17h ago

GRC Manager

Boston, MA

โœจ $150k-$200k / yearest.

full-timesenior Hybridsoftware

๐Ÿ›  Tech Stack

๐Ÿ’ผ About This Role

You'll own and scale governance, risk, and compliance programs at CloudZero, a fast-growing SaaS platform. You'll partner across Legal, Engineering, and Sales to build a GRC function that protects the business and enables sales velocity through automated security responses. This role has a hybrid schedule with 2-3 days per week in office.

๐ŸŽฏ What You'll Do

  • Design and operate the GRC framework including risk management and compliance programs
  • Own SOC 2 audits and certification programs across the organization
  • Lead enterprise risk assessments and maintain a living risk register
  • Own the security questionnaire process and build automation for response
  • Manage business continuity, disaster recovery, and third-party risk programs

๐Ÿ“‹ Requirements

  • 5+ years of experience in governance, risk, and compliance roles at a SaaS or cloud company
  • Proven experience building or maturing a GRC program with hands-on SOC 2 audit involvement
  • Working knowledge of risk management frameworks such as COSO, ISO 31000, or NIST RMF
  • Solid understanding of GDPR and CCPA and how to translate obligations into controls

โœจ Nice to Have

  • Experience with Vanta or Drata for continuous compliance monitoring
  • Familiarity with security frameworks such as NIST CSF, CIS Controls, or OWASP
  • Professional certifications like CRISC, CISA, CISM, CISSP, or CIPP

๐ŸŽ Benefits & Perks

  • ๐Ÿ–๏ธ Unlimited PTO
  • ๐Ÿฅ Comprehensive health insurance
  • ๐Ÿ’ป Remote-friendly culture
  • ๐Ÿ“ˆ Equity grants
  • ๐Ÿ• Team lunches and events

๐Ÿ“จ Hiring Process

Estimated timeline: 3-5 weeks ยท AI estimate

  1. 1Recruiter phone screenยท 30 min
  2. 2Hiring manager interviewยท 45 min
  3. 3Technical / cross-functional interviewยท 60 min
  4. 4Final round with leadershipยท 45 min

๐Ÿšฉ Heads Up

  • Mixes GRC, sales engineering, and contract negotiation into one role, suggesting scope creep
0 0 0