Replit: Cloud-based platform for building and hosting software applications.
8+ YOE8+ years in GRC or information security; deep cloud (GCP/AWS) and security architecture; strong regulatory experience; automation mindset with GRC tools.
GCP, AWS, Vanta, Drata, SOC 2, ISO 27001, PCI, HIPAA
Form Energy: Developing multi-day batteries for grid-scale energy storage.
10+ YOE5+ Mgmt10+ years in cybersecurity/IT GRC with 5+ years leadership; deep ITGC, IAM, EDR/MDR, vulnerability management, incident response, and audit liaison experience; ISO 27001/SOC 2/NIST familiarity; strong executive communication.
5+ YOE5+ years in SaaS GRC, information security, or similar functions; GCP, AI architectures, data governance, model validation, and major compliance frameworks; bachelor's degree or equivalent experience.
Workato: Enterprise platform for automating business workflows and integrating applications.
8+ YOE8+ years in cybersecurity, audits, risk management, or compliance; hands-on FedRAMP experience; cloud security controls; strong communication; eligibility for federal programs.
AWS GovCloud, Azure Government, Google Cloud, NIST 800-53, FedRAMP, PCI-DSS, SOC 2, ISO 27001, 27701
AdobeNASDAQ: ADBE: Provides software for digital media creation and marketing analytics
5+ YOE5+ years GRC/InfoSec experience, knowledge of SOC/ISO/HIPAA/FedRAMP/NIST frameworks, program and audit leadership, strong communication and analytical skills.
AWS, Azure, GCP, Adobe Common Controls Framework (CCF)
F5NASDAQ: FFIV: Provides application delivery networking and multi-cloud security solutions.
10+ YOEBachelor's degree required; 10+ years in cybersecurity/GRC with 3–5 years hands-on engineering; Python, API, and systems-integration experience; ServiceNow IRM and Agentic/LLM framework familiarity; professional certs preferred.
xAI: Develops advanced artificial intelligence systems to understand the universe.
8+ YOE8+ years GRC/security compliance experience in fintech or financial services; hands-on PCI/NYDFS/FFIEC experience; Compliance-as-Code and GRC automation; technical fluency with cloud and security architecture.
Tata Consultancy ServicesNational Stock Exchange of India: TCS: Global provider of IT services, consulting, and business solutions.
5+ years in cybersecurity/TPRM/GRC with hands-on experience running vendor assessments, managing CAPs, stakeholder escalation, and producing leadership reports.
Delinea: Provides identity security and privileged access management software.
4+ YOE4+ years in technical advisory or customer success roles with deep expertise in GRC/IGA, Segregation of Duties, access reviews/certifications, audit evidence collection, and enterprise application integrations.
Fastpath, SAP, Oracle, Microsoft Dynamics, NetSuite, AuditBoard, Workiva
Senior Information Security Analyst, GRC/Responsible AI
Irvine or Milpitas
$125k-$207k/yrOnsiteFull Time
SandiskNasdaq: SNDK: Designs and manufactures flash memory and data storage products.
6+ YOE6+ years information security experience with GRC and AI risk management, bachelor's or equivalent, technical proficiency in threat modeling and risk assessment, familiarity with NIST AI RMF and ISO/IEC 42001, and strong cross‑functional communication.
OWASP Top 10 for LLM Applications, NIST AI RMF, ISO/IEC 42001, STRIDE, PASTA, attack tree analysis, CI/CD
Pune or Milpitas or Seattle or Princeton or Cape Town or London or Zurich or Singapore or Mexico City
RemoteFull Time
ZensarNational Stock Exchange of India: ZENSARTECH: Global technology firm providing digital transformation and infrastructure services.
10+ YOEBachelor's degree, 10+ years in information security, knowledge of ISO 27000/NIST/COSO/COBIT, hands-on with DLP, SIEM, NAC, A/V, EDR, experience performing risk assessments, audits, controls testing, and developing remediation plans.
PenumbraNYSE: PEN: Designs and manufactures medical devices for vascular conditions.
8+ YOEBachelor's in accounting or information systems, 8+ years in IT SOX compliance/InfoSec/IT risk, experience with SOX 404, ITGCs/ITACs, SAP and GRC platforms preferred, strong communication and problem-solving skills.
GFT (Gannett Fleming): Provides infrastructure engineering, design, and construction management services.
10+ YOEBachelor's degree, 10+ years in power utility GRC/cybersecurity/OT, deep knowledge of NERC CIP and FERC, experience with audits and compliance documentation, and certification such as CISSP/CISM/RIMS-CRMP required.
Principal Consultant, Electric Compliance Strategic Initiatives - Location Flexible
Oakland, California, United States
$136k-$232k/yrHybridFull Time
PG&ENYSE: PCG: Provides natural gas and electric service in California.
10+ YOEBachelor's or equivalent experience, 10+ years relevant experience in utility compliance/risk, familiarity with CPUC/FERC/NERC frameworks, strong executive communication and change leadership, proficiency with GRC/SAP/Power BI.
Chicago or Tampa or Charlotte or Atlanta or Austin or Washington or Dallas or Los Angeles or Boston or Florham Park or New York City or San Francisco or San Jose or Philadelphia or Houston
$77k-$202k/yrOnsiteFull Time
PwC: Providing audit, tax, and management consulting services to businesses.
2+ YOEBachelor's degree and at least 2 years delivering SAP compliance, security, and governance solutions (GRC); proficiency with SAP GRC and SAP BW/4HANA; strong communication and analytical skills.
SAP Governance, Risk and Compliance (GRC), SAP BW/4HANA, SAP
Volta: Building and operating GPU-dense infrastructure for AI factories.
3+ YOE3+ years in information security with compliance/GRC/audit experience, hands-on ISO 27001 or SOC 2 work, GRC platform experience, risk assessment skills, strong writing and collaboration with engineers.