GRC Manager

Nextinsurance66
Kfar Saba, Israel
Hybrid

Who this role is best for

Candidates with GRC experience in regulated tech environments and a background in cloud infrastructure will find this high-impact, cross-functional role in Europe.

Best fit for

  • Candidates with 7+ years in GRC and a track record of leading complex compliance programs
    — “7+ years of experience in GRC, security & regulatory compliance
  • Professionals with experience in cloud-native environments like AWS and SaaS platform readiness
    — “Experience working in AWS native environments delivering cloud based products

Things to consider

  • The role requires direct engagement with engineering and product teams for compliance integration
    — “Partner with Engineering, Product, Security, Privacy and Legal
  • Candidates must be prepared to interface with both European and group-level stakeholders
    — “Serve as a key GRC interface with Group and European stakeholders

How to stand out

  • Highlight experience in translating complex regulation into technical controls
    — “Translate requirements from DORA, GDPR, the EU AI Act
  • Showcase your ability to build new GRC programs from the ground up
    — “Proven ability to build programs, not just operate existing processes
  • Emphasize your hands-on experience with AI and automation in compliance contexts
    — “Experience using AI, automation, or data-driven approaches
  • Demonstrate leadership in cross-functional teams with examples from prior roles
    — “Proven managerial experience, including leading, coaching, and developing team members
  • Show how you’ve supported platform replication and SaaS-readiness in prior roles
    — “Support platform replication and SaaS-readiness activities
Pace · SteadyCollaboration · HighAutonomy · MediumDecision Impact · Company

Derived from job-description analysis by Serendipath's career intelligence engine.

What success looks like

  • build and lead the GRC domain
  • translate regulatory requirements into practical governance
  • embed compliance and risk requirements into platform design
  • support platform replication and SaaS-readiness
  • serve as a key GRC interface
Typical background
7+ years of experience in GRC, security & regulatory complianceproven managerial experienceexperience in regulated technology environments

Skills & requirements

Required

GRCSecurity & Regulatory ComplianceOperational ResiliencePrivacy GovernanceEvidence Based Audit ReadinessDORAGDPREU AI ActERGO Group StandardsCloud Based ProductsRegulated Financial ServicesFintech

Preferred

AWS Native EnvironmentsCloud SecurityData ProtectionAI GovernanceThird-party DependenciesIncident ManagementLoggingMonitoringAccess ControlsAuditability

Stack & domain

GRCSecurity & Regulatory ComplianceOperational ResiliencePrivacy GovernanceEvidence Based Audit ReadinessAWS Native EnvironmentsCloud Based ProductsRegulated Financial ServicesFintechDORAGDPREU AI ActERGO Group StandardsPlatform GovernanceCyber Security RiskData ProtectionAI GovernanceThird-party DependenciesIncident ManagementLoggingMonitoringAccess ControlsAuditabilityLeadershipTeam ManagementCoachingCommunicationProblem-solvingProject ManagementTeam BuildingRegulatory ComplianceTechnology PlatformsFinancial Services

About the role

Original posting from Nextinsurance66 via Greenhouse

Location: Kfar Saba, IL (hybrid)

ERGO NEXT's mission is to help entrepreneurs thrive. We’re doing that by building the only technology-led, full-stack provider of small business insurance in the industry, taking on the entire value chain and transforming the customer experience. 

Simply put, wherever you find small businesses, you’ll find ERGO NEXT.

Since 2016, we’ve helped hundreds of thousands of small business customers across the United States get fast, customized and affordable coverage. We’re backed by industry leaders in insurance and tech, and we still have room to grow - that’s where you come in.

NEXT is expanding its role within the ERGO Group as a software and SaaS platform provider. As our platform capabilities grow beyond the US and into Europe, we are building a dedicated GRC capability to support European regulatory, security, privacy, operational resilience, and assurance expectations.

We are looking for a proactive, experienced GRC Manager to build and lead our Europe Platform Governance domain. This person will work at the intersection of GRC, engineering, product, security, privacy, legal, and ERGO Group stakeholders. The role requires someone who can translate complex regulatory and group requirements into practical controls, partner effectively with technical teams, and build scalable governance processes from the ground up.

This is a high-impact role for a self-starter who is comfortable with ambiguity, experienced in regulated technology environments, and capable of building new programs while maintaining strong execution discipline.

