
GRC Manager
Posted Jul 28

Posted Jul 28
This is a fully remote position, open to applicants in United States.
• Oversee the daily operations of Valence's Governance, Risk, and Compliance (GRC) program.
• Maintain and enhance our Information Security and Artificial Intelligence Management System for ISO 27001/42001 compliance.
• Coordinate efforts for SOC 2, ISO 27001, ISO 42001, and other certifications.
• Manage the security risk register and facilitate enterprise-wide risk assessments.
• Organize both internal and external audits.
• Oversee security policies, standards, and control documentation.
• Monitor remediation activities and promote control enhancements across teams.
• Assist with customer security questionnaires, Requests for Proposals (RFPs), and due diligence processes.
• Collaborate with Engineering to ensure that technical controls align with compliance requirements.
• Contribute to the development of security metrics and executive reporting.
• Coordinate annual control testing and the collection of evidence.
• Establish scalable governance processes to support the company's growth.
• Proven experience in managing GRC or security compliance programs.
• A strong interest in automating GRC tasks, including leveraging AI technologies.
• In-depth understanding of security frameworks, such as SOC 2, ISO 27001, NIST CSF, and ISO 42001.
• Experience with risk management methodologies and the upkeep of risk registers.
• Background in coordinating both internal and external audits.
• Experience collaborating across functions with Engineering, IT, Legal, Privacy, and business stakeholders.
• Strong organizational and project management capabilities.
• Exceptional written and verbal communication skills.
• Proficient in interpreting control requirements and translating them into actionable implementation guidance.
• Knowledge of cloud security concepts and requirements, preferably in AWS or Azure environments.
• Familiarity with GRC platforms such as Vanta, Drata, Secureframe, OneTrust, Archer, or similar tools is advantageous.
• Awareness of privacy regulations and AI governance, including GDPR and the EU AI Act.
• Competitive salary package including base salary and bonuses.
• Comprehensive health insurance coverage (medical, dental, vision) starting from day one.
• Generous paid time off (PTO), company-wide rest and relaxation shutdowns, and paid parental leave.
• Retirement plan support available for both US and international employees.
• A work-from-home stipend, phone stipend, and assistance for working in a We Work or other preferred locations.
RTX
EXALTA Group
Get handpicked remote jobs straight to your inbox weekly.