1h ago

Sr Manager, InfoSec Governance Risk and Compliance (GRC)

Pittsburgh, Pennsylvania, United States
full-timeseniorcloud-based procurement software

Description

You will lead and own the global GRC program, driving compliance efforts for certifications like FedRAMP, ISO 27001, and SOC2. You'll manage a high-performing team, serve as a subject matter expert on security frameworks, and collaborate cross-functionally to communicate Ivalua's security posture.

Requirements

  • 7+ years leading GRC programs with compliance certifications
  • 3+ years direct team management experience
  • Strong knowledge of NIST, FedRAMP, ISO 27001, etc.
  • Excellent project management and stakeholder influence skills
  • Self-motivated with ability to handle multiple priorities

Responsibilities

  • Lead and own the global GRC program, managing team development
  • Drive compliance audits for FedRAMP, ISO 27001, SOC2, etc.
  • Serve as SME on NIST, FedRAMP, and other security frameworks
  • Manage customer security audit requests and contractual terms
  • Oversee security awareness training and third-party risk assessment
0 views 0 saves 0 applications