in Risk Management ~ Senior risk and compliance SME needed for $10B Readiness Project ~ Must be available... 
    Suggested
    Full time
    Contract work
    Work at office

    Suncap Technology

    Orlando, FL
    4 days ago
  •  ...something we say, it's our promise to you. Position Summary: Risk Manager II leads risk management activities for assigned areas,...  ...initiatives that support organizational risk reduction and compliance Responsibilities Essential Functions: • Leads the administration... 
    Suggested
    Local area

    Orlando Health

    Orlando, FL
    4 hours ago
  • $110k - $145k

     ...Insurance Office of America is offering a Risk Manager position aimed at identifying and mitigating organizational risks through effective insurance management. This fully remote role requires comprehensive risk assessment skills and a strong educational background in... 
    Suggested
    Work at office
    Remote work

    Insurance Office of America

    Orlando, FL
    7 hours ago
  •  ...Policy Governance Manager A leading financial services company is in search of Policy Governance...  ...Policy Governance and Management risk within the Firm. Proactively ensure the...  ...operational risk management, legal, regulatory compliance, and/or technology risk and control... 
    Contract work
    Work at office

    My3Tech

    Lake Mary, FL
    2 days ago
  •  ...The Risk Manager Nurse will be responsible for Risk Management activities that may include, but may not be limited to, those relating to resident/patient care, clinical practice, medical staff, physical plant and property, safety hazards, and employee safety. Additionally... 
    Daily paid
    Shift work
    Night shift
    Weekend work

    Lake Bennet Center for Rehabilitation and Healing

    Ocoee, FL
    2 days ago
  • $120k - $150k

     ...Risk Manager / Senior Risk Analyst Location: Atlanta, Orlando or Tampa (Hybrid) — Remote flexibility available for the right candidate Division : Dealer General Warranty About CV Family & Dealer General Warranty The CV Family Organization is a privately... 
    Contract work
    Remote work

    Integro Professional Services, LLC

    Orlando, FL
    1 day ago
  •  ...Public Risk Account Manager Orlando, Florida, United States Foundation Risk Partners, one...  ...including municipalities, school districts, government entities, and public institutions....  ..., property) Support clients in compliance with local, state, and federal regulations... 
    Local area

    Acentria Insurance

    Orlando, FL
    4 days ago
  •  ...Quality/Risk Director Career Opportunity Highly regarded and valued for your Quality...  ...you will oversee a hospital-wide quality management program, collaborating with various...  ...Director you've always aspired to be Ensure compliance with regulatory agencies, accrediting... 
    Full time
    Part time
    Local area
    Flexible hours

    Encompass Health

    Altamonte Springs, FL
    1 day ago
  • $85k - $110k

     ...SUMMARY Partner is seeking a Full Time Construction Risk Management Project Manager to perform all Project Management responsibilities...  ...Document and Cost Review Contractor Evaluation Code Compliance Inspection Construction Progress Monitoring Pay... 
    Full time
    For contractors
    Local area

    Partner Engineering and Science

    Altamonte Springs, FL
    6 hours ago
  •  ...business partners, anticipate emerging risks, and contribute to building a...  ...organization. Specific Job Summary The Manager, Income Tax Accounting & Compliance, executes U.S./U.S.V.I. and/or non...  ...filings. Maintain strong tax governance, controls, and documentation.... 
    Work experience placement
    Worldwide
    Flexible hours

    Marriott Vacations Worldwide

    Orlando, FL
    6 hours ago
  • $145k - $170k

     ...Description Pathstone is a growing wealth management firm serving ultra-high net worth...  ...across key areas such as tax strategy, risk management guidance, wealth and estate planning...  ..., philanthropic planning, and family governance helping clients navigate complexity and... 
    Full time
    Work at office
    Flexible hours

    PathStone

    Winter Park, FL
    3 days ago
  •  ...seeking a Associate Director, Technology Risk and Product Delivery Compliance to join our Audit Technology Alliance team...  ...identifying and resolving risk, legal, and data governance issues; support the business and project management teams with practical advice to manage and... 
    H1b
    Work at office
    Local area

    KPMG

    Orlando, FL
    3 days ago
  •  ...United Psychiatric Care Job Title: Inhouse Counsel / Manager Legal, Compliance & Risk Management / Outpatient Clinics / Full-time Employment /...  ...Experience advising on business transactions, corporate governance, and compliance. Real Estate Law: Experience... 
    Full time
    Shift work

    Harmony United Psychiatric Care

    Altamonte Springs, FL
    a month ago
  • Chief Clinical Officer, CNO, CCO, COO Full-time Company Description Clients are general acute care hospitals nationwide. Southern Medical Recruiters is a healthcare/hospital recruitment organization with hospitals clients nationwide. seeking the best in healthcare...
    Full time
    Work at office
    Relocation package

    Southern Medical Recruiters

    Orlando, FL
    5 hours ago
  •  ...system by owning the operating model across governance, financial discipline, and execution...  ...visibility into portfolio performance, including risks, dependencies, and cross-pillar...  ...consolidation, forecasting, and variance management Lead the Annual Operating Plan (AOP)... 
    Immediate start
    Remote work
    Worldwide

    Wesco

    Orlando, FL
    2 days ago
  •  ...JOB SUMMARY The Manager, Pricing and Deal Strategy serves as a key partner to Sales, Finance, and Executive Leadership, driving deal profitability, pricing governance and is responsible for developing and implementing pricing strategies and governance aligned with... 
    Work experience placement
    Immediate start
    Flexible hours

    Outcomes

    Orlando, FL
    1 day ago
  •  ...Substation Program Manager - Strategic Growth & Delivery Together, we own our company, our future, and our shared...  ...material, and change management issues. Manage project risks, safety, quality, and compliance. Lead commercial recovery and claims management when... 
    Contract work
    Work experience placement
    Work at office
    Flexible hours

    Black & Veatch

    Orlando, FL
    5 hours ago
  •  ...motivated, detail-oriented Privacy and Compliance Program Manager to support the operational aspects...  ..., including privacy impact and risk assessments, data subject requests, and...  ...Advanced certifications in privacy or data governance are a plus but not required (CIPP,... 
    Contract work
    Temporary work
    Seasonal work
    Worldwide
    Flexible hours

    Travel + Leisure

    Orlando, FL
    1 day ago
  •  ...Market Compliance Manager (FL) Orlando, Florida, United States The Role The Market Compliance Manager provides support for the Retail...  ...for assigned programs and/or geographies. Conducts risk assessments to identify potential compliance gaps, including... 
    Relocation

    Green Thumb Industries INC

    Orlando, FL
    3 hours ago
  •  ...Code Compliance Inspector This position involves project management of code compliance projects, including reviewing plans, providing technical support, conducting inspections, monitoring project process for performance and budgetary conditions, proposal preparation... 

    ECS Limited

    Orlando, FL
    2 days ago
  •  ...Serco is seeking a Senior Manager for Trade Compliance to work 100% remotely. This role involves driving trade compliance efforts with a focus on U.S. defense customers. Responsibilities include acting as an Empowered Official, managing export license applications, and... 
    Remote work

    Serco

    Orlando, FL
    22 days ago
  • $250k

     ...Portfolio Manager Salary: $250,000 + Bonus + Equity Location: Orlando, FL (Relocation...  ...interaction across investment, compliance, and client teams This Portfolio Manager...  ...allocation, and rebalancing activities Oversee risk management including liquidity,... 
    Relocation

    CFS

    Winter Park, FL
    3 days ago
  •  ...ACO Regulatory Strategy Manager - Remote Join to apply for the ACO Regulatory Strategy Manager - Remote role at Genuine Health Group...  ...CMS ACO programs, including regulatory changes, deadlines, and compliance requirements. Collaborate with functional leads to ensure all... 
    Full time
    Remote work
    Flexible hours

    Genuine Health Group

    Orlando, FL
    3 days ago
  • $107.03k - $208.71k

     ...Molina Healthcare in Orlando, Florida, is seeking a leader for its government contracts team to manage state and federal program compliance for Medicaid and Medicare. The ideal candidate will have substantial experience in government healthcare programs and will be responsible... 

    Molina Healthcare

    Orlando, FL
    3 days ago
  •  ...Description Summary The Facility Compliance Manager is responsible for leading, supervising...  ..., field staff, subcontractors, and government counterparts. Duties and...  ...resolve inspection issues, deficiencies, or risks in a timely manner ADA and OSHA... 
    Contract work
    For contractors
    For subcontractor
    Work at office
    Remote work
    Worldwide

    Loyal Source

    Orlando, FL
    3 hours ago
  • $165k - $220k

     ...Regulatory Affairs leads global regulatory strategy, reporting, compliance, labeling, and regulatory intelligence to support product...  ...interactions, ensure highquality submissions, and manage regulatory risk across the product lifecycle. Responsibilities include preparation... 
    Temporary work
    Work visa

    Bausch + Lomb

    Orlando, FL
    6 hours ago
  •  ...Consulting Manager, Asset Investment Planning Location: Overland Park, KS, US Charlotte...  ...primarily on asset investment planning, risk assessment, value model development and business...  ..., and motor vehicle records search, in compliance with any applicable laws and regulations.... 
    Full time
    Part time
    Work experience placement
    Work at office
    Relocation
    Visa sponsorship
    Flexible hours

    Black & Veatch

    Orlando, FL
    18 hours ago
  •  ...A Snapshot of Your Day As Strategic Portfolio Manager, you will shape and steer the Digital Grid portfolio within Siemens Energy Grid Technologies. You will operate at the intersection of strategy, technology, and execution: owning and scaling high-impact strategic... 
    Local area
    Visa sponsorship

    Siemens Energy

    Orlando, FL
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance, Risk & Compliance Manager. Be the first to apply!