Workato: Enterprise platform for automating business workflows and integrating applications.
8+ YOE8+ years in cybersecurity, audits, risk management, or compliance; hands-on FedRAMP experience; cloud security controls; strong communication; eligibility for federal programs.
AWS GovCloud, Azure Government, Google Cloud, NIST 800-53, FedRAMP, PCI-DSS, SOC 2, ISO 27001, 27701
Delinea: Provides identity security and privileged access management software.
4+ YOE4+ years in technical advisory or customer success roles with deep expertise in GRC/IGA, Segregation of Duties, access reviews/certifications, audit evidence collection, and enterprise application integrations.
Fastpath, SAP, Oracle, Microsoft Dynamics, NetSuite, AuditBoard, Workiva
AdobeNASDAQ: ADBE: Provides software for digital media creation and marketing analytics
8+ YOE8–12+ years in strategy, business operations, risk management, or related fields; proven experience building metrics and executive reporting; able to engage and influence executives.
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
5+ years in cybersecurity/TPRM/GRC with hands-on experience running vendor assessments, managing CAPs, stakeholder escalation, and producing leadership reports.
Senior Information Security Analyst, GRC/Responsible AI
Irvine or Milpitas
$125k-$207k/yrOnsiteFull Time
SandiskNasdaq: SNDK: Designs and manufactures flash memory and data storage products.
6+ YOE6+ years information security experience with GRC and AI risk management, bachelor's or equivalent, technical proficiency in threat modeling and risk assessment, familiarity with NIST AI RMF and ISO/IEC 42001, and strong cross‑functional communication.
OWASP Top 10 for LLM Applications, NIST AI RMF, ISO/IEC 42001, STRIDE, PASTA, attack tree analysis, CI/CD
Pune or Milpitas or Seattle or Princeton or Cape Town or London or Zurich or Singapore or Mexico City
RemoteFull Time
ZensarNational Stock Exchange of India: ZENSARTECH: Global technology firm providing digital transformation and infrastructure services.
10+ YOEBachelor's degree, 10+ years in information security, knowledge of ISO 27000/NIST/COSO/COBIT, hands-on with DLP, SIEM, NAC, A/V, EDR, experience performing risk assessments, audits, controls testing, and developing remediation plans.
Applied MaterialsNASDAQ: AMAT: Produces equipment and services for chip and display manufacturing.
3+ YOEBachelor's degree and 3–5+ years in product management, procurement technology, or risk/compliance systems; experience with OneTrust or similar GRC platforms; experience configuring enterprise SaaS and integrations/APIs.
TikTok: Global short-form video hosting and social media platform.
3+ YOEBachelor's degree in IT/Cybersecurity/Law/Business or related,3+ years GRC/privacy/compliance experience,experience with audits,project management skills,and professional proficiency in English and Mandarin.
BILLNYSE: BILL: Automated financial operations software for small and midsize businesses.
7+ YOEBachelor's in Accounting/Finance, 7+ years Big 4 public accounting experience (SOX 404/ICFR), CPA or CIA preferred, strong SOX/COSO/PCAOB knowledge, NetSuite/ERP familiarity, audit coordination and control remediation experience.
Chicago or Tampa or Charlotte or Atlanta or Austin or Washington or Dallas or Los Angeles or Boston or Florham Park or New York or San Francisco or San Jose or Philadelphia or Houston
$99k-$232k/yrOnsiteFull Time
PwC: Providing audit, tax, and management consulting services to businesses.
4+ YOEBachelor's degree, 4+ years delivering SAP compliance, security, and governance solutions; proficiency with SAP GRC and SAP BW/4HANA; experience leading teams, implementing compliance programs, and audit processes.
SAP, SAP Governance, Risk and Compliance (GRC), SAP BW/4HANA
RobinhoodNASDAQ: HOOD: Provides a commission-free platform for investing and financial services.
4+ YOE4+ years in risk management, financial services, or crypto operations; experience with RCSAs, KRIs, governance reporting, and GRC tools; strong written/verbal communication and analytical skills.
NavanNasdaq: NAVN: Integrated platform for corporate travel and expense management.
6+ YOE6+ years in security GRC/auditing, hands-on ISMS management, experience with PCI, SOX, ISO 27001/42001, SOC 1/2, control automation, auditor coordination, and cloud security.
Anecdotes: AI-native GRC platform for automated compliance and risk management.
3+ YOE3+ years B2B SaaS sales experience, GRC or security background, US-based, ability to travel to events, strong negotiation and communication skills, familiarity with Force Management/Command of the Message/Sandler or equivalent.
Americas Regional Chief Information Security Officer (CISO)
New York City or San Jose
$250k-$376k/yrHybridFull Time
OKX: Global cryptocurrency exchange and Web3 digital wallet developer.
Security leader with strong GRC and risk experience, technical depth for architecture reviews, regulator engagement capability, and proven communication skills to work with executives and auditors.
Governance, Risk Management and Compliance, Senior Director
San Jose, California, United States
$225k-$250k/yrOnsiteFull Time
Astera LabsNASDAQ: ALAB: Designs connectivity solutions for cloud and AI infrastructure.
10+ YOE5+ Mgmt10+ years in GRC/internal audit with 5+ years leading teams; experience with SOX, ERM, SOC 2/ISO 27001/NIST, third-party risk, and executive/Board reporting.
NubankNYSE: NU: Digital financial platform offering banking, credit, and investment services.
15+ YOE15+ years in information security with executive CISO experience, US financial regulatory expertise (OCC), crypto and AI security knowledge, GRC transformation and strong executive communication.
Qcells: Provider of solar modules, energy storage, and EPC services.
12+ YOE5+ Mgmt12+ years professional experience with 10+ years in consumer lending regulatory compliance; 5+ years people management; deep knowledge of U.S. consumer finance regs; strong analytical, communication, and program-building skills.
10+ YOE10+ years enterprise technology sales with significant leadership responsibility; proven track record closing large strategic deals; experience with channels/partners; deep knowledge of cybersecurity/IAM/GRC; strong executive communication and coaching skills.