American TowerNYSE: AMT: Leases space on wireless and broadcast towers for communications.
2+ YOERequires 2+ years in GRC or information security, strong project management and communication skills, Microsoft Office and Oracle proficiency, and knowledge of security standards and privacy regulations.
Microsoft Office, Oracle, ISO 27001, ISO 27002, ITIL, Identity and Access Management (IAM)
ezCater: Online marketplace for business catering and food for work
8+ YOE8+ years in security GRC or compliance for SaaS/cloud; deep knowledge of ISO-27001, NIST CSF, SOC 2, ITGC, PCI; experience automating control testing and evidence collection; familiarity with Policy-as-Code (Terraform), AWS, GitHub; strong communication.
HubSpotNYSE: HUBS: Provides a customer platform for marketing, sales, and service.
Experience in Security GRC/IT Compliance or IT Audit, people management plus hands-on IC work, deep control design (SOX 404), risk-based scoping/testing, AWS/microservices/CI/CD familiarity, strong communication.
AWS, CI/CD, IAM, ISO 27001, SOC 1, SOC 2, NIST, ISO 42001
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or Charlotte or Philadelphia or Portland or San Francisco or Seattle or North America
$123k-$213k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
3+ YOERequires 3–5+ years of SAP Security/GRC experience, bachelor's degree preferred, SAP implementation expertise, GRC Access Control and IAM experience, U.S. driver's license, passport, and willingness to travel up to 80%.
SAP Application Security, SAP GRC Access Control, S/4HANA, SAP ECC, FIORI, ARIBA, HCM, SuccessFactors, Saviynt, SailPoint, SAP IAG, ServiceNow, HP ALM, BTP, SAC, AI, RPA
Blitzy: Autonomous AI platform for enterprise software development.
Hands-on ownership of SOC 2 Type II or ISO 27001:2022 audits, Vanta or equivalent GRC platform experience, auditor/vendor management, FedRAMP exposure preferred, strong written and judgment skills.
Senior Analyst, IT Internal Controls & SOX Compliance
San Francisco or Salt Lake City or Phoenix or Los Angeles or Chicago or Boston or Austin or New York City or Miami or Tampa or Atlanta or Columbus or Boise or San Diego or Minneapolis or Houston or Raleigh or Nashville or Kansas City or Charlotte or Portland or Philadelphia or Dallas or Washington D.C. or Seattle
$113k-$148k/yrRemoteFull Time
CircleNYSE: CRCL: Digital currency issuer and blockchain financial infrastructure provider.
4+ YOE4+ years Big 4 IT audit/controls experience, Bachelor's in related field, CPA/CISA/CIA/CISSP required; strong SOX/ITGC knowledge, cloud/SaaS/SDLC/IAM experience, ERP/GRC familiarity, and stakeholder communication skills.
Slack, Apple MacOS, Google Workspace, ERP, GRC, AI
Denver or Stamford or Washington or Orlando or Tampa or Atlanta or Chicago or Boston or Minneapolis or Charlotte or Short Hills or New York City or Philadelphia or Dallas or Houston or McLean
FieldFull Time
KPMG: Global professional services network providing audit, tax, and advisory.
3+ YOERequires 3+ years in SAP audit, controls, security, GRC, ERP implementation, or transformation; bachelor's degree; SAP GRC and security experience; and strong communication skills.
Watts Water TechnologiesNYSE: WTS: Manufactures water flow control and water quality products.
3+ YOEBachelor's or equivalent; 3+ years IT compliance/internal audit/GRC experience; working knowledge of ITGCs and SOX; experience with GRC/audit platforms; strong communication and organizational skills.
Optro (AuditBoard), ServiceNow GRC, Archer, MetricStream, Jira, Microsoft Power Automate, SQL, Python, APIs
Chicago or Tampa or Charlotte or Atlanta or Austin or Washington or Dallas or Los Angeles or Boston or Florham Park or New York City or San Francisco or San Jose or Philadelphia or Houston
$77k-$202k/yrOnsiteFull Time
PwC: Providing audit, tax, and management consulting services to businesses.
2+ YOEBachelor's degree and at least 2 years delivering SAP compliance, security, and governance solutions (GRC); proficiency with SAP GRC and SAP BW/4HANA; strong communication and analytical skills.
SAP Governance, Risk and Compliance (GRC), SAP BW/4HANA, SAP
United States or Boston or Knoxville or Washington
RemoteFull Time
RegScale: Automated compliance software for continuous security controls monitoring.
4+ YOE4+ years experience in compliance/cybersecurity/GRC or SaaS professional services; Bachelor's (4 yrs exp) or Master's (3 yrs exp); strong communication, GRC framework knowledge, SaaS/product familiarity, and willingness to travel up to 25%.
Assoc Dir, Information Security Governance Risk & Compliance
Boston, Massachusetts, United States
$179k-$212k/yrHybridFull Time
Servier: Independent global pharmaceutical group developing innovative treatments for patients.
8+ YOE3+ Mgmt8+ years in information security GRC or related discipline, 3+ years leadership, expertise with risk frameworks, audit readiness, third-party risk, and strong executive communication.
UNFINYSE: UNFI: Distributors of natural, organic, and conventional food products.
12+ YOE5+ Mgmt12+ years cybersecurity experience,5+ years leadership,BS in CS or related,industry cybersecurity certification,experience with SOC,VM,GRC,incident command,and vendor/MSSP management.
NIST CSF, ISO 27001, FAIR, Zero Trust, SASE, VPN, MSSP, SaaS
State StreetNYSE: STT: Provides investment servicing and management to institutional investors.
10+ YOEBachelor's degree required; 10+ years in cybersecurity, technology risk, GRC, or related fields; experience with cyber policy enforcement, risk governance, executive reporting, and enterprise stakeholder management.