Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

GRC & Incident Manager

$145k - $163k

Lendistry

## GRC & Incident ManagerApplylocations: On-Site - Los Angeles CAtime type: Full timeposted on: Posted 4 Days Agojob requisition id: JR100087Lendistry is an Equal Opportunity/Affirmative Action Employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, or membership in any other group protected by federal, state, or local law.If you need assistance or accommodation due to a disability, you may contact us at View email address on click.appcast.io does not accept unsolicited resumes from recruiters, employment agencies, or staffing firms. To conduct business with Lendistry, a Master Services Agreement (MSA) must be executed and confirmed prior to submitting any information relating to a potential candidate. Without a signed MSA, Lendistry shall not be responsible to any individual or entity for any payment relating to any form of fee or compensation.And, in the event that a resume or candidate is submitted by a recruiter, an employment agency, or a staffing firm without a fully executed MSA, Lendistry has the unrestricted right to pursue and hire any of those candidate(s) without any legal or financial responsibility to the recruiter, agency, and/or firm.**A Day in the Life**The **GRC & Incident Manager** is responsible for leading and maturing the organization’s governance, risk, compliance, and data privacy programs across IT systems, cloud environments, and third-party vendors. This role partners with Security, Engineering, and Compliance to ensure regulatory requirements and privacy obligations are translated into practical controls that protect sensitive data while supporting business operations.In addition to incident command duties, this role leads the organization’s GRC program, including SOC 2 compliance, GLBA Safeguards Rule obligations, ISO/IEC 27001 alignment, and third-party risk management. Data privacy responsibilities are performed in a supporting capacity, ensuring privacy obligations are integrated into incident response, compliance documentation, and vendor oversight.This role operates at the intersection of security operations, IT, compliance, and executive leadership—translating chaos into structured response and measurable improvement, and ensuring the organization’s controls, frameworks, and risk posture remain audit-ready at all times.**Lendistry: Who We Are** We’re proud to be the nation’s largest minority-led, tech-savvy lender for small businesses and commercial real estate. As a certified Community Development Financial Institution (CDFI) and Community Development Entity (CDE), our mission is all about creating economic opportunities and fueling growth for small business owners and their communities. Join us as we pave the way with innovative financing and financial education!**What You’ll Be Doing****Incident Command & Crisis Leadership*** Serve as Incident Commander during security incidents, exercising full command and control over response operations.* Collaborate with stakeholders to develop, execute, and maintain Incident Action Plans (IAPs) to drive structured, measurable response.* Make high-impact decisions under pressure, balancing safety, regulatory risk, and business continuity.* Coordinate internal response teams including Security Operations, Engineering, IT, Legal, Compliance, Communications, and Executive Leadership.* Participate in post-incident reviews and drive corrective actions to close gaps and reduce recurrence.**Physical Security Operations*** Manage physical security incidents including unauthorized access, safety threats, and facility disruptions.* Coordinate with Facilities, HR, Legal, and local authorities as needed during physical security events.* Ensure physical security controls align with cybersecurity, business continuity, and compliance programs.**Coordination & Stakeholder Communication*** Act as the central coordination point between technical response teams and non-technical stakeholders during incidents.* Coordinate with external parties including law enforcement, emergency services, regulators, and vendors when required.**Metrics, Analysis & Continuous Improvement*** Collaborate with stakeholders to improve incident response playbooks, escalation models, and readiness posture.* Participate in tabletop exercises and incident simulations to validate response capability and team readiness.**Governance, Risk & Compliance*** Maintain and operate the organization’s SOC 2 compliance program (Type I and Type II), including control ownership, evidence collection, auditor coordination, and remediation tracking.* Support alignment with ISO/IEC 27001, including risk assessments, Statement of Applicability support, and control mapping.* Manage compliance obligations under GLBA, including Safeguards Rule requirements, vendor oversight, and risk documentation.* Conduct periodic risk assessments and control effectiveness reviews across people, process, and technology.* Maintain GRC documentation, policies, standards, procedures, and risk registers in a continuous-compliance model.* Partner with internal stakeholders to translate regulatory requirements into practical, auditable controls.