GRC Manager

🕒 3 days ago

🇺🇸 United States – Remote

💵 $130k - $160k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Nabla

Nabla

51 - 200 employees

Founded 2018

🤖 Artificial Intelligence

⚕️ Healthcare Insurance

🏥 Healthcare

💰 Series A on 2021-04

Artificial Intelligence • Healthcare Insurance • Healthcare

Nabla is a leading ambient AI assistant designed to alleviate the documentation burden on healthcare providers. By integrating advanced AI technology, Nabla enables clinicians to save significant time—averaging 2 hours per day—allowing them to focus on patient care rather than administrative tasks. With deployment in over 100 health organizations and a user base of more than 50,000 clinicians, Nabla has transformed clinical documentation practices and enhanced the overall healthcare experience.

📋 Description

• Reporting to the Head of Information Security & Compliance, you will work alongside Security, Engineering, Product and Legal teams to mature Nabla’s Governance, Risk & Compliance programs • Manage the GRC control evidence library including investigation of control flags and evidence collection • Manage the vendor risk program including intake of new vendor requests, security and risk assessments, periodic reviews and ongoing vendor monitoring • Review and interpret security assurance artifacts such as SOC 2 Type II reports, penetration test reports, CAIQ, SIG, ISO certifications, and other compliance attestations • Assist the Head of Information Security with the implementation and ongoing operation of security and risk management frameworks, including net new control additions (e.g., GDPR, ISO, SOC 2) • Assist the Head of Information Security with security questionnaires and client audits including management of knowledge base and tracking • Support cyber GRC activities, including tracking information security risks, risk exceptions, and remediation plans • Manage security/compliance onboarding requirements including security awareness training, access checklists, and quarterly access reviews • Assist with the administration and continuous improvement of the company’s security awareness and training program, including tracking completion metrics and updating training content as needed • Own the ongoing review and maintenance of organizational security policies, standards, and procedures. Assist in identifying policy gaps based on evolving regulatory requirements, business needs, and industry best practices

🎯 Requirements

• 4+ years of experience in GRC, Information Security, or a closely related function — with meaningful time spent building or scaling programs, not just running them • Demonstrated hands-on experience in GRC program at scale — ideally in a high-growth SaaS or technology company • Experience working with GRC platforms and tooling to manage compliance activities, risk registers, policy lifecycle management, audit evidence collection, and workflow automation • Deep expertise across multiple compliance and security frameworks, including SOC 2 Type II, ISO 27001 • Healthcare experience preferred - HIPAA background and understanding of controls • Experience conducting and managing product & enterprise risk assessments, with a working knowledge of risk quantification methodologies • AI forward individual who will look to automate manual processes today • Relevant certifications strongly preferred: CISM, CRISC, CISA, CCSP, or comparable credentials

🏖️ Benefits

• Competitive salary and stock options • 100% individual coverage for Medical, Dental, and Vision insurance • Unlimited paid time off and 11 national holidays • Unlimited sick leave • Paid leave for new parents • $1,000 to purchase home office equipment • Full ownership of your time and schedule

Apply Now

Similar Jobs

🕒 3 days ago

Onebrief

1 - 10

🎖️ Defense

💼 Consulting

🏛️ Government

GRC Program Architect designing Onebrief's compliance frameworks across multiple federal standards like RMF and CMMC. Collaborating with engineering to implement effective technical security controls.

🇺🇸 United States – Remote

💵 $160k - $200k / year

💰 $21M Venture Round on 2022-10

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🕒 3 days ago

US LBM

10,000+ employees

📦 Logistics

🏭 Manufacturing

💼 Consulting

DOT Compliance Specialist ensuring compliance with transportation regulations at US LBM. Managing compliance reporting, investigations, and enforcing DOT and FMCSA regulations.

🇺🇸 United States – Remote

💰 Private Equity Round on 2023-10

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🕒 3 days ago

Crypto.com

1001 - 5000

₿ Crypto

💳 Fintech

🔐 Security

Compliance Manager supporting U.S. exchange operations at Crypto.com. Engaging with compliance tasks from reporting to regulation remediation requirements.

🇺🇸 United States – Remote

💵 $80k - $100k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🦅 H1B Visa Sponsor

info

🕒 3 days ago

Crypto.com

1001 - 5000

₿ Crypto

💳 Fintech

🔐 Security

Market Surveillance Analyst responsible for detecting and investigating trading activity to ensure compliance on a U.S. derivatives exchange. Engaging with market participants and regulators, focusing on surveillance and compliance measures.

🇺🇸 United States – Remote

💵 $90k - $110k / year

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🦅 H1B Visa Sponsor

info

🕒 3 days ago

Alliant Insurance Services

10,000+ employees

🛡️ Insurance

🤝 B2B

💼 Consulting

Lead Compliance Consultant responsible for providing technical guidance in employee benefits compliance. Leading team members and developing compliance content for clients and internal staff.

🇺🇸 United States – Remote

💰 $690M Debt Financing - Alliant Insurance Services on 2019-10

⏰ Full Time

🟠 Senior

🚔 Compliance