Remote GRC Manager
$139.25k - $168.32kMattermost
Mattermost is the leading collaborative workflow platform for defense, intelligence, security, and critical infrastructure. Trusted by the U.S. Department of War and Fortune 500s, our platform runs on-premises and in private clouds, delivering secure messaging, file sharing, workflow automation, audio/screenshare, and project management—all with full data and operational control. Mattermost powers high-stakes workflows across mission planning, real-time, real-world operations, DevSecOps, incident response, and cyber defense—enabling secure collaboration from tactical edge and DDIL environments to enterprise HQ. Teams operate across web, desktop, and mobile, with embedded interoperability for Microsoft Teams, Outlook, and Microsoft 365.
To learn more, visit
Mattermost is hiring a GRC Manager to own and modernize our governance, risk, and compliance program across both federal and commercial markets.
This is a program-ownership role for someone who brings a modern, engineering-led approach to compliance — harnessing GRC engineering and AI to reduce manual effort and scale our programs. You will own Mattermost’s compliance posture end to end, accountable for our federal readiness and commercial certifications, and you will modernize how we run them: automated, continuously monitored, and AI-native.
You will do the hands-on compliance work while coordinating across internal stakeholders in engineering, infrastructure, and IT who implement controls, the external auditors who assess them, and the customers whose trust rests on the outcome. As the program scales, you will grow and lead the team behind it.
What You’ll Do
- Own and modernize Mattermost’s compliance programs across federal and commercial markets
- Lead readiness, certification, and surveillance cycles across both programs
- Operate the risk management program end to end — from identification and assessment through treatment and acceptance
- Own the third-party and vendor risk management program, including security assessments and supply chain risk
- Apply GRC engineering and automation to replace manual evidence collection with continuous controls monitoring
- Build AI-native workflows to accelerate and improve the quality of recurring compliance work
- Maintain the control library, system security plans, POA&Ms, and policies
- Coordinate external audits from scoping through remediation
- Accelerate deal cycles by owning customer security questionnaires, trust center content, and reusable compliance artifacts
- Grow and lead the GRC team as the program scales
What We’re Looking For
- Bachelor’s degree in computer science, information security, or related field — or significant professional GRC and compliance experience
- Proven senior-level experience in governance, risk, and compliance, security compliance, or IT audit, including direct ownership of a certification or authorization program
- Experience with U.S. Federal standards including CMMC and NIST series (800-171 / 800-53)
- Experience with ISO 27001 and SOC 2 Type II
- Experience operating a formal risk management program
- Experience running a third-party and vendor risk management program
- Experience owning customer-facing security assurance, including security questionnaires and trust center content
- Working knowledge of security controls for cloud environments (AWS, GCP, and/or Azure)
- Excellent written and verbal communication skills
Nice to Have
- Professional GRC certifications such as CISA, CRISC, CISM, CISSP, or CIPP
- Experience working with AI platforms such as Claude, OpenAI, or Gemini
- Experience with compliance automation tooling such as Vanta or Drata, and continuous controls monitoring
- Direct experience applying AI or LLM-based workflows to GRC tasks
- Proficiency in no-code automation or scripting languages
- Past success in critical infrastructure industries including defense, cybersecurity, communications, or manufacturing
How Success Is Measured
- CMMC Level 2 gap assessment and readiness roadmap delivered within first 90 days
- SOC 2 Type II and ISO 27001 audit cycles completed on time without slippage
- Manual evidence collection replaced with automated, continuously monitored controls
- Customer security questionnaires and trust center content maintained to unblock deal cycles
- GRC team grown and operating as a scalable, program-driven function
Why Mattermost
- Mission-driven work: Your contributions directly support the organizations and missions that depend on secure, reliable collaboration
- Remote-first culture: Work from anywhere with a globally distributed, high-trust team built for autonomy and ownership
- Open source at the core: Be part of a vibrant developer community shaping the future of secure collaboration
- AI-forward environment: We actively adopt and build AI-enabled workflows — you’ll work with and on cutting-edge tooling
- Unique scope: Own the compliance program end to end across both federal and commercial markets at a high-growth Series B company
Compensation
Mattermost takes a market-based approach to pay. Actual compensation may vary based on location, skills, experience, qualifications, and market conditions.
Target Salary Range: $139,254-$168,318
U.S. Eligibility & Compliance
This role requires U.S. citizenship. Candidates must be located in the United States and eligible to obtain and maintain a U.S. government security clearance. For more information visit Security Clearances — United States Department of State
Applicants must meet eligibility requirements for access to export-controlled information as defined by U.S. export control laws, including EAR and ITAR. For more information visit the Bureau of Industry and Security and the Directorate of Defense Trade Controls .
