New York City or Chicago or Austin or Dallas or Denver or Miami or San Francisco or Seattle
$270k-$290k/yrHybridFull Time
DriveWealth: Provides API-based brokerage infrastructure for fractional stock trading.
15+ YOE15+ years in information security/GRC in regulated financial services; deep SEC/FINRA and global privacy knowledge; hands-on GRC, audit, TPRM, incident response, and executive/board reporting; relevant certifications preferred.
YETINYSE: YETI: Sells premium outdoor gear, coolers, and drinkware.
6+ YOE5+ years experience in SAP GRC and SAP security, SoD risk analysis, SOX compliance knowledge, GRC module administration, strong communication and independent multitasking skills.
Kirkland & Ellis: Provides legal services for corporate, litigation, and transactional matters.
5+ YOEBachelor's degree or equivalent with 5+ years in IT security; experience with security frameworks (ISO 27001, NIST, SOC, SIG), AI governance, vendor risk, GRC platforms, technical writing, and hands-on security technologies. Relevant certs preferred.
CloudflareNYSE: NET: Provides security and performance services for internet properties.
5+ YOE5+ years in security/compliance/automation; strong automation and IaC/Policy-as-Code experience (Terraform, Pulumi, OPA/Rego); proficiency with Python/Go, JS/TypeScript, React, REST APIs; AI governance experience.
5+ YOE5+ years in SaaS GRC or information security; GCP, AI architectures, data governance, model validation, NIST, PCI, ISO, SOC 2, communication, and process improvement experience.
Ultra Clean HoldingsNASDAQ: UCTT: Provides critical subsystems and cleaning services for semiconductor manufacturing.
3+ YOE3+ years in IT governance, risk, compliance, audit, or related field; bachelor's degree or equivalent experience; professional certifications (CRISC, CISA, CISM, CISSP) preferred; experience with control testing, risk registers, third-party risk, and audit readiness.
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
5+ years in cybersecurity/TPRM/GRC with hands-on experience running vendor assessments, managing CAPs, stakeholder escalation, and producing leadership reports.
Security Industry Specialist, Subsidiary & Acquisition GRC
Austin or Hawthorne
$102k-$178k/yrOnsiteFull Time
AmazonNASDAQ: AMZN: Global online retail and cloud computing technology provider.
3+ YOEExperience in security/compliance consulting, 3+ years IT platform implementation, bachelor's in computer science or 5+ years IT security experience, and 3+ years performing technical compliance assessments (e.g., NIST, SOC 2, ISO).
Senior Cybersecurity Engineer (Azure and GRC heavy)
Austin, Texas, United States
OnsiteFull Time
HyliionNYSE American: HYLN: Develops modular fuel-agnostic power generators for clean electricity production.
5+ YOEBachelor's degree,5+ years IT/cybersecurity experience,experience with Microsoft Azure/Entra ID,Intune,Microsoft Defender,MDR,knowledge of NIST800-171/CMMC/SOX controls;CISSP/CISM/Security+/AZ-500/SC-200 preferred.
Microsoft Entra ID, Azure, Microsoft Defender for Endpoint, Microsoft Defender for Office 365, Microsoft Defender for Cloud Apps, Microsoft Defender for Identity, Microsoft Purview, Microsoft Intune, Red Canary, Copilot, Claude, ChatGPT Enterprise
United States or Canada or Columbus or Austin or San Francisco or New York City
$172k-$238k/yrRemoteFull Time
UpstartNasdaq: UPST: AI-powered lending marketplace for consumer and automotive loans.
8+ YOE3+ MgmtBachelor's or equivalent, 8+ years technology risk/information security/IT audit experience in banking, 3+ years people management, FFIEC/OCC regulatory experience, regulator engagement, and GRC program experience; professional certs preferred.
Senior Analyst, IT Internal Controls & SOX Compliance
San Francisco or Salt Lake City or Phoenix or Los Angeles or Chicago or Boston or Austin or New York City or Miami or Tampa or Atlanta or Columbus or Boise or San Diego or Minneapolis or Houston or Raleigh or Nashville or Kansas City or Charlotte or Portland or Philadelphia or Dallas or Washington D.C. or Seattle
$113k-$148k/yrRemoteFull Time
CircleNYSE: CRCL: Digital currency issuer and blockchain financial infrastructure provider.
4+ YOE4+ years Big 4 IT audit/controls experience, Bachelor's in related field, CPA/CISA/CIA/CISSP required; strong SOX/ITGC knowledge, cloud/SaaS/SDLC/IAM experience, ERP/GRC familiarity, and stakeholder communication skills.
Slack, Apple MacOS, Google Workspace, ERP, GRC, AI
Sawdey Solution Services: Provides engineering and technical services to government and defense agencies.
10+ YOE5+ Mgmt10+ years program/project management, 5+ years leading service transitions, experience with security services (SIEM, SOC, vulnerability management, GRC, forensics), CJIS-compliant background check, U.S. citizenship, travel 25–50%, Microsoft Office proficiency; bachelor’s degree preferred.
Microsoft Word, Microsoft PowerPoint, Microsoft Excel, Microsoft Outlook, SIEM, SOC, GRC
Chicago or Tampa or Charlotte or Atlanta or Austin or Washington or Dallas or Los Angeles or Boston or Florham Park or New York City or San Francisco or San Jose or Philadelphia or Houston
$77k-$202k/yrOnsiteFull Time
PwC: Providing audit, tax, and management consulting services to businesses.
2+ YOEBachelor's degree and at least 2 years delivering SAP compliance, security, and governance solutions (GRC); proficiency with SAP GRC and SAP BW/4HANA; strong communication and analytical skills.
SAP Governance, Risk and Compliance (GRC), SAP BW/4HANA, SAP
Curative: Provides employer-sponsored health insurance with zero out-of-pocket costs.
10+ YOE5+ MgmtLead information security and IT strategy, GRC, risk management, security operations, and vendor management; 10+ years in info security with leadership.
ArmNASDAQ: ARM: Designs and licenses processor architectures and semiconductor intellectual property.
Enterprise security leader with deep semiconductor engineering knowledge, security architecture, GRC, IAM, data protection, secure development, and ability to influence engineering and business stakeholders.
EDA, ISO 27001, NIST CSF, NIST 800-53, NIST 800-171, SOC 2, AI
Brivo: Cloud-native platform for physical security and video surveillance management.
6+ YOE6+ years in GRC/IT audit/infosec, experience managing full audit cycles and internal risk assessments, strong written/verbal communication, mentoring ability, high accountability.
Information Security Coordinator – Policy and Training
Austin, Texas, United States
OnsiteFull Time
NXP SemiconductorsNASDAQ: NXPI: Designs and manufactures semiconductors for automotive and IoT applications.
Govern and maintain enterprise security policies and standards; plan, deploy, and measure security training; create clear policy and training content; collaborate with GRC, Security Engineering, IT, Legal, HR, and Communications.
Applied MaterialsNASDAQ: AMAT: Produces equipment and services for chip and display manufacturing.
3+ YOEBachelor's degree and 3–5+ years in product management, procurement technology, or risk/compliance systems; experience with OneTrust or similar GRC platforms; experience configuring enterprise SaaS and integrations/APIs.
Milwaukee or Chicago or New York City or San Francisco or Phoenix or Austin or United States
$133k-$195k/yrRemoteFull Time
DoorDashNYSE: DASH: Local food delivery and on-demand logistics platform.
7+ YOERequires 7+ years in security-focused TPRM, a bachelor's or master's degree, risk assessment and remediation experience, cloud and AI vendor expertise, GRC framework experience, and excellent communication skills.