What you’ll do

Build and lead the GRC domain supporting NEXT’s expansion into ERGO Europe.

Translate requirements from DORA, GDPR, the EU AI Act, ERGO Group standards, and related regulatory expectations into practical governance, controls, and evidence processes.

Partner with Engineering, Product, Security, Privacy and Legal to embed compliance and risk requirements into platform design and software delivery.

Support platform replication and SaaS-readiness activities, including governance over cyber security risk, operational resilience, data protection, AI governance, third-party dependencies, incident management, logging, monitoring, access controls, and auditability.

Serve as a key GRC interface with Group and European stakeholders.

Develop and maintain regulatory readiness roadmaps, control mappings, gap assessments, risk registers, issue remediation plans, and executive reporting.

Design scalable evidence collection and assurance processes to support audits, reviews, regulatory inquiries, and internal governance.

Coach and support GRC team members contributing to the Europe domain.

Help mature NEXT’s GRC function as the company grows from a US-focused platform into a broader group technology provider.

What we’re looking for

7+ years of experience in GRC, security & regulatory compliance, operational resilience, privacy governance, and evidence based audit readiness.

Proven managerial experience, including leading, coaching, and developing team members while driving accountability and execution across complex GRC initiatives.

Experience working in AWS native environments delivering cloud based products and  regulated financial financial services, and fintech.

Strong understanding of EU regulatory expectations relevant to technology platforms, including DORA, GDPR, and the EU AI Act, with the ability to translate complex regulatory requirements into actionable technical and operational controls.

Proven ability to build programs, not just operate existing processes.

Experience working directly with engineering, product, security, cloud infrastructure, DevOps, legal, privacy, and audit stakeholders.

Strong stakeholder management skills, including experience working with group-level, enterprise, or parent-company functions.

Experience using AI, automation, or data-driven approaches to improve productivity, problem solving, regulatory analysis, evidence management, reporting, or operational efficiency.

Excellent written and verbal communication skills.

Strong prioritization, execution, and follow-through.

Unstoppable Qualities

A proactive self-starter with strong ownership, execution discipline, and the ability to drive outcomes without waiting for perfect instructions or formal authority.

Curious and hands-on with AI, automation, and emerging technologies, using them responsibly to improve productivity, problem solving, decision-making, and process efficiency while helping elevate the people around them.

Note on Fraudulent Recruiting

We have become aware that there may be fraudulent recruiting attempts being made by people posing as representatives of ERGO NEXT Insurance. These scams may involve fake job postings, unsolicited emails, or messages claiming to be from our recruiters or hiring managers. 

Please note, we do not ask for sensitive information via chat, text, or social media, and any email communications will come from the domain @next-insurance.com or @nextinsurance.com. Additionally, Next Insurance will never ask for payment, fees, or purchases to be made by a job applicant. All applicants are encouraged to apply directly to our open jobs via the careers page on our website. Interviews are generally conducted via Zoom video conference unless the candidate requests other accommodations. 

If you believe that you have been the target of an interview/offer scam by someone posing as a representative of Next Insurance, please do not provide any personal or financial information. You can find additional information about this type of scam and report any fraudulent employment offers via the Federal Trade Commission's website (https://consumer.ftc.gov/articles/job-scams), or you can contact your local law enforcement agency. 

Don’t meet every single requirement? Studies have shown that some underrepresented people are less likely to apply to jobs unless they meet every single qualification. At ERGO NEXT, we are dedicated to building a diverse, inclusive and respectful workplace, so if you’re excited about this role but your past experience doesn’t align perfectly with every qualification in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

One of our core values is 'Play as a Team'; this means making sure everyone has an equal chance to participate and make a difference. We win by playing together. ERGO Next Insurance is an equal opportunity employer and prioritizes building a diverse and inclusive workplace. We provide equal employment opportunities to all employees and applicants of any type and do not discriminate based on race, color, religion, national origin, gender, age, sexual orientation, physical or mental disability, genetic information or characteristic, gender identity and expression, veteran status, or other non-job-related characteristics or other prohibited grounds specified in applicable federal, state, and local laws. ERGO Next's policy is to comply with all applicable laws related to nondiscrimination and equal opportunity and will not tolerate discrimination or harassment based on any of these characteristics. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. 

Source: Nextinsurance66 careers (Greenhouse)

Similar roles