Mattermost is an EEO Employer, we are a remote-first, open-source company.
We are continually working to expand our hiring in more countries and regions, ensuring compliance with local laws and regulations, which takes time.
Mattermost values your unique perspective—we welcome all applicants. We encourage individuals from all backgrounds to apply and are committed to assessing candidates based on their skills and qualifications. We do not tolerate discrimination against staff or applicants based on race, religion, national origin, age, disability, pregnancy status, veteran status, or other personal characteristics.
If you require accommodations during the interview process, please let us know—we’re happy to assist.
Jobicy JobID: 153443$212k - $230k
...in the United States is seeking a Director of Governance, Risk, and Compliance (GRC) to define and execute security governance strategies. This role requires strong expertise in managing compliance, overseeing third-party risks, and leading audits. The ideal candidate...Remote work- ...Institute is seeking an experienced Governance, Risk, and Compliance (GRC) professional to lead the design, development, and delivery of... ...This role targets practitioners with hands-on governance, risk management, compliance, audit, or regulatory implementation experience who...Remote job
$170k - $201k
...1, 2022, 2023, 2024) About the Role: We're looking for a GRC Manager to own governance, risk, and compliance for our B2B health benefits... ...operate from the New York Metropolitan area, NY, and remotely via San Francisco/Bay Area, CA, Seattle, WA. For those in our...Remote workFull timeContract workWork at officeImmediate startFlexible hours3 days per week- ...Job Description Job Description Job Summary: We are seeking a Manager, Information Security (GRC) to own and mature Neumo's Governance, Risk, and Compliance program. This role is critical to maintaining our SOC 1, SOC 2, and PCI certifications and to raising our...Remote jobWork at officeLocal area
- PetsApp is seeking a Product Marketing Manager to lead product positioning and messaging within the governance, risk, and compliance space... ...into compelling narratives for banks and fintechs. This remote role involves collaborating with Product, Sales, and Customer Success...Remote job
- ...Deputy Chief Information Security Officer, an Information Technology Manager II in the Security Services Division, the incumbent is... ...the Statewide Information Management Manual (SIMM 5305-A). As the GRC Manager at Caltrans, the incumbent manages issues affecting information...Remote workContract work
- ...into opportunity through its AI-powered GRC Intelligence Platform. More than 50% of the... ...our goals. As our Senior Compensation Manager you are a multiplier- with responsibility... ...signed agreement in place will not create a fee obligation. #LI-Remote #J-18808-Ljbffr...Remote workTemporary workLocal areaFlexible hours
- ...into opportunity through its AI-powered GRC Intelligence Platform. More than 50% of the... ...our goals. As our Senior Compensation Manager you are a multiplier- with responsibility... ...without a signed agreement in place will not create a fee obligation. #LI-Remote...Remote workTemporary workLocal areaFlexible hours
- ...powered Governance, Risk, and Compliance platform. This remote role involves engaging with executive decision... ...of quota-carrying sales experience and knowledge of GRC solutions. Candidates should be prepared to manage territory planning and partner development efforts....Remote work
- ...Marketing Manager Location: Remote (Greater Tampa Bay Area or New York City Preferred) About Compyl Compyl is a fast-growing cybersecurity SaaS company redefining the GRC space and transforming how businesses approach governance, risk, and compliance. We serve...Remote workFreelanceLocal areaFlexible hours
- ...is looking for a strategic and hands-on Senior Product Marketing Manager to own how we bring our platform to market-across messaging,... ...will define how we position Apptega in a crowded cybersecurity and GRC market, create compelling narratives that resonate with our ICP,...Remote work
- ...economies. Ideal location for this role would be Munich, Germany (Remote), with possibility of hybrid options in the future... ...experience in enterprise technology sales, ideally in SaaS or GRC software solutions. ~ Proven success in complex, multi-stakeholder...Remote workWork at officeWork from homeHome office
- ...startup, we specialize in a wide range of GRC (governance, risk, and compliance)... ...tactically on all marketing tasks, while also managing external agencies and contractors to scale... ...significant room for career advancement. Remote-First Culture : Flexibility to work from...Remote workFor contractorsFreelanceLocal areaImmediate startHome officeVisa sponsorshipShift work
- ...Description Client Summary: The first and only third-party risk management platform specifically designed for healthcare providers.... .... Prior exposure to third-party risk management, GRC, or cybersecurity platforms is a strong plus. Compensation...Remote work
