MRI Software’s Legal & Compliance team plays a critical role in protecting our organization and stakeholders through robust governance frameworks and proactive risk management. We are seeking an experienced Manager of Governance, Risk & Compliance (GRC) to lead and strengthen our compliance framework, risk management processes, and governance structures. You will serve as a trusted partner to internal teams across the organization, driving enterprise-wide compliance initiatives and ensuring MRI meets its regulatory obligations. In this role, you’ll report directly to the SVP of Legal and Compliance and have a seat at the table on strategic decisions affecting the business. This role offers meaningful impact: you’ll shape the GRC program strategy, mentor a team of analysts and specialists, and help build the infrastructure that supports MRI’s continued growth and success.
Key Responsibilities
Own and evolve MRI's GRC framework, including policies, procedures, internal controls, and risk appetite documentation, ensuring alignment with business objectives and regulatory requirements
Lead enterprise-wide risk assessments and work cross-functionally with Engineering, Product, IT, and business units to identify, evaluate, and mitigate operational, regulatory, cybersecurity, and strategic risks
Monitor the evolving regulatory landscape—including data privacy laws (GDPR, CCPA, state privacy regulations), financial services requirements, and industry standards—and translate regulatory changes into actionable compliance strategies
Drive SOC 2, ISO 27001, PCI-DSS and other compliance certifications, managing internal and external audit processes from planning through remediation
Design and deliver compliance training programs to promote a culture of accountability and ethical conduct across the organization
Develop and present executive-level risk and compliance dashboards, metrics, and reports to senior leadership, the board of directors, and key stakeholders
Oversee third-party risk management program, including vendor security assessments, contract risk review, due diligence, and ongoing monitoring of critical suppliers
Lead incident response and investigation efforts related to compliance breaches or policy violations
Manage and mentor a team of GRC analysts and specialists
Champion a compliance-forward culture by building relationships across the organization and making compliance accessible and practical for all teams
Partner with Legal, Sales, InfoSec, and Customer Success to support customer security questionnaires, RFP responses, and due diligence requests
Qualifications
Bachelor's degree in information security, business, law, or a related field; advanced degree (MBA, or Master’s in Cybersecurity/Risk Management) strongly preferred
8+ years of progressive experience in governance, risk, compliance, information security, or internal audit, with at least 4 years in a management or leadership capacity
Deep expertise in regulatory frameworks and standards including NIST, SOC 2, ISO 27001, NIST CSF, PCI, SaaS or technology industry experience required
Active professional certifications required: CISA, CRISC, CISSP, CIPP, CCEP, or equivalent; multiple certifications preferred
Proven track record of building, scaling, and maturing GRC programs in fast-growth technology environments
Executive presence with outstanding communication skills; ability to translate complex compliance requirements into business terms for technical and non-technical audiences
Hands-on experience implementing and optimizing GRC platforms (e.g., Jira, BitSite, OneTrust, Archer, LogicGate, Vanta, or Drata)
Experience managing customer-facing compliance activities, including security questionnaires, audits, and enterprise sales support
Strong business acumen with the ability to balance risk mitigation with business enablement
About Us
From the day we opened our doors, MRI Software has built flexible, game-changing real estate software that powers thriving communities and helps make the world a better place to live, work and play. Fulfilling that mission is only possible because of one thing: exceptional people. People like you!
Our people-first approach to PropTech is defining a new industry standard for client experiences that, quite frankly, can’t be duplicated. Experiences that deliver real value every day. And we know those experiences begin with our people.
We believe MRI is more than just a workplace; it’s a connected community of people who truly feel they belong. Whether we’re investing in employee resource groups or providing tailored resources for each person to reach their full potential, we’re passionate about creating a work environment that makes you excited to show up every single day.
At MRI, one of our core values is to strive to amaze. From the intelligent solutions we create to the culture we cultivate, that’s our goal every day. Because that’s what industry leaders do. Whether you’re joining as a new Pride member or rejoining us after a short time away, your talent is vital to us, our partners and our clients.
Amazing growth requires amazing employees. Are you up to the challenge?
We know confidence gap and imposter syndrome can get in the way of meeting remarkable candidates, so please don’t hesitate to apply. We’d love to hear from you!
MRI is proud to be an inclusive employer. We welcome and celebrate diversity across all backgrounds, including ethnicity, religion, sexual orientation, gender identity, disability, age, military, veteran status and more.
We believe that Belonging is a direct result of Diversity, Equity, and Inclusion. Those values are woven into the fabric of who we are and are foundational to our continued success. Come and see for yourself!
Skills Required
- Bachelor's degree in information security, business, law, or related field
- Advanced degree (MBA or Master's in Cybersecurity/Risk Management)
- 8+ years progressive experience in governance, risk, compliance, information security, or internal audit
- At least 4 years in a management or leadership capacity
- Deep expertise in regulatory frameworks and standards including NIST, SOC 2, ISO 27001, NIST CSF, and PCI-DSS
- Active professional certifications (CISA, CRISC, CISSP, CIPP, CCEP or equivalent)
- Proven track record building, scaling, and maturing GRC programs in fast-growth technology/SaaS environments
- Hands-on experience implementing and optimizing GRC platforms (e.g., Jira, BitSite, OneTrust, Archer, LogicGate, Vanta, Drata)
- Experience driving SOC 2, ISO 27001, PCI-DSS and managing internal and external audit lifecycles
- Experience with data privacy laws (GDPR, CCPA) and translating regulatory changes into compliance strategies
- Experience managing customer-facing compliance activities, security questionnaires, and enterprise sales support
- Executive presence and outstanding communication skills; ability to translate complex compliance requirements for technical and non-technical audiences
- Ability to lead incident response and investigations related to compliance breaches
- Experience overseeing third-party/vendor risk management and contract risk review
MRI Software Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about MRI Software and has not been reviewed or approved by MRI Software.
-
Retirement Support — A 401(k)/Roth plan with a strong company match stands out as a competitive element of the package. Match design is portrayed as generous relative to many tech peers.
-
Parental & Family Support — Paid parental leave for birth and non-birth parents, compassionate leave, and lactation/travel support indicate robust family benefits. These offerings provide substantial support during major life events.
-
Leave & Time Off Breadth — A minimum of four weeks PTO, company holidays, volunteer time, and Flexi Anydays reflect a broad time-off offering. Hybrid and flexible work options complement the time-off structure for work-life balance.
MRI Software Insights
What We Do
MRI Software is a leading provider of real estate software solutions that transform the way communities live, work and play. MRI’s comprehensive, flexible, open and connected platform empowers owners, operators and occupiers in commercial and residential property organizations to innovate in rapidly changing markets. MRI has been a trailblazer in the PropTech industry for over five decades, serving more than two million users worldwide. Through leading solutions and a rich partner ecosystem, MRI gives real estate companies the freedom to elevate their business and gain a competitive edge. For more information, please visit http://www.mrisoftware.com.









