As Head of GRC, you'll own a compliance program that's audit-ready by design, not by scramble. To ... You manage auditors and compliance partners directly, without needing anyone to run interference ...
As Head of GRC, you'll own a compliance program that's audit-ready by design, not by scramble. To ... You manage auditors and compliance partners directly, without needing anyone to run interference ...
Head of GRC (Governance, Risk, & Compliance)
Cambridge, MA ยท On-site
$220 - $260/hr
As Head of GRC, you'll own a compliance program that's audit-ready by design, not by scramble. To ... You manage auditors and compliance partners directly, without needing anyone to run interference ...
Head of GRC (Governance, Risk, & Compliance)
Cambridge, MA ยท On-site
$220 - $260/hr
As Head of GRC, you'll own a compliance program that's audit-ready by design, not by scramble. To ... You manage auditors and compliance partners directly, without needing anyone to run interference ...
IT Systems Analyst - Cybersecurity, Risk & Compliance
Parsippany, NJ ยท On-site
$94K - $95K/yr
Interest in Cybersecurity, GRC, compliance, enterprise systems, or risk management. * Relevant internship, academic project, technical training, or related experience is preferred. * Exposure to ...
IT Systems Analyst - Cybersecurity, Risk & Compliance
Parsippany, NJ ยท On-site
$94K - $95K/yr
Interest in Cybersecurity, GRC, compliance, enterprise systems, or risk management. * Relevant internship, academic project, technical training, or related experience is preferred. * Exposure to ...
Security & Compliance Operations Manager
San Francisco, CA ยท On-site
$120K - $180K/yr
The Role We're hiring our first dedicated GRC Program Manager to own the security & compliance program that our enterprise business runs on: SOC 2 Type II, ISO 27001, ISO 42001, GDPR, and Microsoft ...
Security & Compliance Operations Manager
San Francisco, CA ยท On-site
$120K - $180K/yr
The Role We're hiring our first dedicated GRC Program Manager to own the security & compliance program that our enterprise business runs on: SOC 2 Type II, ISO 27001, ISO 42001, GDPR, and Microsoft ...
NY ยท On-site
$93.19 - $134.62/hr
Tieto sรถker Security Compliance Manager i Solna. Fokus pรฅ GRC, DORA/NIS2, ISO 27001/ISAE 3402, audits, RFI/RFP och leverantรถrssรคkerhet. Ansรถk med CV eller LinkedIn. Ny tjรคnst: Tieto sรถker ...
NY ยท On-site
$93.19 - $134.62/hr
Tieto sรถker Security Compliance Manager i Solna. Fokus pรฅ GRC, DORA/NIS2, ISO 27001/ISAE 3402, audits, RFI/RFP och leverantรถrssรคkerhet. Ansรถk med CV eller LinkedIn. Ny tjรคnst: Tieto sรถker ...
Cybersecurity, IT GRC Practice Lead
Coral Gables, FL ยท On-site
$105K - $142K/yr
Are a leader who is also an expert in Cybersecurity and IT GRC Compliance and wants to learn more about AI Governance and AI Risk Management and more--and you love leading teams and effortlessly ...
Quick apply
Cybersecurity, IT GRC Practice Lead
Coral Gables, FL ยท On-site
$105K - $142K/yr
Are a leader who is also an expert in Cybersecurity and IT GRC Compliance and wants to learn more about AI Governance and AI Risk Management and more--and you love leading teams and effortlessly ...
Compliance Manager
San Francisco, CA ยท On-site
$155K - $170K/yr
Familiarity with vendor management, SOC1, SOC2, risk management and GRC processes and tools * Experience designing and overseeing compliance processes * Dynamic multi-tasker who can juggle multiple ...
Compliance Manager
San Francisco, CA ยท On-site
$155K - $170K/yr
Familiarity with vendor management, SOC1, SOC2, risk management and GRC processes and tools * Experience designing and overseeing compliance processes * Dynamic multi-tasker who can juggle multiple ...
