
Manager, GRC Engineering
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in United States.
• Take charge of executive client account management, serving as the main point of contact across client portfolios.
• Build trusted executive relationships and ensure ongoing alignment with delivery objectives.
• Oversee comprehensive compliance engagements from initiation to final certification.
• Handle intricate account escalations and resolve critical client challenges.
• Offer strategic compliance advice by converting regulatory requirements into actionable technical controls.
• Lead, manage, mentor, and coach engineering teams comprising 3 to 5 analysts.
• Create and align corporate security policies, procedures, and technical controls in accordance with SOC 2, ISO 27001, HIPAA, and PCI DSS standards.
• Direct multi-cloud SOC 2 and ISO 27001 certification initiatives across AWS, GCP, and Azure platforms.
• Utilize Drata, Vanta, and Secureframe to monitor readiness metrics and uphold a continuous audit posture.
• Engage with active clients within the first 15 days of employment.
• Operate during U.S. Pacific Time business hours for client interactions.
• Demonstrated experience in direct client account management and executive relationship cultivation.
• Over 5 years of direct experience in leading technical teams, managing pod productivity, and coaching individual contributors.
• Practical experience in developing and overseeing enterprise compliance programs in alignment with SOC 2 and ISO 27001.
• Strong hands-on knowledge of implementing technical security controls in AWS, GCP, or Azure environments.
• Proven capability to manage multiple simultaneous technical compliance engagements.
• Bachelor's degree in IT, Cybersecurity, or a related technical field.
• Exceptional initiative and the ability to work independently.
• Experience with Big 4 or elite professional services firms in risk advisory, technical assurance, or security consulting is advantageous.
• Active certifications such as CISA, CISSP, CISM, or equivalent in security are beneficial.
• Familiarity with managing external technical clients in specialized cybersecurity consulting settings is a plus.
• Knowledge of HITRUST, PCI DSS, NIST, GDPR, and HIPAA standards is advantageous.
• Excellent written and verbal communication skills in English.
• Reliable, high-speed internet connection is required.
• A professional home office that facilitates confidential discussions and uninterrupted collaboration is necessary.
• Availability for a standard 8:00 AM–5:00 PM U.S. Eastern Time work schedule.
• Willingness and capability to travel locally for occasional onsite meetings or business events.
• Participation in live video interviews with the camera on and identity verification during recruitment and onboarding is expected.
• Successful completion of identity verification and background checks, where allowed by law.
• Authorization to work in the U.S. without current or future visa sponsorship is required.
• Opportunities for career development through mentorship and training.
• Reimbursement for approved training and certification courses pertinent to the position.
• Competitive base salary.
• Regular performance evaluations linked to merit-based assessments.
• Incentives for bonuses.
• Significant potential for career growth.
• Flexibility to work remotely while collaborating with a global team.
3Core Systems, Inc
Fortrea
Stralynn Consulting Services, Inc
Abacus Group
Get handpicked remote jobs straight to your inbox weekly.