46 grc manager jobs at 31 companies in Ladera Ranch, CA
3mo
Save
Mark Applied
Hide
3mo
GRC & Incident Manager
Los Angeles, California, United States
$145k-$163k/yrOnsiteFull Time
Lendistry: Technology-enabled lender providing capital to small businesses.
3+ YOE3-5 years in GRC, data privacy, risk management; SOC 2 and GLBA; cloud experience (AWS/Azure); privacy engineering; CIPT/CDPSE required; CIPM/CISSP preferred; B.S. in CS/Info Security or equivalent.
SHEIN: Global online retailer selling affordable fashion and lifestyle products.
7+ YOE7+ years in information security risk management; bachelor’s degree; CISSP/CISM/CISA or ISO 27001 Lead Auditor desirable; strong standards knowledge; team leadership experience.
Los Angeles or Chicago or Nashville or New York or Seattle
$100k-$135k/yrHybridFull Time
Metropolis: Computer vision technology for checkout-free parking and retail payments.
3+ YOE3+ years in information security GRC or technology compliance; experience managing security awareness programs; knowledge of SOC 2 and PCI-DSS; familiarity with AI/data security and training platforms; bachelor\u0002s degree required.
Delan Associates: Provides engineering and professional services to government agencies.
15+ YOERequires 15+ years of experience with SAP GRC 12.0 AC/PC, implementation and upgrades, access controls, risk management, cloud integration, testing, deployment, and production support.
SAP GRC 12.0 Access Control (AC), SAP GRC 12.0 Process Control (PC), Access Risk Analysis (ARA), Access Request Management (ARM), Emergency Access Management (EAM), Business Role Management (BRM), Segregation of Duties (SoD), MSMP, SAP GRC Cloud, SAP GRC SuccessFactors (SF)
Karman Space & DefenseNYSE: KRMN: Designing and manufacturing mission-critical systems for space and defense.
5+ YOEBachelor's degree or equivalent experience and 5+ years in cybersecurity GRC, IT audit, risk management, or control assurance. Requires control assessment expertise, regulated-framework knowledge, analytical skills, and stakeholder management.
Microsoft 365, Microsoft Excel, Microsoft PowerPoint, Microsoft Word, Microsoft Teams, Microsoft SharePoint, Microsoft Outlook, ServiceNow, Jira, Archer, AuditBoard, Drata, Vanta, Hyperproof
Panda Restaurant Group: Operator of American Chinese fast-casual restaurant chains.
7+ YOEBachelor's degree, 7+ years GRC/privacy/security/technology risk experience, knowledge of AI governance and cybersecurity frameworks, policy and program design, and strong advisory skills.
NIST AI RMF, EU AI Act, ISO 42001, NIST CSF, NIST 800-53, ISO 27001, ISO 27002, CIS
Austin or Tampa or Chicago or Cleveland or Miami or Los Angeles or Boston or New York or Florham Park or San Diego or San Francisco or Philadelphia or Houston
$77k-$202k/yrOnsiteFull Time
PwC: Providing audit, tax, and management consulting services to businesses.
3+ YOEBachelor's degree, minimum 3 years' experience, knowledge of GRC technologies and risk management, strong analytical and communication skills, client-facing experience, ability to travel up to 60%.
Risk Consulting - Risk Technology - Oracle GRC - Manager (New York, NY, US, 10001-8604)
New York or Atlanta or Boston or Chicago or Cleveland or Dallas or Detroit or Pittsburgh or Hoboken or Houston or Los Angeles or McLean or Miami or Minneapolis or North Carolina or Philadelphia or Portland or San Francisco or Seattle or Tampa
$150k-$260k/yrHybridFull Time
EY: Global firm providing audit, tax, and professional consulting services.
5+ YOEBachelor's or master's degree with ~5 years related experience; Oracle security/controls and controls testing experience; strong project management, client service, leadership, communication, analytical skills; valid US driver’s license and passport; willing to travel.
Northwood Space: Manufacturing ground stations and providing satellite communication infrastructure.
