# GRC Principal - Data Privacy and Security

Hiring organization: [Wrapbook](https://career.thegoodapps.co/organizations/wrapbook)

Canonical page: https://career.thegoodapps.co/jobs/cf81027b-34cb-4e29-ac1f-ae378b2b754d

Listed on Wrapbook's own careers site. Applications go to them directly.

- Seniority: Principal
- Location: Remote - US & Canada
- Remote: yes
- Salary: 143000 – 232000 USD per year

## Summary

Lead Wrapbook's data privacy and security governance programs as a principal-level expert, owning SOC audit lifecycles, compliance frameworks, and vendor risk management while advising executives on regulatory strategy. This role suits experienced GRC leaders who have built rigorous programs at fintech or SaaS companies and want to shape multi-year privacy and security direction at a fast-growing AI platform.

_Our summary, not Wrapbook's wording._

## Skills named

Data Governance, Data Privacy Law (GDPR/CCPA), GDPR, PCI DSS

## Required

- 10+ years in GRC, information security, and privacy compliance
- Track record building and scaling rigorous programs at fintech, startup, or payments organization
- Deep expertise in SOC 2, ISO 27001, PCI DSS, GDPR, CCPA, and DSAR operations
- Ownership of SOC audit lifecycles and enterprise risk programs
- Hands-on experience with data governance and privacy compliance
- Project management discipline with cross-functional influence without direct authority
- Experience leveraging AI to automate GRC workloads
- Working fluency in AI/ML governance and evolving regulatory landscape
- High integrity and discretion with sensitive data

## Nice to have

- CISSP, CISA, CISM, CRISC certifications
- CIPP, CIPM, CIPT privacy certifications
- AIGP certification

Apply on Wrapbook's site: https://jobs.ashbyhq.com/wrapbook/ffc622a3-acac-4519-99b7-0551776f30bf/application
