About the role
- Manage governance, risk, and compliance (GRC) programs to safeguard data and support regulatory compliance
- Develop and maintain enterprise policies for IT, data privacy, data classification, retention, and security
- Lead enterprise risk assessments and maintain the risk register
- Ensure compliance with GDPR, CCPA, and other regulations
- Oversee data privacy programs, data access controls, and secure data management practices
- Manage client security surveys, external audits, and cyber liability insurance renewals
- Develop cyber awareness initiatives to drive organizational culture change
- Administer GRC tools and reporting dashboards for leadership visibility
- Supervise and mentor 2 to 4 GRC analysts, ensuring timely delivery of assessments and documentation
- Translate security frameworks (e.g., NIST, ISO 27001) into practical business outcomes
Requirements
- Bachelor’s degree in information security, Risk Management, Information Systems, or related discipline
- 5+ years of progressive experience in IT security, compliance, risk, or data privacy
- Strong knowledge of GDPR, CCPA, and other data protection regulations
- Experience managing audits, compliance programs, and policy development
- Experience translating frameworks (e.g., NIST, ISO 27001) into practical business outcomes
- Experience administering GRC tools and reporting dashboards
- Experience managing client security surveys, external audits, and cyber liability insurance renewals
- Supervisory experience managing and mentoring 2 to 4 GRC analysts
- Excellent communication and leadership skills
- Hands-on experience with data privacy programs, data access controls, and secure data management practices
- Private, employee-owned company
- Chance to try new things, explore unique paths and shape your future
- Recognized as a great place to work by U.S. News and World Report, Forbes, Fast Company and Newsweek
- Reasonable accommodation available to complete the application process
ATS Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
governance, risk, and compliance (GRC)data privacydata classificationrisk assessmentsGDPRCCPANISTISO 27001cyber liability insurancedata access controls
Soft skills
leadershipcommunicationmentoringorganizational culture changesupervisory skills