The Manager, GRC is responsible for overseeing the Governance, Risk, and Compliance (GRC) functions within the organization. This role involves developing and implementing strategies, policies, and ...
The Manager, GRC is responsible for overseeing the Governance, Risk, and Compliance (GRC) functions within the organization. This role involves developing and implementing strategies, policies, and ...
Engineering Manager (GRC Platform)
San Francisco, CA ยท On-site
$300 - $320/hr
About the Role We are seeking a GRC/Compliance Engineer to join our Risk Management team and build the technical foundation for how we scale our compliance programs. In this role, you will design and ...
Engineering Manager (GRC Platform)
San Francisco, CA ยท On-site
$300 - $320/hr
About the Role We are seeking a GRC/Compliance Engineer to join our Risk Management team and build the technical foundation for how we scale our compliance programs. In this role, you will design and ...
Governance, Risk, and Compliance Manager - FedRAMP
San Francisco, CA ยท On-site
$190K - $275K/yr
About the Role Join Decagon as a Governance, Risk, and Compliance Manager and play a critical role ... Your background looks something like this * 5+ years of GRC experience in high-growth SaaS or ...
Governance, Risk, and Compliance Manager - FedRAMP
San Francisco, CA ยท On-site
$190K - $275K/yr
About the Role Join Decagon as a Governance, Risk, and Compliance Manager and play a critical role ... Your background looks something like this * 5+ years of GRC experience in high-growth SaaS or ...
... Risk Management, Business Administration, or related discipline , or equivalent relevant ... Experience supporting audits, assessments, and compliance reviews. * Experience with enterprise GRC ...
... Risk Management, Business Administration, or related discipline , or equivalent relevant ... Experience supporting audits, assessments, and compliance reviews. * Experience with enterprise GRC ...
GRC Team Lead
Richmond, VA ยท On-site
You will own CapTech's compliance posture across SOC 2, NIST 800-53, and NIST AI RMF, along with applicable privacy regulations; mature our third-party risk management program; modernize the GRC ...
GRC Team Lead
Richmond, VA ยท On-site
You will own CapTech's compliance posture across SOC 2, NIST 800-53, and NIST AI RMF, along with applicable privacy regulations; mature our third-party risk management program; modernize the GRC ...
About the Role As our first dedicated Governance, Risk & Compliance Manager, you'll own the GRC ... Own the GRC framework. Design, implement, and continuously test a unified controls framework ...
Quick apply
About the Role As our first dedicated Governance, Risk & Compliance Manager, you'll own the GRC ... Own the GRC framework. Design, implement, and continuously test a unified controls framework ...
About the Role As our first dedicated Governance, Risk & Compliance Manager, you'll own the GRC ... Own the GRC framework. Design, implement, and continuously test a unified controls framework ...
About the Role As our first dedicated Governance, Risk & Compliance Manager, you'll own the GRC ... Own the GRC framework. Design, implement, and continuously test a unified controls framework ...
We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a ...
We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a ...
Sr. Compliance Manager
Overland Park, KS ยท On-site
$2.5K/yr
The Sr. Compliance Manager is responsible for partnering with organizational leaders to provide ... Configuring and managing GRC tool, Onspring preferred * Experience with supporting SOC and HITRUST ...
Sr. Compliance Manager
Overland Park, KS ยท On-site
$2.5K/yr
The Sr. Compliance Manager is responsible for partnering with organizational leaders to provide ... Configuring and managing GRC tool, Onspring preferred * Experience with supporting SOC and HITRUST ...
We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a ...
We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a ...
We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a ...
We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a ...
Senior Manager, Governance, Risk, and Compliance
San Francisco, CA ยท On-site
$162 - $209/hr
As our Senior Manager of GRC, you will have a high-impact, transformative opportunity to lead Virta's Governance, Risk, and Compliance (GRC) function in a highly automated, AI-first environment. You ...
