
Manager, GRC
Posted Aug 31

Posted Aug 31
This is a fully remote position, open to applicants in United States.
• Oversee second line advisory activities for key technology and security sectors.
• Evaluate risk exposure, the effectiveness of controls, policy alignment, and emerging business challenges.
• Collaborate with engineering and technology teams to assess domain posture and pinpoint areas for control, remediation, and governance enhancements.
• Review and critically assess risk and control designs for scalability, effectiveness, and alignment with business objectives, risk frameworks, and regulatory requirements.
• Coordinate efforts across risk, controls, policy, audit, and assurance teams to transform incidents, audit findings, and regulatory mandates into actionable improvements.
• Gather, prioritize, and assess inherent and residual risks in collaboration with subject matter experts and risk owners.
• Facilitate decision-making regarding risk treatment and validate the execution of mitigation plans.
• Articulate quantitative and qualitative risk trade-offs to aid leadership in prioritization and reporting.
• Develop, nurture, and mentor a team of technology and security analysts, including senior analysts.
• Over 8 years of experience in technology risk, IT controls, IT audit, cybersecurity risk, or compliance.
• Practical experience in delivering comprehensive Governance, Risk, and Compliance (GRC) services, encompassing risk management, control design, continuous monitoring, and governance documentation.
• Profound understanding of technical design and governance principles across various domains, such as infrastructure resilience, Software Development Life Cycle (SDLC), change management, or incident response.
• Proven experience in evaluating risks and control designs, identifying weaknesses, and enhancing risk outcomes and control maturity.
• Demonstrated ability to manage and mentor analysts while holding teams accountable for deliverables and timelines.
• Experience in influencing cross-functional stakeholders and translating intricate risk and compliance concepts into clear functional requirements.
• Responsible utilization of generative AI with appropriate human oversight.
• Must be eligible to work in the USA, as indicated by the “Remote - USA” location and US applicant notices.
• Eligibility for equity.
• Eligibility for bonuses.
• Medical insurance coverage.
• Dental insurance coverage.
• Vision insurance coverage.
• 401(k) retirement plan.
• Quarterly in-person working sessions (“surges”).
RTX
Cisco
MoneyGram
SOLV Energy
Get handpicked remote jobs straight to your inbox weekly.