GRC Manager
Core
Own the end-to-end GRC program, managing compliance frameworks, audit readiness, and cross-functional enforcement of security policies.
Role type
GRC Manager (Strategic Builder)
Builds
Operationalized compliance programs and audit-ready controls for an AI infrastructure platform.
Domain
AI Infrastructure / Cybersecurity Compliance
Required skills
GRC program ownership, SOC 2 audit management, compliance automation platform administration, cross-functional influence, emerging regulation interpretation, stakeholder management
Preferred skills
PCI DSS experience, HIPAA Business Associate experience, EU AI Act knowledge, CISA/CISSP/CIPP certification, startup compliance hire experience, scripting for evidence collection
Technologies
Drata, SafeBase
Responsibilities
Manage Drata administration and evidence collection; curate security knowledge base for sales; drive personnel compliance and training; lead access reviews, penetration tests, and incident response tabletops; maintain audit readiness for multiple frameworks; translate emerging AI regulations into operational controls.
Seniority
Mid-Senior, hands-on IC