New
Senior Manager, Governance, Risk, and Compliance
San Francisco, CA ยท On-site
$162 - $209/hr
As our Senior Manager of GRC, you will have a high-impact, transformative opportunity to lead Virta's Governance, Risk, and Compliance (GRC) function in a highly automated, AI-first environment. You ...
New
Sr. Compliance Manager
Overland Park, KS ยท On-site
The Sr. Compliance Manager is responsible for partnering with organizational leaders to provide ... Configuring and managing GRC tool, Onspring preferred * Experience with supporting SOC and HITRUST ...
Sr. Compliance Manager
Overland Park, KS ยท On-site
The Sr. Compliance Manager is responsible for partnering with organizational leaders to provide ... Configuring and managing GRC tool, Onspring preferred * Experience with supporting SOC and HITRUST ...
Grc Compliance Manager information
See salary details
$38.5K - $49.3K
3% of jobs
$49.3K - $60K
9% of jobs
$69K is the 25th percentile. Wages below this are outliers.
$60K - $70.8K
16% of jobs
$70.8K - $81.6K
18% of jobs
The median wage is $85.2K / yr.
$81.6K - $92.4K
13% of jobs
$92.4K - $103.1K
12% of jobs
$110.1K is the 75th percentile. Wages above this are outliers.
$103.1K - $113.9K
7% of jobs
$113.9K - $124.7K
5% of jobs
$124.7K - $135.5K
9% of jobs
$135.5K - $146.2K
4% of jobs
$146.2K - $157K
4% of jobs
$38.5K
$95.1K
$157K
How much do grc compliance manager jobs pay per year?
What is a GRC Compliance Manager?
What are the key skills and qualifications needed to thrive as a GRC Compliance Manager, and why are they important?
What are some of the most common challenges faced by a GRC Compliance Manager, and how can they effectively address them?
What is the difference between Grc Compliance Manager vs Risk Analyst?
| Aspect | Grc Compliance Manager | Risk Analyst |
|---|---|---|
| Certifications | ISO 27001 Lead Auditor, CISA, CISM | FRM, CRM, CIA |
| Work Environment | Corporate, compliance departments, consulting firms | Financial institutions, consulting, corporate risk teams |
| Employer & Industry Usage | Financial services, healthcare, technology | Banking, insurance, investment firms |
The Grc Compliance Manager focuses on establishing and maintaining compliance frameworks, policies, and audits, ensuring organizations meet regulatory standards. The Risk Analyst evaluates potential risks, analyzes data, and develops strategies to mitigate financial and operational risks. While both roles require understanding of regulations and risk management, the Compliance Manager emphasizes compliance programs, whereas the Risk Analyst concentrates on risk assessment and data analysis.
Are GRC compliance manager jobs in demand?
What cities are hiring for Grc Compliance Manager jobs?
Cities with the most Grc Compliance Manager job openings:
What states have the most Grc Compliance Manager jobs?
States with the most job openings for Grc Compliance Manager jobs include:
Full-time
Re-posted 7 days ago
Job description
Blitzy is a Cambridge, MA based AI software development platform on a mission to revolutionize the software development life cycle by autonomously building custom software to unlock the next industrial revolution. We're transforming how enterprises build software, turning enterprise requirements into production-ready code with an agentic software development platform that can autonomously execute 80% of the quantum of software development work. We're backed by multiple tier 1 investors, and have proven success as founders of previous start-ups.
Location: 1 Kendall Square, Cambridge, MA (On-site)
Compensation: $220,000 - $260,000 plus bonus and equity, commensurate with experience
The Role
Security and compliance at Blitzy currently run on a patchwork: a Security Delegate managing our frameworks with help from an external compliance vendor, backend engineers pulled off their real jobs to answer security questions, and audit evidence assembled after the fact instead of built in from the start.
We're hiring one person to fix that. As Head of GRC, you'll own a compliance program that's audit-ready by design, not by scramble.
