Information Security GRC Manager
Location: Remote
Compensation: Salary
Reviewed: Tue, Sep 29, 2026
This job expires in: 30 days
Job Summary
Leading governance, risk management, and compliance initiatives, the full-time remote Information Security GRC Manager will ensure alignment of security policies with regulatory requirements while managing enterprise risk and coordinating audits.
Key responsibilities:
- Plan and execute compliance readiness and certification assessments (e.g., SOX, PCI-DSS, NIST CSF, ISO 27001)
- Serve as the primary point of contact for external assessors and auditors, ensuring ongoing compliance with regulatory requirements
- Lead enterprise risk assessments and drive risk-based decision-making across security and business stakeholders
Required qualifications:
- Bachelor's degree in Information Security, Cybersecurity, Computer Science, Business, or related field
- 10+ years of experience in information security, IT risk, or compliance, with 2-3+ years in a GRC-focused role
- Strong knowledge of industry frameworks and standards (e.g. NIST, ISO 27001, COBIT)
- Proven experience managing assessments and working with external regulators and assessors
- Demonstrated ability to manage multiple concurrent initiatives and remediation efforts
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 38,810 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee