Manager, GRC Engineering

Posted 9hrs ago

Employment Information

Education
Salary
Experience
Job Type

Report this job

Job expired or something wrong with this job?

Job Description

GRC Engineering Manager leading Workstreet’s client cybersecurity compliance engagements. Managing engineering pods, multi-cloud certifications, and regulatory controls across SOC 2 and ISO 27001 programs.

Responsibilities:

  • Own executive client account management as the primary point of contact across client portfolios
  • Cultivate trusted executive relationships and maintain continuous delivery alignment
  • Lead end-to-end compliance engagements from kickoff through final certification
  • Manage complex account escalations and resolve high-stakes client issues
  • Provide strategic compliance guidance by translating regulatory criteria into actionable technical controls
  • Direct, manage, mentor, and coach engineering pods of 3 to 5 analysts
  • Author and align corporate security policies, procedures, and technical controls across SOC 2, ISO 27001, HIPAA, and PCI DSS
  • Lead multi-cloud SOC 2 and ISO 27001 certification projects across AWS, GCP, and Azure environments
  • Use Drata, Vanta, and Secureframe to track readiness metrics and maintain continuous audit posture
  • Take on active clients within the first 15 days
  • Work during U.S. Pacific Time business hours for client engagements

Requirements:

  • Proven background in direct client account ownership and executive relationship management
  • 5+ years of direct experience leading technical teams, managing pod throughput, and coaching individual performers
  • Hands-on experience building and managing enterprise compliance programs aligned with SOC 2 and ISO 27001
  • Strong practical knowledge implementing technical security controls in AWS, GCP, or Azure
  • Proven ability to manage multiple concurrent technical compliance engagements
  • Bachelor's degree in IT, Cybersecurity, or a related technical discipline
  • Exceptional initiative and ability to operate autonomously
  • Big 4 or elite professional services background in risk advisory, technical assurance, or security consulting helpful
  • Active CISA, CISSP, CISM, or equivalent security certification helpful
  • Experience managing external technical clients in specialized cybersecurity consulting environments helpful
  • Familiarity with HITRUST, PCI DSS, NIST, GDPR, and HIPAA helpful
  • Excellent written and verbal English communication skills
  • Reliable, high-speed internet connection
  • Professional home office supporting confidential conversations and uninterrupted collaboration
  • Availability for a standard 8:00 AM–5:00 PM U.S. Eastern Time schedule
  • Willingness and ability to travel locally for occasional onsite meetings or business activities
  • Live video interviews with camera on and identity verification during recruitment and onboarding
  • Successful identity verification and background screening, where permitted by law
  • Authorization to work in the U.S. without current or future visa sponsorship

Benefits:

  • Career development with mentorship and training opportunities
  • Reimbursement for approved training and certification courses relevant to the current role
  • Competitive base salary
  • Regular performance reviews linked to merit-based appraisals
  • Bonus opportunities
  • Significant room for career advancement
  • Remote-first flexibility to work from anywhere while collaborating with a global team