Remotery

GRC Manager

atValenceRemoteUS flagUnited StatesFull-timeComplianceMid-levelSenior

Posted Jul 28

This is a fully remote position, open to applicants in United States.

📋 Description

• Oversee the daily operations of Valence's Governance, Risk, and Compliance (GRC) program.

• Maintain and enhance our Information Security and Artificial Intelligence Management System for ISO 27001/42001 compliance.

• Coordinate efforts for SOC 2, ISO 27001, ISO 42001, and other certifications.

• Manage the security risk register and facilitate enterprise-wide risk assessments.

• Organize both internal and external audits.

• Oversee security policies, standards, and control documentation.

• Monitor remediation activities and promote control enhancements across teams.

• Assist with customer security questionnaires, Requests for Proposals (RFPs), and due diligence processes.

• Collaborate with Engineering to ensure that technical controls align with compliance requirements.

• Contribute to the development of security metrics and executive reporting.

• Coordinate annual control testing and the collection of evidence.

• Establish scalable governance processes to support the company's growth.


⛳️ Requirements

• Proven experience in managing GRC or security compliance programs.

• A strong interest in automating GRC tasks, including leveraging AI technologies.

• In-depth understanding of security frameworks, such as SOC 2, ISO 27001, NIST CSF, and ISO 42001.

• Experience with risk management methodologies and the upkeep of risk registers.

• Background in coordinating both internal and external audits.

• Experience collaborating across functions with Engineering, IT, Legal, Privacy, and business stakeholders.

• Strong organizational and project management capabilities.

• Exceptional written and verbal communication skills.

• Proficient in interpreting control requirements and translating them into actionable implementation guidance.

• Knowledge of cloud security concepts and requirements, preferably in AWS or Azure environments.

• Familiarity with GRC platforms such as Vanta, Drata, Secureframe, OneTrust, Archer, or similar tools is advantageous.

• Awareness of privacy regulations and AI governance, including GDPR and the EU AI Act.


🏝️ Benefits

• Competitive salary package including base salary and bonuses.

• Comprehensive health insurance coverage (medical, dental, vision) starting from day one.

• Generous paid time off (PTO), company-wide rest and relaxation shutdowns, and paid parental leave.

• Retirement plan support available for both US and international employees.

• A work-from-home stipend, phone stipend, and assistance for working in a We Work or other preferred locations.

People also viewed

RTX3 days ago

Compliance Manager – Triage Management

US flagConnecticut OnlyFull-timeCompliance$107.5k – $204.5k/year
ApplyView job
Finalsite3 days ago

Chief Compliance Officer

US flagUnited States OnlyFull-timeCompliance
ApplyView job
EXALTA Group3 days ago

Regulatory Specialist – Level 2

US flagUnited States OnlyFull-timeCompliance
ApplyView job
Auto Approve3 days ago

Compliance Analyst

US flagUnited States OnlyFull-timeCompliance
ApplyView job
Cushman & Wakefield3 days ago

Contracts and Compliance Administrator

US flagUnited States OnlyFull-timeCompliance$20 – $24/hour
ApplyView job
GE Vernova4 days ago

Lead Compliance Investigator

US flagUnited States OnlyFull-timeCompliance
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers