HubSpotNYSE: HUBS: Provides a customer platform for marketing, sales, and service.
Experience in Security GRC/IT Compliance or IT Audit, people management plus hands-on IC work, deep control design (SOX 404), risk-based scoping/testing, AWS/microservices/CI/CD familiarity, strong communication.
AWS, CI/CD, IAM, ISO 27001, SOC 1, SOC 2, NIST, ISO 42001
Form Energy: Developing multi-day batteries for grid-scale energy storage.
10+ YOE5+ Mgmt10+ years in cybersecurity/IT GRC with 5+ years leadership; deep ITGC, IAM, EDR/MDR, vulnerability management, incident response, and audit liaison experience; ISO 27001/SOC 2/NIST familiarity; strong executive communication.
Manager and Senior Manager: Governance, Risk, & Compliance (GRC)
Boston, Massachusetts, United States
$155k-$205k/yrOnsiteFull Time
WHOOP: Wearable technology for personalized health and performance tracking.
8+ YOE4+ Mgmt8+ years GRC or information security experience, 4+ years managing GRC/compliance teams, deep knowledge of ISO 27001/SOC2/GDPR/NIST/HIPAA, strong communication and program-building skills, relevant certifications preferred.
Risk Consulting - Risk Technology - Oracle GRC - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
5+ YOEBachelor's or master's degree with ~5 years related experience; Oracle security/controls and controls testing experience; strong project management, client service, leadership, communication, analytical skills; valid US driver’s license and passport; willing to travel.
Austin or Tampa or Chicago or Cleveland or Miami or Los Angeles or Boston or New York City or Florham Park or San Diego or San Francisco or Philadelphia or Houston
$99k-$232k/yrOnsiteFull Time
PwC: Providing audit, tax, and management consulting services to businesses.
5+ YOEBachelor's degree,5+ years relevant experience,proficiency with GRC solutions and ServiceNow,knowledge of ISO/IEC 27001 and NIST CSF,team leadership and client-facing skills.
Blitzy: Autonomous AI platform for enterprise software development.
Hands-on ownership of SOC 2 Type II or ISO 27001:2022 audits, Vanta or equivalent GRC platform experience, auditor/vendor management, FedRAMP exposure preferred, strong written and judgment skills.
Sr. Technical Program Manager, Cybersecurity Remediation
Cambridge, Massachusetts, United States
$146k-$234k/yrHybridFull Time
ModernaNasdaq: MRNA: Develops and manufactures messenger RNA medicines and vaccines.
8+ YOE8+ years technical program or cybersecurity program management experience; experience leading cross-functional remediation programs, vulnerability management, incident/audit remediation, metrics and executive reporting.
vulnerability management platforms, GRC tools, NIST, ISO 27001, CIS
Denver or Stamford or Washington or Orlando or Tampa or Atlanta or Chicago or Boston or Minneapolis or Charlotte or Short Hills or Columbus or Philadelphia or Dallas or Houston or McLean
OnsiteFull Time
KPMG: Global professional services network providing audit, tax, and advisory.
5+ YOERequires 5+ years of SAP audit, controls, security, GRC, ERP implementation, transformation, or analytics experience; bachelor's degree; SAP GRC and security expertise; and strong communication skills.
United States or Boston or Knoxville or Washington
RemoteFull Time
RegScale: Automated compliance software for continuous security controls monitoring.
4+ YOE4+ years experience in compliance/cybersecurity/GRC or SaaS professional services; Bachelor's (4 yrs exp) or Master's (3 yrs exp); strong communication, GRC framework knowledge, SaaS/product familiarity, and willingness to travel up to 25%.
Assoc Dir, Information Security Governance Risk & Compliance
Boston, Massachusetts, United States
$179k-$212k/yrHybridFull Time
Servier: Independent global pharmaceutical group developing innovative treatments for patients.
8+ YOE3+ Mgmt8+ years in information security GRC or related discipline, 3+ years leadership, expertise with risk frameworks, audit readiness, third-party risk, and strong executive communication.
Crisis24: Integrated risk management and global crisis response solutions.
5+ YOE5+ years in strategic partner sales/alliances in insurance or risk domains, proven new business development and partnership management, strong negotiation and communication skills, willingness to travel within the Americas.
Alnylam PharmaceuticalsNASDAQ: ALNY: Develops RNAi therapeutics to treat rare and common diseases.
15+ YOE10+ Mgmt15+ years in cybersecurity/risk/compliance, 10+ years leading GRC teams; Bachelor’s in a relevant field required; strong knowledge of NIST, ISO, ERM; CISSP/CISM/CRISC/CISA preferred.
NIST CSF v2.0, NIST 800-53, ISO 27001, ERM, GxP, HIPAA, SOX, FDA, Computer System Validation (CSV), NIS2, IT SDLC
Atlanta or Austin or Bellevue or Boston or Charlotte or Chicago or Dallas or Denver or Los Angeles or New York or Overland Park or Philadelphia or Portland or San Francisco or Scottsdale
$157k-$195k/yrRemoteFull Time
Aprio: Provides business advisory, accounting, and tax services globally.
10+ YOE10+ years marketing experience with 3+ years B2B marketing to CISOs/senior IT buyers, GRC/IT assurance knowledge, HubSpot proficiency, analytics and funnel reporting, strong collaboration and communication, bachelor’s in marketing or equivalent.
National GridLondon Stock Exchange: NG: Operates electricity and natural gas transmission and distribution networks.
5+ YOE5+ years in risk management; experience across 3 Lines Model; ERM initiatives; leadership reporting; bachelor’s in risk/finance/business; professional certifications listed
Boston Consulting Group: Global management consulting firm specializing in business strategy and transformation.
10+ YOE10+ years in cybersecurity/GRC with federal compliance (CMMC, NIST SP 800-171/53, FedRAMP), experience with assessments/audit defense, AI governance, executive communication, and ability to obtain U.S. Secret clearance.
Chicago or Milwaukee or Dallas or Columbus or Cincinnati or New York City or Cleveland or Austin or Albany or St. Petersburg or Pittsburgh or Hartford or St. Louis or Miami or Sacramento or Raleigh or Minneapolis or Mountain View or Scottsdale or Morristown or San Francisco or Boston or Denver or Philadelphia or Des Moines or Overland Park or Los Angeles or Charlotte or Carmel or Seattle or Houston or Arlington or Atlanta or Beaverton or Detroit or San Diego
$59k-$178k/yrFieldFull Time
AccentureNYSE: ACN: Global provider of management consulting and technology services.
3+ YOERequires 3+ years with SAP S/4HANA, Fiori, BTP, GRC Access Controls, and HANA DB security; 3+ years technical documentation; bachelor's degree or equivalent experience; client travel may reach 100%.
SAP S/4HANA, SAP Fiori, SAP BTP, SAP GRC Access Controls, HANA DB, SAP IAG, SAP IAS, Onapsis, Security Bridge