Senior IS&T Governance Partner

Parloa

$150K — $170K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 6-10+ years in GRC / Information Security across tech environments
  • Expertise in security standards like ISO 27001, SOC II, GDPR
  • Strong communicator able to engage with diverse teams
  • Hands-on with governance processes and audits
  • Experience in designing scalable governance systems
  • Ability to balance regulatory compliance with business goals
  • Continuous learner in emerging regulations and best practices.

Responsibilities

  • Act as a core member of a distributed IS&T Governance team
  • Document and review product and operational changes
  • Support compliance processes and customer engagements
  • Provide guidance on regulatory topics to stakeholders
  • Promote information security best practices organization-wide
  • Lead regulatory framework preparations and maintenance
  • Drive compliance controls into daily workflows.

Benefits

  • Join a fast-growing Conversational AI startup
  • Immersive onboarding experience with company culture
  • Hybrid work environment promoting team connections
  • Training budget for professional development
  • Flexible working hours and unlimited PTO
  • Regular social team events and activities
  • Convenient office location in NYC with amenities.
Full Job Description
About the role:

As a Senior IS&T Governance Partner at Parloa, you will play a key role in safeguarding the trust and credibility of our platform by ensuring the highest standards of governance, security, and regulatory compliance. You will be entrusted with one of the organization's most critical responsibilities: enabling Parloa to scale rapidly while remaining compliant, secure, and audit-ready at all times. at Parloa, you will play a key role in safeguarding the trust and credibility of our platform by ensuring the highest standards of governance, security, and regulatory compliance. You will be entrusted with one of the organization's most critical responsibilities: enabling Parloa to scale rapidly while remaining compliant, secure, and audit-ready at all times.

Our IS&T Governance Department is building a world-class framework for governance, assurance, and risk management. We are establishing a mature structure of internal controls, reviews, and audits to certify our products and operations against the highest international standards, including ISO 27001, ISO 22301, PCI DSS, HIPAA, and other relevant regulatory and industry frameworks.

Today, our team consists of four specialists covering Risk Management, Compliance, Business Continuity, and Information Security Management. We are now expanding this function to scale with the company's growth and increasing regulatory and security demands.

This is a rare opportunity to become an early member of Parloa's internal Governance function and play a pivotal role in shaping how security, compliance, and risk management are embedded into a high-growth, AI-driven organization. You will help ensure that Parloa not only complies with all applicable regulatory and contractual obligations, but set

Areas of ownership:
  • Act as a core member of the remotely distributed IS&T Governance team, fostering a strong culture of security and compliance awareness across planning, development, and operational activities.
  • Ensure that changes in product, development, and operational processes are properly documented, risk-assessed, and reviewed in a timely and structured manner.
  • Partner with the Commercial organization by supporting security and compliance questionnaires, contributing to contract and DPA reviews, and participating in customer calls as a trusted subject matter expert.
  • Manage and respond to incoming requests related to compliance, information security, and regulatory topics, providing clear, pragmatic, and actionable guidance to internal stakeholders.
  • Serve as the internal authority on information security best practices, continuously promoting industry standards and driving their consistent adoption across the organization.
  • Lead and support the preparation, execution, and continuous maintenance of security certifications and regulatory frameworks (e.g., ISO 27001, ISO 22301, SOC 2, PCI DSS, HIPAA).
  • When new certifications or regulatory frameworks are required, take ownership of understanding the applicable security and legal requirements in close alignment with Legal and the DPO, and translate them into hands-on guidance for engineering, product, and operations teams.
  • Drive the practical implementation and adoption of compliance controls by embedding governance and security requirements into daily workflows and technical designs.
  • Contribute to the definition and continuous improvement of governance processes, policies, and standards to ensure scalability and long-term audit readiness.
  • Support risk assessments, DPIAs, and control design activities for new products, features, and architectural changes..


Who you are:
  • A seasoned GRC / Information Security professional with 6-10+ years of experience across information security, compliance, risk management, and regulatory frameworks in technology-driven environments.
  • Deeply experienced in security and compliance standards such as ISO 27001, SOC II, FedRAMP, PCI DSS v4, ISO 42001, and data protection regulations (e.g., GDPR, CCPA), with a strong understanding of how they apply in modern SaaS and AI platforms.
  • A trusted advisor who can confidently engage with engineers, product leaders, legal teams, auditors, and enterprise customers, translating complex regulatory requirements into clear, practical actions.
  • A hands-on operator who is comfortable moving between strategic governance design and detailed control implementation, audits, and evidence generation.
  • A builder of scalable governance who designs processes and controls that enable speed and innovation rather than slow them down.
  • A culture carrier who naturally embeds security, privacy, and compliance thinking into everyday decision-making across the organization.
  • Analytical and pragmatic, balancing regulatory rigor with business reality to deliver solutions that are both compliant and operationally efficient.
  • Resilient under pressure, remaining structured, credible, and decisive in audits, customer security reviews, and high-stakes compliance discussions.
  • A continuous learner who stays current on emerging regulations, security standards, and best practices in cloud security, AI governance, and data protection.


Our recruiting process:

Talent Acquisition → Hiring Manager → Technical Interview(s) → Bar Raiser

OTE Salary Range - $150,000 - $170,000 + Equity
Range includes Bonus

Salary Range

$150,000-$170,000 USD

Parloa is committed to upholding the highest data protection standards for our clients' and employees' data. All our employees are instrumental in ensuring the utmost care, GDPR, and ISO compliance, including ISO 27001, in handling sensitive information.

Similar Jobs

More Jobs at Parloa

More Information Technology Jobs

Find similar Senior IS&T Governance Partner jobs: