1

Grc Manager Jobs (NOW HIRING)

The GRC Manager will work closely with legal, IT security, operations, and executive leadership to ensure the organization maintains a strong and defensible compliance posture while enabling business ...

GRC Manager

Dallas, TX ยท On-site

$112K - $115K/yr

Make Your Mark as a GRC Manager at SafePaaS Read on to discover why this is your next big career move... Why SafePaaS? At SafePaaS, every team member is more than just a cog in the machine-you're a ...

GRC Manager

Dallas, TX ยท Remote

$116K - $119K/yr

Make Your Mark as a GRC Manager at SafePaaS Read on to discover why this is your next big career move Why SafePaaS? At SafePaaS, every team member is more than just a cog in the machineyoure a ...

GRC Manager

Dallas, TX ยท On-site

$112K - $115K/yr

Make Your Mark as a GRC Manager at SafePaaS Read on to discover why this is your next big career move... Why SafePaaS? At SafePaaS, every team member is more than just a cog in the machine-you're a ...

GRC Manager

New York, NY ยท On-site +1

$150K - $250K/yr

THE ROLE We are seeking an experienced and detail-oriented GRC (Governance, Risk, and Compliance) Manager to build, support, and continuously enhance Baseten's security governance, compliance, and ...

Director, Cybersecurity & GRC

Berkeley, CA ยท On-site

$199K - $293K/yr

This is a CISO-track leadership role: you will set strategy and lead a team - a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer - while ...

Director, Cybersecurity & GRC

Somerville, MA ยท On-site

$180 - $280/hr

This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...

Director, Cybersecurity & GRC

Berkeley, CA ยท On-site

$180 - $280/hr

This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...

Director, Cybersecurity & GRC

Weirton, WV ยท On-site

$180 - $280/hr

This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...

Manage and maintain the enterprise risk register. * Conduct security risk assessments and evaluate ... Improve and automate GRC processes where possible. * Perform additional responsibilities as ...

next page

Showing results 1-20

Grc Manager information

What does a GRC manager do?

A typical day for a GRC Manager involves coordinating risk assessments, reviewing regulatory compliance requirements, and working closely with departments such as IT, Legal, and Internal Audit to implement controls and mitigate risks. This role often includes developing or updating policies, conducting training sessions, and preparing reports for senior leadership or regulatory bodies. GRC Managers also keep an eye on emerging risks and compliance trends, ensuring that the organization proactively adapts its governance and risk strategies. Collaboration and regular communication with diverse teams make the work dynamic and engaging, as no two days are exactly the same.

What are the key skills and qualifications needed to thrive as a GRC manager?

To thrive as a GRC Manager, you need a deep understanding of governance, risk management, and compliance frameworks, often supported by a bachelor's degree in business, information security, or a related field. Experience with GRC platforms (such as RSA Archer, MetricStream, or ServiceNow), risk assessment tools, and certifications like CISA, CRISC, or CISSP are highly valued. Leadership, strong analytical skills, and effective communication are vital soft skills for influencing stakeholders and managing cross-functional teams. These abilities are essential to ensure regulatory adherence, mitigate organizational risks, and drive a culture of compliance throughout the company.

What is a GRC manager?

A GRC (Governance, Risk, and Compliance) Manager is responsible for developing and overseeing an organization's risk management, regulatory compliance, and corporate governance programs. They ensure that internal policies and external regulations are followed to mitigate risks and maintain legal and ethical standards. Their role includes implementing frameworks, conducting risk assessments, and collaborating with different departments to align business objectives with compliance requirements. GRC Managers also provide training and guidance to employees on regulatory changes and best practices.

More about Grc Manager jobs
What cities are hiring for Grc Manager jobs? Cities with the most Grc Manager job openings:
What are the most commonly searched types of Grc jobs? The most popular types of Grc jobs are:
What states have the most Grc Manager jobs? States with the most job openings for Grc Manager jobs include:
Infographic showing various Grc Manager job openings in the United States as of August 2026, with employment types broken down into 88% Full Time, 11% Part Time, and 1% Contract. Highlights an 85% Physical, 2% Hybrid, and 13% Remote job distribution.

GRC Manager

Merci Technologies - Talent

Atlanta, GA โ€ข Remote

Full-time

Re-posted 13 days ago


Job description

About the Role

Merci Technologies is seeking an experienced GRC Manager to lead governance, risk, and compliance initiatives for one of our enterprise clients on a remote contract engagement. In this role, you will serve as the primary driver of the organization's GRC program — overseeing policy development, risk assessments, audit readiness, and regulatory compliance across a complex technology environment.

The GRC Manager will work closely with legal, IT security, operations, and executive leadership to ensure the organization maintains a strong and defensible compliance posture while enabling business objectives.

Responsibilities

  • Lead the design, implementation, and ongoing management of the enterprise GRC program including policies, standards, and procedures
  • Conduct and oversee enterprise risk assessments, identify control gaps, and develop risk treatment plans aligned to business priorities
  • Manage audit and assessment activities including SOC 2, ISO 27001, NIST CSF, CMMC, or equivalent frameworks
  • Develop and maintain the organization's risk register, tracking remediation progress and reporting status to senior leadership
  • Collaborate with IT, legal, and business teams to ensure compliance with applicable regulations including GDPR, CCPA, HIPAA, or industry-specific requirements
  • Oversee third-party vendor risk management activities including assessments, due diligence, and ongoing monitoring
  • Develop and deliver security awareness and compliance training programs for internal stakeholders
  • Prepare executive-level reports, dashboards, and presentations on risk posture, compliance status, and program maturity
  • Mentor and guide junior GRC analysts and contribute to team capability development
  • Stay current on emerging regulatory developments and industry best practices and translate them into actionable program updates

Required Qualifications

  • 7–10 years of experience in GRC, information security, or risk management roles with at least 2 years in a leadership or management capacity
  • Deep knowledge of GRC frameworks and standards including NIST CSF, NIST 800-53, ISO 27001, SOC 2, and CIS Controls
  • Hands-on experience managing compliance programs across regulated industries such as healthcare, finance, energy, or government
  • Strong understanding of third-party and vendor risk management practices
  • Experience leading internal and external audit engagements from preparation through closure
  • Excellent written and verbal communication skills with demonstrated ability to present to executive and board-level audiences
  • Strong project management skills with ability to manage multiple concurrent initiatives in a remote environment
  • Must be legally authorized to work in the United States without employer sponsorship

Preferred Qualifications

  • Active certifications such as CISA, CRISC, CISM, CISSP, or ISO 27001 Lead Auditor
  • Experience with GRC platforms such as ServiceNow GRC, Archer, OneTrust, or equivalent
  • Familiarity with CMMC, NERC CIP, or FedRAMP compliance requirements
  • Experience supporting M&A security due diligence or post-merger integration activities
  • Background working in a managed services or consulting environment