**Third-Party & Vendor Risk*** Support third-party risk assessments with a focus on data handling, privacy, and regulatory exposure.* Review vendor security and privacy documentation (SOC reports, SIGs, DPAs).* Track remediation items and ensure vendors meet contractual and regulatory obligations.**Data Privacy & Protection*** Support the organization’s data privacy program by maintaining data inventories, data flow diagrams, and privacy documentation aligned to applicable U.S. state privacy laws and GLBA.* Assist in privacy and data protection impact assessments (PIAs/DPIAs) and contribute to privacy-by-design reviews across systems and product initiatives.* Support breach assessment activities for incidents involving personal data, including scope determination, regulatory notification analysis, and impact documentation.* Coordinate with Legal and Compliance to ensure privacy obligations are reflected in incident response, vendor contracts, and control documentation.**Cross-Functional Collaboration*** Work closely with Security, Engineering, Product, Legal, Compliance, and Operations teams to embed security and compliance controls across the organization.* Provide practical guidance that balances compliance, risk reduction, and business velocity.* Assist with regulator, auditor, and customer due-diligence inquiries.**Your Areas of Knowledge and Expertise*** 3–5 years of experience in Governance, Risk, and Compliance (GRC), data privacy, risk management, or a related field, preferably within a regulated environment such as fintech or financial services.* Hands-on experience supporting regulatory and compliance programs, including SOC 2 and GLBA Safeguards Rule, along with familiarity with U.S. state privacy laws (e.g., CA, CO, VA, CT, UT, TX, OR, MT, NJ, TN, IA, IN, DE, NE, NH, MD, MN) and global privacy frameworks such as GDPR, PIPEDA, LGPD, or DPDPA.* Experience implementing and administering GRC platforms, including managing compliance workflows, evidence collection, audit readiness, and risk tracking across multiple workstreams.* Demonstrated ability to perform privacy and security risk assessments, including privacy impact assessments (PIAs), data protection impact assessments (DPIAs), and data security risk assessments, with strong documentation and evidence-management practices.* Hands-on experience developing and maintaining data inventories, data maps, and data flow diagrams to support privacy compliance and regulatory obligations.* Technical literacy in modern enterprise environments, including familiarity with cloud platforms (AWS, Azure), data architecture, database management (SQL), automation tools, and scripting languages such as Python.* Understanding of privacy engineering and secure system design, including familiarity with privacy-enhancing technologies such as differential privacy, federated learning, and secure multi-party computation (particularly in AI/ML pipelines).* Working knowledge of data mapping and automation tools used to manage data subject rights requests and privacy operations workflows.* Strong analytical, organizational, and documentation skills, with the ability to manage multiple compliance initiatives independently and communicate effectively across technical, legal, and business stakeholders.* Professional certifications such as CIPT or CDPSE required; CIPM and CISSP preferred.* Bachelor’s degree in Computer Science, Information Security, or a related field, or an equivalent combination of professional experience, certifications, and alternative education.**Why You'll Love Working Here:*** Comprehensive Medical, Dental, and Vision Insurance* Generous Paid Time Off* Birthday Day Off* 12 Paid Company Holidays* 401(k) Match* FSA and HSA* Paid Life Insurance* Paid Disability Insurance* Pet Insurance* Employee Assistance Program (EAP)* Professional Development Courses* In Office Provided Snacks and Drinks* Gym Facilities (LA & Tustin/CEC Offices)* In Office Engagement Activities**Compensation Range**The US base salary range for this full-time position is **$145,000-$163,000** annually.Our salary ranges are determined by role, level, and location.The range displayed on each job posting reflects the minimum and maximum base salary for new hires for the position across all US locations. Within the range, individual pay is determined by multiple factors like job-related skills, experience, and state of residence. Your recruiter can share more about the specific salary range during the interview process.Please note that the compensation details listed in US role postings reflect the base salary only, and do not include any variable compensation elements.**Physical Requirements**This is a stationary position that requires frequent sitting (approximately 95%), repetitive wrist motions, grasping, speaking, listening, close vision, and the ability to adjust focus. It also may require occasional standing, lifting, carrying of 20lbs or less, walking, kneeling, bending/stooping, twisting, pulling/pushing, and reaching above the shoulder. Employees in this position must be physically able to efficiently perform the essential functions of the position. #J-18808-Ljbffr

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the GRC & Incident Manager in Los Angeles, CA vacancy
  • $145k - $163k

     ...Lendistry, LLC. is seeking a GRC & Incident Manager to enhance governance, risk compliance, and data privacy frameworks across IT systems and third-party vendors. This role demands leadership during incidents, collaboration across stakeholders, and maintaining continuous... 
    Suggested

    Lendistry

    Los Angeles, CA
    2 days ago
  • $60k - $150k

     ...prominent tech company is seeking a Mid-Market Account Executive to manage Core and Core+ deals within high-growth firms. This role focuses...  ...$150K+ range. Ideal candidates will have a strong background in GRC sales and B2B SaaS, with proven success in closing larger deals... 
    Suggested
    Flexible hours

    Vibotek LLC

    Los Angeles, CA
    3 days ago
  • SHEIN Distribution Corporation in Los Angeles is seeking a GRC Risk Manager responsible for implementing the risk management framework and ensuring compliance across global operations. Candidates should have extensive experience in information security risk management,... 
    Suggested

    SHEIN Distribution Corporation

    Los Angeles, CA
    1 day ago
  • $150k - $170k

     ...Job Summary The Sr Project Manager - Information Security plays a critical leadership...  ...Security, Governance, Risk & Compliance (GRC) and other cross‑functional leaders to anticipate...  ...such as Security Operations (SOC), Incident Response, Vulnerability Management, Governance... 
    Suggested
    Full time
    Contract work
    Local area

    AEG

    Los Angeles, CA
    2 days ago
  • $85k - $125k

     ...Traveling Quality Manager (Mission Critical) We are looking to add a Quality Manager to the team to ensure that all project management...  ...and corrective action for non-conforming work or Quality Incidents with the QPM. Maintain a record of all Non-Conforming Work.... 
    Suggested
    Contract work
    Work experience placement
    For subcontractor
    Casual work
    Immediate start
    Remote work
    Flexible hours

    Aldridge

    Los Angeles, CA
    5 days ago
  •  ...advocacy. Our objective is to empower people to manage their own health with improved outcomes...  ...compliance program before they sign. The GRC Lead makes that evidence real. This...  ...classification, acceptable use, incident response, and breach notification ~... 
    Remote work
    Worldwide
    Flexible hours
    Afternoon shift
    Weekday work

    Human Health Project Inc

    Los Angeles, CA
    4 days ago
  • $185k - $277k

     ...Hybrid/Remote Job Overview The Senior Manager of Enterprise Security is a technical...  ...~ Work with the information security GRC function to adapt and evolvesecurity policies...  ...network security, detection engineering, incident response, endpoint management, custom... 
    Work at office
    Remote work

    Relativity

    Los Angeles, CA
    4 days ago
  • $180k - $200k

     ...General Manager, Major Event Operations Highland Electric Fleets' mission is to make electric fleets accessible and affordable for...  ...scheduling, maintenance staffing, spare buses, reporting, and incident response Ensure delivery against timelines, service standards... 
    For contractors
    For subcontractor
    Local area

    Highland Electric Fleets

    Los Angeles, CA
    3 days ago
  •  ...Position Purpose: The Behavioral Health Quality Assurance Manager is responsible for quality assurance and training for all Department...  .... # Identify, report, and help mitigate unsafe conditions, incidents, or hazards in the workplace. # Use equipment, tools, and... 
    Contract work

    JWCH Institute

    Los Angeles, CA
    a month ago
  • $130k - $190k

     ...work practices to educate and inform and guide project teams on management of environmental and hazardous materials reports and...  ...Understand site safety trends and participate in reducing Project Incident Rates by meeting or exceeding established Business Unit (BU) goals... 
    Permanent employment
    Full time
    Temporary work
    For subcontractor
    Work at office
    Local area
    Immediate start
    Long distance

    Turner Construction

    Los Angeles, CA
    4 days ago
  • $100k - $115k

     ...Sr. Technical Account Manager Chicago, Illinois, United States; Denver, Colorado, United States; Irvine, California, United States...  ...integrations. Proactive Troubleshooting: Provide hands-on support for incident response and issue resolution, ensuring data and inventory... 
    Work experience placement
    Local area

    Viant

    Los Angeles, CA
    22 days ago
  • $155k - $175k

     ...of SaaS security! We are hiring a proactive Technical Account Manager (TAM) professional to join our Customer Success team. If you're...  ...Experience with cybersecurity solution stacks Experience in incident response, threat triage, log analysis, and data correlation is... 
    Remote work
    Work from home
    Flexible hours

    Obsidian Security

    Los Angeles, CA
    6 days ago
  • $100k - $150k

     ...Remote/Hybrid Job Overview The Technical Account Management Team proactively supports our customers in meeting their goals...  ...minimized Help guide the resolution of critical customer incidents Lead technical success plans to ensure customers have a positive... 
    Remote work

    Relativity

    Los Angeles, CA
    5 days ago
  • $26.5 per hour

     ...of our team.At Calif Chicken Cafe we know our Assistant General Managers are a key component to the success that we achieve. We are...  ...trainings using the Learning Management System (LMS)Following any incident, promptly investigate by gathering evidence and statementsAssist... 
    Hourly pay
    Work at office
    Local area
    Immediate start
    All shifts
    Shift work
    Night shift
    Weekend work
    Afternoon shift
    Early shift

    Calif-Chicken-Cafe

    Montebello, CA
    2 days ago
  • Akraya, Inc. is seeking a Project/Program Manager in Hawthorne, CA to support real-time community safety operations. This role involves coordinating incident response and developing Standard Operating Procedures (SOP) for operational workflows. The ideal candidate will... 

    Akraya, Inc.

    Hawthorne, CA
    1 day ago
  • $115k - $130k

     ...a Senior Associate in Security Operations, based in Los Angeles, CA. This crucial role involves managing day-to-day security operations, vendor relationships, and incident response coordination. Candidates should have over 5 years of experience in security operations with... 

    Andersen

    Los Angeles, CA
    1 day ago
  • $89.89k - $112.37k

     ...Position is All About Reporting to the Assistant General Manager of Operations, the Manager, Operations Services is responsible...  ...Ensure safe working practices are in place, documenting accidents/incidents in a timely manner and be alert to potential safety issues... 
    Full time
    Work experience placement
    Local area
    Flexible hours
    Night shift

    San Francisco Art Institute

    Beverly Hills, CA
    7 days ago
  • $1,000 per month

     ...Technical Account Manager The Technical Account Manager at GreyOwl serves as the strategic bridge between our clients and our technical...  ...Business Reviews (QBRs) with data-driven insights (uptime, incident response, asset trends). Translate technical metrics into business... 
    Night shift

    Onni Inc

    Los Angeles, CA
    6 days ago
  • $40 - $45 per hour

     ...Position: Project Manager - Community Safety/Crisis Operations Location: Hybrid 3x/onsite - Hawthorne, CA Duration: 10-month contract...  ...and ensuring service integrity. When not responding to active incidents, you will document workflows, identify automation opportunities... 
    Contract work
    Local area

    Apex Systems

    Hawthorne, CA
    7 days ago
  • $40 - $41 per hour

     ...services, delivering real-time operational support during active incidents and safeguarding the integrity of services such as Search Party...  ...Dogs, Fire Watch, and Community Requests. You will monitor and manage live events, collaborate with external partners, and ensure... 
    Contract work
    Temporary work
    Casual work
    Local area
    Monday to Friday
    Weekend work

    Aston Carter

    Hawthorne, CA
    3 days ago
  • $150k - $190k

     ...Manager, Production Support & Service Reliability This position is not eligible for immigration sponsorship. The Manager of Production...  ...Reliability owns the production support operating model, incident management, service levels, release-watch support, escalation governance... 
    Work at office
    Local area
    Remote work
    2 days per week

    Accordion USA

    Los Angeles, CA
    4 days ago
  • $45 - $47 per hour

     ...Skills: Safety Operations-Expert, Crisis Operations-Proficient, Incident Response-Advanced, Process Documentation-Skilled, AI Assisted...  ...hour #LP Job Summary: We are seeking a Project/Program Manager to support real-time community safety operations and... 
    Hourly pay
    Contract work

    Akraya

    Hawthorne, CA
    7 days ago
  • $165k - $220k

     ...role We are seeking a hands-on, execution-focused Engineering Manager to lead the development and optimization of our eCommerce platform...  ...responsiveness Monitor and maintain system health, uptime, and incident response processes Tech Stack & Integrations Support and... 
    Local area

    Brio Water

    Glendale, CA
    3 days ago
  • $115.52k - $150.24k

     ...Associate Director supervises the Mental and Spiritual Health Manager and the Mobile Clinics Manager, supporting integrated, high-quality...  ...and clinic-based services. Provides leadership during critical incidents and crisis situations, ensuring coordinated response across... 
    Contract work
    For subcontractor
    Local area

    QueensCare

    Los Angeles, CA
    3 days ago
  • $120k - $135k

     ...good design is sustainable. The Opportunity: Healthcare Project Manager is a project leadership position with responsibility for...  ...of the offer ****@*****.*** . PERKINS EASTMAN treats incidents of fraud seriously so,if your personal information has been compromised... 
    Contract work
    Work at office
    Local area
    Immediate start
    Worldwide
    Work visa

    Perkins Eastman

    Los Angeles, CA
    2 days ago
  • Director of Technical Account Management, Customer Success Leading DLP AI Cybersecurity Provider | Remote (US) | Full-Time The Mission...  ...ticket into a cybersecurity success story . Triage Like a Cyber Incident Commander Partner with Engineering to reproduce, prioritize,... 
    Full time
    Remote work
    Work from home
    Sleeping nights
    Flexible hours
    Night shift

    Planet Green Search

    Los Angeles, CA
    2 days ago
  • $162k - $310k

    OpenAI is seeking a GRC Program Manager to ensure compliance with US government regulations, including FedRAMP. This role involves driving ATO processes for multiple government clients and working closely with engineering teams to implement security controls. The ideal... 

    OpenAI

    Los Angeles, CA
    4 days ago
  •  ...Title of Position: Associate Residential Manager Location: Percy Village Exempt/Non-Exempt: Exempt Union/ Non-Union: Non-Union Supervisor...  ...accurately recorded if dispensed to resident. Initiates Incident Reports when appropriate. Participates in the delivery and... 
    Full time
    Contract work
    Work at office
    Immediate start
    Shift work
    Weekend work
    Afternoon shift

    GATEWAYS HOSPITAL & MENTAL HEALTH CENTER

    Los Angeles, CA
    5 days ago
  • $145k - $175k

     ...connectivity-from planning to flawless execution. General Manager, Convention Services On Site at the Los Angeles Convention...  ...Maintaining and improving convention services, escalation paths, and incident management. Collaborate with other Boldyn convention GM's to... 
    Flexible hours

    Boldyn Networks

    Los Angeles, CA
    6 days ago
  • $117k - $171.6k

     ...About the Role As the Regional Marketing Team Lead and Market Manager, this role provides strategic leadership and direction across...  ...HARMAN, please cease communication immediately and report the incident to us through: ****@*****.***. You Belong... 
    Full time
    Temporary work
    Immediate start
    Remote work
    Flexible hours

    Harman International Industries

    Los Angeles, CA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to GRC & Incident Manager. Be the first to apply!