5+ YOE5+ years in GRC with ownership of enterprise compliance programs; deep knowledge of CMMC, NIST SP 800-171/800-53, FedRAMP, SOC 2, ITAR; ability to obtain TS/SCI; U.S. citizen or lawful permanent resident required.
Anduril Industries: Defense technology building autonomous military hardware and software.
6+ YOERequires 6+ years in security engineering or GRC, programming experience, compliance framework expertise, cloud and SaaS integrations, production infrastructure-as-code experience, and eligibility for a U.S. Secret clearance.
Senior Information Security Analyst, GRC/Responsible AI
Irvine or Milpitas
$125k-$207k/yrOnsiteFull Time
SandiskNasdaq: SNDK: Designs and manufactures flash memory and data storage products.
6+ YOE6+ years information security experience with GRC and AI risk management, bachelor's or equivalent, technical proficiency in threat modeling and risk assessment, familiarity with NIST AI RMF and ISO/IEC 42001, and strong cross‑functional communication.
OWASP Top 10 for LLM Applications, NIST AI RMF, ISO/IEC 42001, STRIDE, PASTA, attack tree analysis, CI/CD
Glovis AmericaKorea Stock Exchange: 086280: Global provider of automotive logistics and supply chain services.
7+ YOE4+ MgmtRequires 7–13 years of internal audit experience, 4–7 years of supervisory or people management experience, GRC and ERM expertise, advanced Microsoft Excel, risk analysis, and strong communication skills.
Glovis America: Global logistics and supply chain services for the automotive industry.
7+ YOE4+ MgmtRequires 7–13 years of internal audit experience, 4–7 years of supervisory or people management experience, GRC and ERM expertise, risk assessment skills, advanced Microsoft Excel, and strong communication abilities.
Latham & Watkins: Global law firm providing legal counsel to businesses.
10+ YOE2+ Mgmt10+ years in GRC/technology risk/compliance/audit/cybersecurity with 2+ years leadership, experience with client security questionnaires, ISO 27001 certification experience, strong communication and project management skills.
Latham & Watkins: Global law firm providing legal services for complex corporate matters.
10+ YOE2+ Mgmt10+ years in GRC/technology risk/compliance or related fields, 2+ years leadership, bachelor’s or equivalent experience preferred, security audit and ISO27001 experience, CISA/CISSP/CISM preferred, project management experience, strong communication skills.
California State University: Public university system providing higher education and academic research.
5+ YOEBachelor's degree or equivalent education and experience, 5+ years in information security, governance, risk, compliance, auditing, or IT, including 3+ years in GRC functions and cross-stakeholder coordination.
NIST, PCI DSS, GLBA, HIPAA, CISM, CISA, CRISC, CISSP, E-Verify, Microsoft Form 700
Hyundai AutoEver AmericaKorea Exchange: 307950: Provides automotive software and IT services for mobility systems.
5+ YOEBachelor's degree or equivalent experience and 5+ years in technology audit, risk, or control testing. Requires control validation, audit-ready documentation, stakeholder management, and GRC workflow knowledge.
Bristol Myers SquibbNew York Stock Exchange: BMY: Develops and distributes innovative medicines for serious diseases.
8+ YOEBachelor's degree required; 8–10 years in GRC, information security, or technology risk, including 1–2 years in AI, emerging technology, or data governance. Requires AI governance and enterprise control assessment experience.
ServiceNow, OneTrust, Claude, AWS Bedrock, ChatGPT, NIST AI RMF, ISO/IEC 42001, ISO/IEC 23894, GDPR, EU AI Act
Distribution/Vegetation Management Asset Strategy, Advisor (Pomona, CA, US, 91768)
Pomona or California
HybridFull Time
Edison InternationalNYSE: EIX: Generating and distributing electricity to customers in Southern California.
7+ YOESeven+ years in strategic planning at department/organization level; experience in utility asset/vegetation management, geospatial and data analysis, regulatory filings (GRC/WMP/RAMP), stakeholder coordination, and communication materials.