Manager, GRC
Core
Lead second line of defense advisory coverage for critical technology and security domains, evaluating risk posture and improving control design to support engineering and security leaders.
Role type
Manager, GRC (Technology Risk & Controls)
Builds
Trusted partnerships ensuring critical risks are addressed in critical functions across disaster recovery, SDLC, AI, IAM, and supply chain.
Domain
Fintech / Cybersecurity / Technology Risk Management
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Technology risk management, IT controls design, IT audit, cybersecurity risk, compliance, full-stack GRC services, risk assessment, control effectiveness evaluation, policy alignment, team management, mentoring, stakeholder influence, regulatory expectation translation, generative AI utilization
Preferred skills
None stated
Technologies
Generative AI
Responsibilities
Lead second line advisory coverage for key technology and security domains; Partner with engineering and technology teams to evaluate domain posture; Review and challenge the design of new and existing risks and controls; Drive coordination across risk, controls, policy, audit, and assurance teams; Intake, triage, and calculate inherent and residual risk; Enable leadership decision-making by communicating risk tradeoffs; Build, grow, and coach a team of analysts
Seniority
Manager, hands-on IC with team leadership