Sr. Team Manager, Compliance

Box Box · Enterprise · Chicago, IL +1 · Compliance & Risk

This role is for a Sr. Team Manager focused on Compliance within Box, an enterprise AI company. The manager will lead a team responsible for delivering and improving compliance programs like PCI, ISO 27000 series, and SOC. Key responsibilities include monitoring compliance issues, providing guidance on product features and infrastructure, supporting audits, and driving process improvements. The role requires strong people leadership, deep compliance experience, and information security knowledge, with a focus on building scalable and efficient processes.

What you'd actually do

  1. Lead team responsible for successfully delivering Compliance programs such as PCI, ISO 27000 series, SOC, etc.
  2. Monitor and identify compliance issues and follow-up
  3. Provide compliance guidance on new product features, deviations, and changes in the infrastructure
  4. Support and drive regulatory and customer audits
  5. Drive improvements in existing processes and develop new, innovative, and efficient solutions

Skills

Required

  • people management
  • compliance experience
  • information security knowledge
  • planning and execution of compliance certifications
  • building scalable and efficient processes
  • corrective actions
  • product compliance
  • compliance framework
  • communication skills
  • technical guidance
  • BS degree in Business or Management Information Systems or related field OR equivalent work experience
  • 6+ years experience in an equivalent technology risk and compliance related role
  • 2+ years of direct people leadership experience
  • experience working with and implementing GRC tools and processes
  • familiar with cloud computing (GCP and AWS a plus)
  • extensive knowledge of 2 or more of the following compliance frameworks (PCI, SOC, ISO 27001, NIST 800-53)
  • excellent written, verbal communication and presentation skills

Nice to have

  • QSA, CISA, CIA, CISSP or other related certifications
  • Big 4 experience or Management Consulting experience
  • AI-first company mindset

What the JD emphasized

  • deep Compliance experience
  • information security knowledge
  • compliance certifications
  • compliance framework
  • product compliance
  • regulatory and customer audits
  • compliance posture