This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...
This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...
This CISO-track leader will guide a team including a GRC Manager, Staff Security Engineer, and Senior Security Engineer while maturing an ISO 27001-aligned ISMS and coordinating with external ...
This CISO-track leader will guide a team including a GRC Manager, Staff Security Engineer, and Senior Security Engineer while maturing an ISO 27001-aligned ISMS and coordinating with external ...
The Manager, GRC is responsible for overseeing the Governance, Risk, and Compliance (GRC) functions within the organization. This role involves developing and implementing strategies, policies, and ...
The Manager, GRC is responsible for overseeing the Governance, Risk, and Compliance (GRC) functions within the organization. This role involves developing and implementing strategies, policies, and ...
This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...
This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...
This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...
This is a CISO-track leadership role: you will set strategy and lead a team -- a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
Senior GRC Manager: ISO 27001/27701 & Client Security
Manhattan, NY · On-site
$205 - $225/hr
Clickback Inc. is seeking a Security Governance, Risk, and Compliance (GRC) Manager to oversee data protection and compliance efforts. This role entails managing client security assessments, leading ...
New
Senior GRC Manager: ISO 27001/27701 & Client Security
Manhattan, NY · On-site
$205 - $225/hr
Clickback Inc. is seeking a Security Governance, Risk, and Compliance (GRC) Manager to oversee data protection and compliance efforts. This role entails managing client security assessments, leading ...
New
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
GRC Manager - Associate
Charlotte, NC · On-site
GRC Manager - Associate Job Level: Associate Job Function: Governance & Assurance Location: Charlotte, NC, US, 28202 Employment Type: Full Time SMBC Group is a top-tier global financial group.
GRC Manager - Associate
Charlotte, NC · On-site
GRC Manager - Associate Job Level: Associate Job Function: Governance & Assurance Location: Charlotte, NC, US, 28202 Employment Type: Full Time SMBC Group is a top-tier global financial group.
Governance, Risk & Compliance (GRC) Manager
$145K - $170K/yr
The Manager, Governance, Risk & Compliance (GRC) leads Riverside Research's Governance, Risk, and Compliance program supporting the organization's unclassified enterprise and research information ...
Governance, Risk & Compliance (GRC) Manager
$145K - $170K/yr
The Manager, Governance, Risk & Compliance (GRC) leads Riverside Research's Governance, Risk, and Compliance program supporting the organization's unclassified enterprise and research information ...
Grc Manager information
What does a GRC manager do?
A typical day for a GRC Manager involves coordinating risk assessments, reviewing regulatory compliance requirements, and working closely with departments such as IT, Legal, and Internal Audit to implement controls and mitigate risks. This role often includes developing or updating policies, conducting training sessions, and preparing reports for senior leadership or regulatory bodies. GRC Managers also keep an eye on emerging risks and compliance trends, ensuring that the organization proactively adapts its governance and risk strategies. Collaboration and regular communication with diverse teams make the work dynamic and engaging, as no two days are exactly the same.
What are the key skills and qualifications needed to thrive as a GRC manager?
To thrive as a GRC Manager, you need a deep understanding of governance, risk management, and compliance frameworks, often supported by a bachelor's degree in business, information security, or a related field. Experience with GRC platforms (such as RSA Archer, MetricStream, or ServiceNow), risk assessment tools, and certifications like CISA, CRISC, or CISSP are highly valued. Leadership, strong analytical skills, and effective communication are vital soft skills for influencing stakeholders and managing cross-functional teams. These abilities are essential to ensure regulatory adherence, mitigate organizational risks, and drive a culture of compliance throughout the company.
What is a GRC manager?
A GRC (Governance, Risk, and Compliance) Manager is responsible for developing and overseeing an organization's risk management, regulatory compliance, and corporate governance programs. They ensure that internal policies and external regulations are followed to mitigate risks and maintain legal and ethical standards. Their role includes implementing frameworks, conducting risk assessments, and collaborating with different departments to align business objectives with compliance requirements. GRC Managers also provide training and guidance to employees on regulatory changes and best practices.

Full-time
Medical, Dental, Vision, PTO
Re-posted 15 hours ago
Job description
Are you ready to build America’s energy future? Form Energy is an American manufacturing and energy technology company. We’re revolutionizing energy storage with cost-effective, multi-day technology designed to keep the electric grid secure and reliable, even during extended periods of stress. By strengthening the electric system and reimagining what’s possible, we’re giving clean energy a whole new form!
In recent years, Form Energy has earned a number of accolades, including being named by TIME as a “Best Invention”, MIT Technology Review as a “Top Climate Tech Company To Watch”, and Fast Company as “One of the Next Big Things In Tech”. We are making rapid progress on our mission of delivering energy storage for a better world, and our team is growing just as rapidly to meet demand. We have signed contracts with leading electric utilities across the United States and production of our iron-air batteries is underway at our first high-volume manufacturing facility in West Virginia.
