8 director grc jobs at 7 companies in Boston, MA

1mo
Save
Mark Applied
Hide
Director, Security Governance
Boston, Massachusetts, United States
$177k-$206k/yr OnsiteFull Time
Beth Israel Lahey Health
Beth Israel Lahey Health: Integrated regional healthcare provider operating hospitals and clinical centers.
11+ YOE3+ MgmtLead GRC program, develop security policies, oversee audits and training; requires bachelor's degree, 10+ years IT/security experience, 3+ years supervisory experience.
3w
Save
Mark Applied
Hide
Global Cybersecurity Director - Risk & Compliance
Atlanta or Boston
$176k-$200k/yr OnsiteFull Time
Boston Consulting Group
Boston Consulting Group: Global management consulting firm specializing in business strategy and transformation.
10+ YOE10+ years in cybersecurity/GRC with federal compliance (CMMC, NIST SP 800-171/53, FedRAMP), experience with assessments/audit defense, AI governance, executive communication, and ability to obtain U.S. Secret clearance.
CMMC Level 2, NIST SP 800-171/53, FedRAMP, NIST AI RMF, Continuous Monitoring (CONMON)
1mo
Save
Mark Applied
Hide
Sr. Director, Governance, Risk & Compliance
United States or Cambridge
$230k-$311k/yr HybridFull Time
Alnylam Pharmaceuticals
Alnylam PharmaceuticalsNASDAQ: ALNY: Develops RNAi therapeutics to treat rare and common diseases.
15+ YOE10+ Mgmt15+ years in cybersecurity/risk/compliance, 10+ years leading GRC teams; Bachelor’s in a relevant field required; strong knowledge of NIST, ISO, ERM; CISSP/CISM/CRISC/CISA preferred.
NIST CSF v2.0, NIST 800-53, ISO 27001, ERM, GxP, HIPAA, SOX, FDA, Computer System Validation (CSV), NIS2, IT SDLC
2mo
Save
Mark Applied
Hide
Director IT Risk and Compliance
Marlborough, Massachusetts, United States
$185k-$225k/yr HybridFull Time
BJ's Wholesale Club
BJ's Wholesale ClubNYSE: BJ: Membership warehouse club selling groceries and general merchandise.
10+ YOE3+ MgmtBachelor's in a related field, 10+ years in IT risk/compliance with 3+ years of people leadership, deep SOX ITGC and PCI DSS experience, executive communication, GRC platform and AI/automation familiarity; relevant certifications preferred.
AuditBoard, ServiceNow GRC, Archer, UpGuard, BitSight, Security Scorecard, ChatGPT
3w
Save
Mark Applied
Hide
Senior Director Cybersecurity Operations and Risk
Providence, Rhode Island, United States
$160k-$260k/yr RemoteFull Time
UNFI
UNFINYSE: UNFI: Distributors of natural, organic, and conventional food products.
12+ YOE5+ Mgmt12+ years cybersecurity experience,5+ years leadership,BS in CS or related,industry cybersecurity certification,experience with SOC,VM,GRC,incident command,and vendor/MSSP management.
NIST CSF, ISO 27001, FAIR, Zero Trust, SASE, VPN, MSSP, SaaS
4w
Save
Mark Applied
Hide
Strategic Alliance Director, Insurance & Risk Management
Montreal or Annapolis or Boston
OnsiteFull Time
Crisis24
Crisis24: Integrated risk management and global crisis response solutions.
5+ YOE5+ years in strategic partner sales/alliances in insurance or risk domains, proven new business development and partnership management, strong negotiation and communication skills, willingness to travel within the Americas.
API, RMIS, GRC, ESG, SaaS, TMCs
1mo
Save
Mark Applied
Hide
Sr. Director, Governance, Risk & Compliance (Cambridge, MA, US, 02142)
Cambridge, Massachusetts, United States
$230k-$311k/yr HybridFull Time
Alnylam
AlnylamNasdaq: ALNY: Developing and commercializing RNA interference (RNAi) therapeutics for diseases.
15+ YOE10+ MgmtBachelor's degree in a relevant field, 15+ years in cybersecurity/risk/compliance or audit, 10+ years leading GRC or risk teams, deep knowledge of NIST CSF, NIST 800-53, ISO 27001 and ERM; industry certifications (CISSP, CISM, CRISC, CISA) preferred.
NIST CSF v2.0, NIST 800-53, ISO 27001, Enterprise Risk Management (ERM), Computer System Validation (CSV), NIS2, GxP
2w
Save
Mark Applied
Hide
Assoc Dir, Information Security Governance Risk & Compliance
Boston, Massachusetts, United States
$179k-$212k/yr HybridFull Time
Servier
Servier: Independent global pharmaceutical group developing innovative treatments for patients.
8+ YOE3+ Mgmt8+ years in information security GRC or related discipline, 3+ years leadership, expertise with risk frameworks, audit readiness, third-party risk, and strong executive communication.
NIST CSF 2.0, ISO 27001, PCI, SOX, FAIR