MRI Software
Manager, Governance, Risk & Compliance

How your CV stacks up
Upload your CV to see how well it fits this job role
?%
MRI Software’s Legal & Compliance Team
MRI Software’s Legal & Compliance team plays a critical role in protecting our organization and stakeholders through robust governance frameworks and proactive risk management. We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a trusted partner to internal teams across the organization, driving enterprise-wide compliance initiatives and ensuring MRI meets its regulatory obligations.
In this role, you’ll report directly to the SVP of Legal and Compliance and have a seat at the table on strategic decisions affecting the business. This role offers meaningful impact: you’ll shape the GRC program strategy, mentor a team of analysts and specialists, and help build the infrastructure that supports MRI’s continued growth and success.
Key Responsibilities
- Own and evolve MRI's GRC framework: including policies, procedures, internal controls, and risk appetite documentation, ensuring alignment with business objectives and regulatory requirements
- Lead enterprise-wide risk assessments: work cross-functionally with Engineering, Product, IT, and business units to identify, evaluate, and mitigate operational, regulatory, cybersecurity, and strategic risks
- Monitor the evolving regulatory landscape: including data privacy laws (GDPR, CCPA, state privacy regulations), financial services requirements, and industry standards—and translate regulatory changes into actionable compliance strategies
- Drive compliance certifications: such as SOC 2, ISO 27001, PCI-DSS, managing internal and external audit processes from planning through remediation
- Design and deliver compliance training programs: to promote a culture of accountability and ethical conduct across the organization
- Develop and present executive-level risk and compliance dashboards, metrics, and reports: to senior leadership, the board of directors, and key stakeholders
- Oversee third-party risk management program: including vendor security assessments, contract risk review, due diligence, and ongoing monitoring of critical suppliers
- Lead incident response and investigation efforts: related to compliance breaches or policy violations
- Manage and mentor a team of GRC analysts and specialists
- Champion a compliance-forward culture: by building relationships across the organization and making compliance accessible and practical for all teams
- Partner with Legal, Sales, InfoSec, and Customer Success: to support customer security questionnaires, RFP responses, and due diligence requests
Reasons to use Rodeo
I’m in my final year doing Economics and I don’t know whether to apply for grad schemes now or do a masters first. What do you think?
Honest answer — it depends on where you want to end up. A lot of top grad schemes (Big 4, civil service, banking) don’t need a masters. Let’s look at the ones you’d be competitive for now, and we can decide if a masters actually adds anything.
Also worth knowing: most autumn 2026 applications are open now. Timing matters more than you think.
Start with a chat, not a search bar
Grad scheme, placement, apprenticeship? Not sure what you want yet — that's fine. Your agent talks it through with you and turns "I have no idea" into a shortlist.
Graduate Consultant — 2026 Scheme
Why you're a good match
StrongYour economics background and your summer at a regional bank line up with what PwC looks for on the consulting scheme. Applications close in four weeks.
See breakdownIt searches the market for you
Every day your agent scans the market matching roles against what actually matters to you, not just keywords on a CV.
Why you're a good match
You’ve got the grades and the economics background, and your bank internship is exactly the experience this scheme looks for. Apply soon — deadlines close within the month.
Experience fit
Your summer at the bank plus your econometrics coursework map directly to the day-one responsibilities on this scheme — client modelling, market briefings, and deal support.
Only hits
No noise. No "maybe this fits." Just roles with a clear explanation of why they're right — and where to focus when applying.
Qualifications
- Education: Bachelor's degree in information security, business, law, or a related field; advanced degree (MBA, or Master’s in Cybersecurity/Risk Management) strongly preferred
- Experience: 8+ years of progressive experience in governance, risk, compliance, information security, or internal audit, with at least 4 years in a management or leadership capacity
- Expertise: Deep expertise in regulatory frameworks and standards including NIST, SOC 2, ISO 27001, NIST CSF, PCI, SaaS or technology industry experience required
- Certifications: Active professional certifications required: CISA, CRISC, CISSP, CIPP, CCEP, or equivalent; multiple certifications preferred
- Proven track record: of building, scaling, and maturing GRC programs in fast-growth technology environments
- Skills: Executive presence with outstanding communication skills; ability to translate complex compliance requirements into business terms for technical and non-technical audiences
- Hands-on experience: implementing and optimizing GRC platforms (e.g., Jira, BitSite, OneTrust, Archer, LogicGate, Vanta, or Drata)
- Customer-facing experience: managing compliance activities, including security questionnaires, audits, and enterprise sales support
- Business acumen: the ability to balance risk mitigation with business enablement


Get help with your application
Your very own career expert that helps elevate your application to the next level.
About Us
From the day we opened our doors, MRI Software has built flexible, game-changing real estate software that powers thriving communities and helps make the world a better place to live, work and play. Fulfilling that mission is only possible because of one thing: exceptional people. People like you!
Our people-first approach to PropTech is defining a new industry standard for client experiences that, quite frankly, can’t be duplicated. Experiences that deliver real value every day. And we know those experiences begin with our people.
We believe MRI is more than just a workplace; it’s a connected community of people who truly feel they belong. Whether we’re investing in employee resource groups or providing tailored resources for each person to reach their full potential, we’re passionate about creating a work environment that makes you excited to show up every single day.
At MRI, one of our core values is to strive to amaze. From the intelligent solutions we create to the culture we cultivate, that’s our goal every day. Because that’s what industry leaders do. Whether you’re joining as a new Pride member or rejoining us after a short time away, your talent is vital to us, our partners, and our clients.
Amazing growth requires amazing employees. Are you up to the challenge?
We know confidence gap and imposter syndrome can get in the way of meeting remarkable candidates, so please don’t hesitate to apply. We’d love to hear from you!
MRI is proud to be an inclusive employer. We welcome and celebrate diversity across all backgrounds, including ethnicity, religion, sexual orientation, gender identity, disability, age, military, veteran status, and more.
We believe that Belonging is a direct result of Diversity, Equity, and Inclusion. Those values are woven into the fabric of who we are and are foundational to our continued success. Come and see for yourself!
“It took my CV and asked me questions relevant to understanding what kind of jobs to suggest for me. Suggestions were almost perfect. Jobs were exactly what I’ve been looking for.”
Jessica, London
Skills
Location