Working for Form Energy is more than just a job, it’s a chance to be part of something extraordinary. And now - right as we significantly scale up battery manufacturing - might be the most exciting moment in the company’s history to join. We are assembling a team of highly talented and driven individuals across the country. Driven by our core values of humanity, excellence, and creativity, our team is determined to deliver on our mission and transform the energy landscape for the better.
Feeling energized to make a meaningful impact on the world? Then keep reading - you’ve come to the right place.
Role DescriptionAs Form Energy matures and scales, the Director of Cybersecurity & GRC builds and leads our cybersecurity and IT governance, risk, and compliance programs. This is a CISO-track leadership role: you will set strategy and lead a team — a GRC Manager who owns IT general controls end-to-end, a Staff Security Engineer, and a Senior Security Engineer — while owning the security program, the policy and standards lifecycle, enterprise IT risk, and the external-audit relationship. You will mature an ISO 27001-aligned information security management system and the controls a maturing, compliance‑intensive company depends on, backstopped by an external advisor.
This is a hybrid role, which will require working onsite from one of our office locations 3+ days per week.
Relocation assistance is available.
What you'll do:-
Lead the cybersecurity program: endpoint detection and response / managed detection and response, email and web security, identity and access management, vulnerability management, threat detection, and incident response; manage security vendors and the managed SOC.
-
Own IT governance, risk, and compliance — directing a GRC Manager who owns ITGC design, operation, and evidence end-to-end; the policy and standards lifecycle within an ISO 27001-aligned ISMS; the enterprise IT risk register; control mapping; and exception/issue tracking.
-
Design a control framework synergistic across ITGC, SOC 2, ISO 27001, and NIST 800-171 / CMMC scopes as required by the business and customer contracts.
-
Serve as the primary IT liaison to external auditors and readiness advisors — driving audit readiness, supporting fieldwork, and tracking remediation to closure; direct the external advisor backstop.
-
Mature incident response and disclosure governance: incident response plan and tabletop exercises, and the cyber incident‑disclosure and materiality‑determination process in partnership with Legal, Finance, and IT, aligned to applicable regulatory and disclosure obligations.
-
Establish data classification, retention, and encryption standards, and a vendor / third‑party security risk program.
-
Partner on the IT/OT security boundary and with product security, without owning operational technology or on‑product (battery) cybersecurity.
-
Report cybersecurity and compliance posture to leadership and governance bodies in clear, decision‑ready terms.
-
Lead, coach, and develop the cybersecurity and GRC team; hire selectively against clear capability gaps.
-
10+ years in cybersecurity and/or IT GRC, including 5+ years in leadership (CISO‑track).
-
Deep ITGC experience — control design, operation, and audit — in a compliance‑intensive or scaling‑company setting, with the judgment to direct a GRC Manager and external advisors.
-
Breadth across the security program: IAM, EDR/MDR, vulnerability management, and incident response, with fluency in recognized frameworks (ISO 27001, SOC 2, NIST CSF / 800‑53; NIST 800‑171 / CMMC a plus).
-
Experience as an external‑audit liaison, plus policy authorship and lifecycle ownership.
-
Strong people leadership and executive‑grade communication, including board‑quality reporting.
-
Experience in manufacturing, energy, or critical‑infrastructure sectors.
-
Experience standing up a first‑time formal IT controls environment in a scaling company.
-
Certifications such as CISSP, CISA, CISM, or CRISC.
-
Familiarity with privacy regimes (GDPR / CCPA) and AI governance frameworks (Form Energy’s AI governance is led separately within the Chief Digital Officer organization; this role collaborates rather than owns it).
Humanity is a cornerstone of Form Energy’s culture, and we make sure our compensation and benefits reflect that. Form Energy offers competitive salaries, stock options, and a holistic benefits package to ensure all employees have what they need to thrive while working here.
When it comes to you and your family’s health, we cover 100% of medical, dental, and vision premiums for full‑time employees - and 80% of healthcare premiums for dependents. This starts from day one. We also offer at least 12 weeks of paid leave for new parents (up to 20 weeks for birthing parents), and generous vacation policies to give employees time to recharge when needed.
To build America’s energy future, we need everyone at the table. We are proud to be an equal opportunity employer, and encourage candidates from all backgrounds to apply to our open jobs.
If you may require reasonable accommodations to participate in our interview process, please contact accommodations@formenergy.com. Requests for accommodations will be treated with discretion.
Form Energy is committed to maintaining the privacy of our applicants. Please be aware that we will never solicit sensitive personal information such as Social Security numbers or bank account details during the recruiting or hiring process.
About Form Energy
Sourced by ZipRecruiter
Industry
Clean energy equipment manufacturing
Company size
501 - 1,000 Employees
Headquarters location
Somerville, MA, US
Year founded
2017