Skip to main content

Senior Operational Risk Manager

MercuryLegal & Compliance
Pay
$200K–$250K
per year
Work mode
Hybrid
Full Time
Experience
8+ yrs
Senior

San Francisco, CA at a glance

Rent
#2 of 51
$2,680/mo+46% vs US avg
Weather
#17 of 51
295 mild days0 hot · 0 cold
Income tax
#1 of 51
13.3% top rateCalifornia

What you need

  • 8+ yrs operational risk/compliance/internal audit at bank/fintech
  • Own issues management program: severity, escalation, remediation validation
  • Experience administering GRC platform (LogicGate/Archer), workflow config & reporting
  • Turn issue/event data into actionable leadership trends
  • Familiarity with interagency/OCC expectations for operational risk management

What you'll do

  • Set risk control assessment standard; test critical process effectiveness
  • Oversee operational event program: challenge root cause, trend events enterprise-wide
  • Own centralized issues management program: intake to closure tracking
  • Define enterprise KRIs thresholds; aggregate metrics for Board reporting
  • Partner with 1LOD, InfoSec, Compliance to challenge assessments

Mercury is revolutionizing finance for startups by building a complete, user-friendly banking* stack. We prioritize creating a secure and seamless experience for entrepreneurs while upholding the highest standards of compliance and safety.

In this role, you will own the day-to-day operation of Mercury's Operational Risk program. You will report to the Head of Operational Risk, within the Risk organization under the Chief Risk Officer, and partner closely with first-line risk teams, Compliance, Third-Party Risk, Information Security, and Internal Audit.

You will run the centralized issues and events program, coordinate risk and control assessments with first line teams, and drive reporting that give leadership and the Board a clear view of operational risk. This is a builder role. Much of the program is being stood up now, and you will have the autonomy to shape how it operates as Mercury prepares to operate as a bank.

*Mercury is a fintech company, not an FDIC-insured bank. Banking services provided through Choice Financial Group and Column N.A., Members FDIC.

As part of the journey, we would expect you to:

  • Set the risk and control assessment standard. Review and challenge first-line RCMs; independently test design and operating effectiveness on critical processes and issue findings.
  • Oversee the operational event program: challenge first-line root cause, ratings and fixes; trend events across the enterprise.
  • Own the centralized issues management program across operational events, incidents, testing and regulatory findings, from intake and triage through remediation tracking, validation, and closure
  • Define enterprise KRIs and thresholds for each L2, tied to risk appetite, and aggregate first-line metrics into Board reporting.
  • Partner with 1LOD teams, InfoSec, Compliance and model risk owners to collect inputs, challenge assessments and make sure risks are raised early.
  • Provide second-line review and concurrence on high-risk new activities.
  • Write and maintain the ORM standards, procedures and templates that first-line teams execute against.
  • Support regulatory examinations, audits, and charter readiness reviews

There are lots of paths that could lead you to be successful in a role like this; we think the strongest candidates will have some of this experience:

  • 8+ years in operational risk, compliance, or internal audit at a bank or a fintech partnered with a bank
  • Hands-on ownership of an issues management or operational event program, including severity rating, escalation, and validation of remediation
  • Experience administering a GRC platform (LogicGate, Archer, or similar), including workflow configuration and reporting
  • Strong data skills: you turn raw issue and event data into trends leadership can act on
  • Familiarity with interagency and OCC expectations for operational risk management
  • You challenge constructively, with evidence, and keep strong relationships with the teams you oversee
  • You find, prioritize, and execute key projects independently, balancing program build with daily operations

Mercury values diversity & belonging and is proud to be an Equal Employment Opportunity employer. All individuals seeking employment at Mercury are considered without regard to race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, sexual orientation, or any other legally protected characteristic. We are committed to providing reasonable accommodations throughout the recruitment process for applicants with disabilities or special needs. If you need assistance, or an accommodation, please let your recruiter know once you are contacted about a role.

#LI-AR1

Total Rewards
The total rewards package at Mercury includes base salary, equity (stock options/RSUs), and benefits.

Our salary and equity ranges are highly competitive within the SaaS and fintech industry and are updated regularly using the most reliable compensation survey data for our industry. New hire offers are made based on a candidate’s experience, expertise, geographic location, and internal pay equity relative to peers.

Our target new hire base salary ranges for this role are the following:

US employees in New York City, Los Angeles, Seattle, or the San Francisco Bay Area:
$199,900—$249,900 USD
US employees outside of New York City, Los Angeles, Seattle, or the San Francisco Bay Area:
$179,900—$224,900 USD
Canadian employees (any location):
$189,000—$236,200 CAD

Optimize your resume for this job

Get a match score and the keywords you're missing

Optimize resume

About Mercury

Mercury is building banking for startups. We want to power the next generation of companies that will shape American industry. A complete financial stack to build your company. Scale with FDIC-insured bank accounts, debit cards, and 3-click payment flows.

Similar Legal & Compliance roles

Senior Operational Risk Manager
$200K–$250K · Mercury
Apply