- ...application into the CISO / InfoSec and/or Cyber GRC business line(s.) for an early stage... ...via multiple pathways, including both remote and face-to-face client meetings, trade show... ...migration to a new automated paradigm. Manage full-lifecycle sales processes, from prospect...Remote workFull time
- ...OVERVIEW The Identity and Access Management (IAM) Manager reports to the Sr. Director... ...BW/BI, RISE, Fiori, CIS, IAS, SolMan, and GRC Access Control (ARA, ARM, BRM, EAM), including... ...teams. Location of Role USA Remote, able to work from 8AM to 5PM Eastern Time...Remote workWork experience placementLocal area
- ...environments where strong governance, risk management, and compliance practices are critical.... ...Working Hours & Availability Themis is a remote-first team that primarily operates Monday... ...with governance, risk, and compliance (GRC) or Banking-as-a-Service (BaaS)...Remote workMonday to FridayFlexible hoursShift work
- ...for the first time to an enterprise security team managing hundreds of controls. The org spans all areas of Vanta — GRC, Trust, Platform, Self-serve, and AI — and... ...all new parents ~ Health & wellness stipend ~ Remote workspace, internet, and cellphone stipend ~ Commuter...Remote workWork experience placementWork at officeImmediate startFlexible hours
- ...Role: Security Account Manager Location: Remote Security Account Manager IC4/IC5- Job Description (Consulting background | Large, critical... ...5 Type), cloud security architecture, or enterprise risk/GRC for regulated industries Security certifications...Remote work
$176k - $242k
...into opportunity through its AI-powered GRC Intelligence Platform. More than 50% of the... ..., this is the job. This role is remote within the United States. Key Responsibilities... ...B2B SaaS company, including hiring, managing, and developing product marketers Experience...Remote workFlexible hours- ...weeks, not months, 90% fewer resources to manage than the nearest competitor, and a 99.995%... ...compliance, audit, internal controls, or GRC processes; particularly around control evidence... ..., and proactive engagement. Deliver remote services to new and existing customers,...Remote workFull timeLocal area
- ...you, we’d like to meet you! We are seeking a Quality Control Manager for a site in Haskell, TX that will provide Quality Management... .... ~ Ability to work under pressure. ~ Ability to work remote locations. ~ Ability to travel and move depending on project...Remote workContract workFor contractorsWork experience placementFor subcontractor
- ...into opportunity through its AI-powered GRC Intelligence Platform. More than 50% of the... ..., data-driven Senior Demand Generation Manager to lead integrated demand generation programs... ...without a signed agreement in place will not create a fee obligation. #LI-Remote...Remote workFlexible hours
- ...that credible, visible, and actionable data should empower every GRC team's decision-making. Imagine a world where enterprises... ...opportunities to accelerate pipeline growth and close deals. Build and manage a robust sales pipeline to meet and exceed revenue targets....Remote work
- ...A leading company in the United States is looking for a remote Data Entry Clerk to manage help desk operations and assist employees with technical issues. The ideal candidate should possess strong organizational skills, attention to detail, and exemplary communication...Remote workWork from home
- ...Sr. Product Marketing Manager DefenseStorm is hiring a Senior Product Marketing Manager... ...our company. Location Atlanta, GA Remote Job Duties and Responsibilities Own DefenseStorm... ...~ Experience marketing MDR, SOC, GRC, or risk-and-governance products...Remote workLocal area
$110k - $180k
...Senior Technical Project Manager Location : Remote Salary Range: $110,000 - $180,000 per year, depending on experience and qualifications. Employment... .... Experience leading or supporting cybersecurity or GRC implementations, including change management and client-...Remote workFull timeTemporary workLocal areaFlexible hours- ...to Internal Audit and SOX leaders (VPs, CAEs, Heads of SOX, SOX Managers) with sharp discovery, demos, and business cases tied to time savings... ...without SDRs or inbound Fluent in SOX, internal audit, GRC, controls, risk, or compliance Comfortable selling to conservative...Remote workRelocation package
- If you’re putting in full effort but still earning the same paycheck every week… that’s a problem. This opportunity removes the ceiling. You’ll work with clients who have already expressed interest in receiving help. Your role is to guide them through their options...Remote workWork from home
$150k - $170k
...As the Senior Public Relations Manager, you will own the media strategy and execution across... ...and California. #LI-LW1 #LI-REMOTE Axonius is committed to fair and equitable... ...one place to go for Security, IT, and GRC teams to continuously drive actionability...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Remote GRC Manager. Be the first to apply!