To be clear about scope, this role is not:
- A paperwork-only compliance role with no rigor.
- A job where you escalate every auditor question to engineering or to the Security Delegate.
- A way to move our current reactive compliance model in-house unchanged - the point is to make it proactive.
What Success Looks Like
- You spot the gap - like SSO being "available" but not "enforced" - before an auditor finds it, not after.
- You've personally run a SOC 2 Type II or ISO 27001:2022 cycle and know exactly what auditors sample.
- You own Vanta (or an equivalent GRC platform) as the single source of truth, not a reference tool.
- You manage auditors and compliance partners directly, without needing anyone to run interference for you.
- Engineers stop getting pulled into compliance busywork because you've taken security scope questions and screenshot requests off their plate.
- You write clearly - policies, audit narratives, and questionnaire responses that hold up under scrutiny.
Areas of Ownership
Proactive Compliance & GRC Ownership
- Own Vanta (or equivalent) as the system of record - configuring tests and keeping evidence current, not just checking a dashboard.
- Run SOC 2 Type II and ISO 27001:2022 compliance building continuously toward what auditors actually sample, rather than scrambling before the audit window opens.
- Manage auditor and partner relationships directly, including firms like Insight Assurance and FedRAMP platform partners such as Second Front Systems/Game Warden - without routing every conversation through the Security Delegate.
- Build the compliance processes that don't exist yet, starting with a formal sub-processor change communication process, which is already coming up as a contractual requirement in enterprise deals.
- Evaluate evidence critically rather than take it at face value, confirming, for example, that SSO is enforced via admin panel configuration - not just available in a settings screen.
Required Experience
- Personal, hands-on ownership of at least one full SOC 2 Type II or ISO 27001:2022 audit cycle - not just adjacent to one.
- Direct experience running a GRC/compliance platform (Vanta or equivalent) as the system-of-record owner.
- A track record of managing vendor and auditor relationships independently, without hand-holding.
- The seniority and judgment to reduce engineering interrupt load, not add to it - engineers should be comfortable handing things off to you, not double-checking your work.
What Makes You Stand Out
- FedRAMP exposure, even at Moderate - we're targeting FedRAMP High.
- A track record of building a compliance process from scratch, not just running an existing playbook.
- Experience managing multiple frameworks concurrently - SOC 2, ISO 27001, and GDPR at the same time.
- Familiarity with Google Workspace as an identity provider.
- GDPR/data privacy program experience - cookie consent, Article 27 representative coordination, DPA review.
What Makes This Role Different
You'll have direct ownership of a function that's currently split across engineering, a Security Delegate, and an external vendor - with full autonomy to build it right from day one. That includes a seat at the table on FedRAMP, one of the most demanding compliance programs a company can pursue.
Our interview process reflects the role itself: an audit walkthrough round where you'll talk through a real SOC 2 or ISO 27001 cycle you've run and how you handled your findings.
Our Culture
Who we are:
Led by two pioneering co-founders we are one of the fastest growing companies in the U.S., creating our own category of enterprise autonomous software development. We automate thousands of hours of software development for our customers, which includes strong representation within the Fortune 500.
How we work:
We move Blitzy Fast: Time is both our company's and our clients' most precious asset. We move quickly and decisively to innovate internally and deliver exceptional software externally.
Championship Mindset: We operate like a professional sports team. We win as a team by holding ourselves and each other to high standards, collaborating in-person, and remaining focused on the mission.
Passion for Invention: We're pushing the frontier of what's possible, requiring constant innovation and iteration.
We Work for the Customer: We focus on delivering outsized value to the customers we work with and expanding those relationships into deep, meaningful partnerships.
We believe in being 'everyday athletes'-taking care of ourselves so we can bring our best minds to work. We promote great sleep, movement, and restorative activities for optimal mental performance. It makes for a happier and more productive team.
Blitzy is an equal opportunity employer committed to building a diverse and inclusive team. We believe different perspectives make us stronger.