GRC Program Manager

Reposted 12 Days Ago
Hiring Remotely in USA
Remote
138K-162K Annually
Mid level
Security • Cybersecurity
The Role
The GRC Program Manager will oversee GRC programs, manage project documentation, coordinate with stakeholders, and support strategic planning efforts. Responsibilities include driving project execution, developing metrics, and enhancing program maturity while ensuring compliance with governance and risk requirements.
Summary Generated by Built In
About the Role

Abnormal Security is looking for a GRC Program Manager (Governance, Risk, and Compliance) to support the GRC team and programs. The GRC team aims to facilitate information security and data governance processes, enable risk-based decision-making, and deliver a compliance foundation to achieve and maintain compliance certifications. 

This role will play a critical part in the successful execution of GRC programs and driving the achievement of program objectives.  The role will be focused on owning and improving program/project management and reporting practices across GRC, coordinating and aligning with other organizational program and project managers to implement consistent practices, developing and maintaining team and project documentation, ownership of select GRC operations, facilitating best practices with team internal processes, and supporting the Director of GRC with planning activities. In addition this role will act as project manager for critical GRC projects and cross-functional projects identified through the GRC programs to drive risk reduction across the company. 

The ideal candidate will have proven program and project management skills, can design project management and operational processes and scale through continuous improvement, can produce and maintain comprehensive documentation and reporting, and understands the requirements and operations of governance, risk, compliance, customer trust, and privacy programs. 

Who you are
  • Proven experience leading and scaling programs as a program manager for a GRC or similar team, managing portfolios of projects, and developing and implementing frameworks and best practices.
  • Proven experience developing and reporting project and program performance metrics to varying levels of audience.
  • Demonstrated experience developing and maintaining technical, procedural, and program/project related documentation .
  • Solid technical background with an ability to give instructions to a non-technical audience.
  • Hold yourself accountable for high-quality results and meeting deadlines in a fast-paced environment.
  • Exercise sound judgment even when faced with ambiguity or competing approaches regarding the best path to success.
  • Ability to foster relationships with stakeholders and represent the GRC team across the company.
What you will do
  • As a key contributor within GRC, you will own GRC program management such as developing program plans, defining program goals, objectives, deliverables, and success criteria, developing frameworks and best practices for projects and operations, and overseeing program/project/process performance. 
  • Ensure program activities align with strategy and manage the timely and high-quality execution of GRC landmarks.
  • Work with project managers to develop project plans. 
  • Design and manage program/project reporting for varying levels of audience.
  • Coordinate with other program managers to ensure consistency across programs/projects within the InfoSec organization. 
  • Drive program maturity growth through development of program maturity models and maturity roadmap; track progress.
  • Direct project management of critical projects for GRC projects or cross-functional projects identified through GRC Programs. 
  • Drive remediation and mitigation activities, also known as issues management, through development of tracking, update, and progress reporting processes for projects identified by GRC programs related to remediation and mitigation.
  • Lead GRC Documentation Management including maintaining document templates, overall document structure, and content requirements.  Develop and maintain documentation for the team, programs, and projects. 
  • Lead select GRC operations as assigned by the Director of GRC. 
  • Support GRC planning activities for strategic, annual, and quarterly planning, including cross-functional planning coordination.  
  • Maintain regular, clear communication with project teams, key partners, and management regarding the status of programs, projects, owned processes and issues management.
  • Effectively communicate program and project execution status, program health and effectiveness, key accomplishments, and risks to senior management both within Security and to our business partners.
Must Haves
  • 4+ years in a program manager role assigned to GRC, Security, or a team in a related field 
  • Bachelor’s degree or equivalent experience 
  • Proven experience leading complex technical programs and successfully executing projects with an emphasis on delivering results.
  • Strong understanding of security concepts and practical usage
  • Strong understanding of basic governance, risk management, and compliance concepts and requirements
  • A solid grasp of audit, security, financial, and operational internal control methodologies and terminology (e.g., COSO)
  • Ability to effectively communicate governance, risk, and compliance program performance to management
  • Familiarity with project management tools, ServiceNow, and Jira
Nice to Haves
  • PMP, CRISC, CISSP, CISA, or CISM certification(s)
  • Prefer a degree in information assurance, computer science, information security, or business.
  • Experience preferably at a technology or SaaS / Cloud and/or with a regulated public company
  • Big 4 experience 
  • Familiarity with Governance Risk Compliance (GRC) tools, Drata

#LI-EM1

At Abnormal AI, certain roles are eligible for a bonus, restricted stock units (RSUs), and benefits. Individual compensation packages are based on factors unique to each candidate, including their skills, experience, qualifications and other job-related reasons. 

Base salary range:
$137,700$162,000 USD

At Abnormal AI, certain roles are eligible for a bonus, restricted stock units (RSUs), and benefits. Individual compensation packages are based on factors unique to each candidate, including their skills, experience, qualifications and other job-related reasons.

Base pay range:
$137,700$162,000 USD
San Francisco/New York Base pay range:
$141,600$168,000 USD

Abnormal AI is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by law. For our EEO policy statement please click here. If you would like more information on your EEO rights under the law, please click here.

Top Skills

JIRA
Servicenow
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
San Francisco, CA
175 Employees
Year Founded: 2018

What We Do

The Abnormal Security platform protects enterprises from targeted email attacks. Abnormal Behavior Technology (ABX) models the identity of both employees and external senders, profiles relationships and analyzes email content to stop attacks that lead to account takeover, financial damage and organizational mistrust. Though one-click, API-based Office 365 and G Suite integration, Abnormal sets up in minutes and does not disrupt email flow.
Abnormal Security was founded in 2018 by CEO Evan Reiser, CTO Sanjay Jeyakumar, Head of Machine Learning Jeshua Bratman, and Founding Engineers Abhijit Bagri and Dmitry Chechik. The team previously built behavioral profiling and machine learning technologies at Twitter, Google and Pinterest that are being applied to solve a problem that costs organizations $1 billion per year, according to the FBI. The Abnormal Security platform stops targeted phishing, business email compromise and account takeover attacks that have never been seen before.

Similar Jobs

Samsara Logo Samsara

Senior Software Engineer

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
United States
150K-261K Annually

Samsara Logo Samsara

Senior Software Engineer

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
United States
126K-244K Annually

Samsara Logo Samsara

Senior Software Engineer

Artificial Intelligence • Cloud • Computer Vision • Hardware • Internet of Things • Software
Easy Apply
Remote or Hybrid
United States
126K-244K Annually

GitLab Logo GitLab

Full-stack Engineer

Cloud • Security • Software • Cybersecurity • Automation
Easy Apply
Remote
31 Locations

Similar Companies Hiring

Silverfort Thumbnail
Security • Sales • Information Technology • Cybersecurity • Automation
GB
507 Employees
Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account