GRC & Privacy Lead
Polymarket · New York · lead
Polymarket · New York · lead
Polymarket is the world's largest prediction market platform. We enable individuals to express views on real-world events by trading on outcomes across politics, economics, sports, culture, and current affairs. Built as a peer-to-peer marketplace with no centralized "house," Polymarket aggregates diverse opinions into transparent, market-based probabilities that reflect collective expectations about the future.
We're growing fast — both in terms of volume ($21B traded in 2025) and adoption as an alternative news source. Our ambition is to become a ubiquitous beacon of truth in global media and we need your help adding fuel to the fire.
Polymarket's IT and Security team is small, senior, and expected to move fast. This role sits at the intersection of third-party risk, audit execution, and privacy operations — and the person in it will own all three. DSARs need to be processed, vendors need risk dispositions before they get access to our systems, and PIAs need to happen before engineering ships, not after.
This is a senior IC role. You'll make judgment calls independently, build processes that didn't exist before you arrived, and leave behind documentation the team can actually use. We have active audit work underway, a vendor pipeline that needs rigorous day-to-day management, and privacy obligations spanning GDPR, CCPA/CPRA, BIPA, CUBI, and the specific data flows that come with KYC and identity verification at scale.
sourced from the original posting ↗ · always verify details there before applying
Polymarket · Remote