Los Angeles or Chicago or Nashville or New York or Seattle
$100k-$135k/yrHybridFull Time
Metropolis: Computer vision technology for checkout-free parking and retail payments.
3+ YOE3+ years in information security GRC or technology compliance; experience managing security awareness programs; knowledge of SOC 2 and PCI-DSS; familiarity with AI/data security and training platforms; bachelor\u0002s degree required.
New York City or Chicago or Austin or Dallas or Denver or Miami or San Francisco or Seattle
$270k-$290k/yrHybridFull Time
DriveWealth: Provides API-based brokerage infrastructure for fractional stock trading.
15+ YOE15+ years in information security/GRC in regulated financial services; deep SEC/FINRA and global privacy knowledge; hands-on GRC, audit, TPRM, incident response, and executive/board reporting; relevant certifications preferred.
Blue Origin: Develops reusable rockets and systems for human spaceflight.
10+ YOE10+ years in information security risk management; experience with NIST, ISO 27001/28000, SOC, CMMC; cloud-native, IT and OT security experience; ability to automate compliance and build GRC dashboards.
Milliman: Global provider of actuarial and risk management consulting services.
7+ YOEMinimum 7 years IT cybersecurity or risk management experience; bachelor\u0002s degree or equivalent; familiarity with HIPAA, GDPR, CCPA; experience with GRC/VRM tools and vendor risk management; supervisory experience; SharePoint exposure.
Risk Consulting - Risk Technology - Oracle GRC - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
5+ YOEBachelor's or master's degree with ~5 years related experience; Oracle security/controls and controls testing experience; strong project management, client service, leadership, communication, analytical skills; valid US driver’s license and passport; willing to travel.
AdobeNASDAQ: ADBE: Provides software for digital media creation and marketing analytics
8+ YOE8–12+ years in strategy, business operations, risk management, or related fields; proven experience building metrics and executive reporting; able to engage and influence executives.
Pune or Milpitas or Seattle or Princeton or Cape Town or London or Zurich or Singapore or Mexico City
RemoteFull Time
ZensarNational Stock Exchange of India: ZENSARTECH: Global technology firm providing digital transformation and infrastructure services.
10+ YOEBachelor's degree, 10+ years in information security, knowledge of ISO 27000/NIST/COSO/COBIT, hands-on with DLP, SIEM, NAC, A/V, EDR, experience performing risk assessments, audits, controls testing, and developing remediation plans.
AmazonNASDAQ: AMZN: Global online retail and cloud computing technology provider.
5+ YOE5+ years compliance, audit, or risk management experience; Bachelor’s degree or equivalent required; deep knowledge of COSO 2013, SEC/PCAOB, ITGCs, SOX scoping, control design, testing, remediation, and GRC platforms.
1+ YOEBachelor's degree or equivalent,1+ year program management and 1+ year compliance experience,experience with regulatory frameworks,strong communication and analysis skills,ability to travel up to 25%.
MicrosoftNASDAQ: MSFT: Develops software, services, devices, and cloud computing solutions.
4+ YOEBachelor's degree and 4+ years program/process management experience or equivalent; privacy or finance GRC experience preferred; CIPM/CIPP preferred; knowledge of privacy regulations and ability to scale processes.
Technology Director - Governance, Risk, and Compliance (GRC)
Seattle, Washington, United States
$206k-$270k/yrHybridFull Time
lululemonNASDAQ: LULU: Designs and retails technical athletic apparel and lifestyle products.
12+ YOE4+ Mgmt12–15+ years in cybersecurity/technology risk with 4+ years senior leadership; bachelor’s in STEM (advanced degree/certifications preferred); deep knowledge of security frameworks and regulatory requirements; program, risk, and people leadership.
Ireland or Seattle or Vancouver or Austin or Boulder or Ankeny or Reading or Ho Chi Minh City
OnsiteFull Time
Absolute Security: Provides self-healing endpoint security and zero trust networking solutions.
3+ YOE3–5 years GRC/audit/compliance or trust operations experience, familiarity with SOC 2/ISO 27001, GDPR, customer security questionnaires, risk and third-party assessments, strong communication and audit support skills.
United States or San Francisco or Dublin or Montreal or Seattle or Singapore or Manila or Gurgaon or Alaska or Indiana or Nebraska or North Dakota or Ohio or South Dakota or Wisconsin or Alabama or Mississippi or Oklahoma or Delaware or Rhode Island
$156k-$193k/yrRemoteFull Time
AirbnbNASDAQ: ABNB: Online marketplace for vacation rentals and travel experiences.
10+ YOE10+ years in risk, compliance, or operational risk; program management for cross-functional remediation; experience governing AI/ML systems; investigations partnership; expertise in risk frameworks, registries, and executive reporting.
NIST AI RMF, ISO 42001, EU AI Act, AI/ML, GRC platforms, case management systems, investigation ticketing platforms
Infoblox: Secures and automates core network services and cloud identity.
15+ YOE15+ years in GRC or information security with ownership of controls, audits, SOX ITGC, and enterprise compliance; CISSP preferred; experience with ISO/NIST frameworks, SOC 2/ISO certifications, ServiceNow GRC or AuditBoard, automation/AI-driven GRC, and a bachelor’s degree or equivalent.
F5NASDAQ: FFIV: Provides application delivery networking and multi-cloud security solutions.
12+ YOE5+ Mgmt12+ years in cybersecurity/GRC with 5+ years in senior architecture; deep ServiceNow IRM/GRC and BCM/DR experience; cloud integrations (Azure,AWS,Workday,Okta); Snowflake/Tableau for reporting; strong cross-functional leadership.
Clearly AI: Automates enterprise security and privacy reviews using AI.
2+ YOE2+ years in GRC, privacy, or security engineering; hands-on threat modeling, vendor risk, and security tool integrations; strong project management and customer debugging skills.