Governance, Risk & Compliance (GRC) Manager
$190k - $215kSigma Computing
Governance, Risk & Compliance (GRC) Manager
Sigma is seeking an experienced GRC Manager to lead and scale our governance, risk, and compliance programs. This role is based in our San Francisco office or upcoming New York office and reports to the General Counsel. You'll have the opportunity to build a strategic, enterprise-wide GRC function that enables business growth while managing organizational risk. As our GRC Manager, you'll partner with Legal, Engineering, Product, Sales, Operations, and leadership to develop a comprehensive GRC framework that protects Sigma's interests, supports our strategic objectives, and builds stakeholder trust. You'll mature our governance structures, implement scalable risk management processes, and ensure compliance with applicable regulatory requirements-all while enabling the business to move quickly and confidently. What You'll Do Governance- Design and implement governance frameworks, including reporting, policy governance, and control oversight
- Establish and maintain enterprise policies, standards, and procedures across technology, security, privacy, and operational functions
- Build and lead a governance committee structure that provides appropriate oversight and decision-making
- Create governance dashboards and metrics to provide visibility into program maturity and effectiveness
- Partner with leadership to align governance activities with business strategy and risk appetite
- Develop and operate a comprehensive Enterprise Risk Management (ERM) program
- Conduct regular enterprise-wide risk assessments and maintain a dynamic risk register
- Build and maintain business continuity and disaster recovery programs, including regular testing and tabletop exercises
- Implement third-party risk management processes, including vendor risk assessments, contract reviews, and ongoing monitoring
- Create risk treatment plans and track remediation activities across the organization
- Facilitate risk-informed decision-making at all levels of the organization
- Coordinate with functional leaders to ensure risks across all business areas are identified and managed appropriately
- Own audit and certification programs including SOC 2, ISO 27001, HIPAA, and other relevant standards
- Develop and maintain compliance monitoring programs to track regulatory changes and work with the legal team to assess impact
- Partner with HR and Legal to support labor & employment compliance programs, including workplace safety, anti-discrimination, wage and hour requirements, and multi-jurisdictional employment regulations
- Monitor and ensure adherence to industry-specific regulatory requirements relevant to Sigma's business operations
- Manage security awareness training programs enterprise-wide
- Conduct internal audits and assessments to validate control effectiveness
- Coordinate external audits and assessments with third-party auditors
- Support sales and customer success teams with compliance documentation and security inquiries
- Develop customer-facing materials that articulate Sigma's risk management and compliance posture
- Complete and manage responses to customer security questionnaires and assessments (VSAs, SIGs, custom questionnaires)
- Enable efficient deal cycles by maintaining ready-to-use compliance artifacts, trust center content, and documentation
- Partner with Sales Engineering and Solutions teams to address prospect security and compliance requirements
- 4+ years of experience in governance, risk management, and/or compliance roles, preferably in SaaS or technology companies
- Demonstrated experience building or significantly maturing a GRC program from the ground up
- Track record of successfully leading certification audits (SOC 2, ISO 27001, HIPAA, or similar)
- Experience implementing risk management frameworks (COSO, ISO 31000, NIST RMF, or similar)
- Strong knowledge of data privacy regulations and their practical application (GDPR, CCPA, etc.)
- Experience developing and maintaining information security and privacy policies, procedures, and control frameworks
- Strong business acumen with ability to translate risk and compliance requirements into business value
- Excellent communication skills with ability to influence stakeholders at all levels, including leadership
- Proven ability to manage multiple priorities and stakeholders in a fast-paced, high-growth environment
- Collaborative mindset and commitment to enabling business success while managing risk
- Experience with GRC platforms (ServiceNow GRC, Archer, LogicGate, or similar)
- Hands-on experience with cloud environments (GCP, AWS, Azure) from a compliance and security perspective
- Experience with labor & employment compliance or cross-functional collaboration with HR on regulatory matters
- Familiarity with multi-state or international employment regulations
- Experience with continuous compliance automation tools (Vanta, Drata, Secureframe, Tugboat, or similar)
- Professional certifications such as CRISC, CISA, CISM, CGEIT, CISSP, or CIPP
- Experience in high-growth SaaS or technology companies
- Background in both technical and operational risk management
- Experience working in organizations with distributed or remote teams
- Familiarity with security frameworks such as NIST CSF, CIS Controls, or OWASP
Sigma announced its $80M in Series E financing in May 2026. The round was led by Princeville Capital, with new strategic investors Databricks Ventures, ServiceNow Ventures, and Workday Ventures participating alongside returning investors Altimeter Capital, Avenir Growth Capital, D1 Capital Partners, K5 Global, NewView Capital, Spark Capital, Sutter Hill Ventures, and XN. This milestone follows Sigma reaching $200M in annual recurring revenue in April 2026, with more than 100% year-over-year growth and 1.1 million new active users added in the latest fiscal year. Come join us!
Benefits For Our Full-Time Employees:
- Equity
- Generous health benefits
- Flexible time off policy. Take the time off you need!
- Paid bonding time for all new parents
- Traditional and Roth 401k
- Commuter and FSA benefits
- Lunch Program
- Dog friendly office
Sigma is an equal opportunity employer. We are committed to building a smart and strong team regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran, or any other protected status. We look forward to learning how your experience can enable all of us to grow. Note: We have an in-office work environment in all our offices in SF, NYC, London and Sydney. Our Privacy Practices When you submit a job application on this site, Sigma processes your personal data for the purposes of evaluating your candidacy for employment at Sigma and as otherwise needed throughout the recruitment and hiring process. Please review Sigma's Candidate Privacy Notice for more details. Please note that your personal data may be transferred to a country other than the one in which it was provided (including to the USA, the UK, and Canada, Australia).
Sigma's use of AI This hiring process utilizes artificial intelligence tools to assist in candidate screening and assessment. Our AI tools are designed to complement, not replace, human decision-making.
Vacancy posted 4 days ago
Similar jobs that could be interesting for youBased on the Governance, Risk & Compliance (GRC) Manager in New York, NY vacancy
$190k - $215k
Governance, Risk & Compliance (GRC) Manager Sigma is seeking an experienced GRC Manager to lead and scale our governance, risk, and compliance programs. This role is based in our San Francisco office or upcoming New York office and reports to the General Counsel. You'll...SuggestedFull timeContract workWork at officeRemote workFlexible hours- ...Radar Senior GRC Analyst Radar is the global leader in geolocation... ...scale Radar's security and compliance programs, with a focus on third-party risk and modern SaaS governance. You'll partner with... ...Security teams to evaluate vendors, manage risk, and help shape a...SuggestedWork at officeRemote work
$120k - $150k
...solve highly relevant and complex risks and challenges associated with... ...Overview DTEX is seeking a GRC Analyst to support day‑to‑day governance, risk, and compliance activities across the organization... ...control execution, evidence management, continuous monitoring, and audit...SuggestedRemote workWork from homeWorldwideFlexible hours$130k - $160k
Alumni Ventures is seeking a Senior GRC Analyst to operate and mature governance, risk, compliance, and audit readiness programs. This role involves collaboration across departments to ensure effective compliance practices. Ideal candidates have 5+ years in GRC and experience...SuggestedRemote jobFlexible hours- CybSafe is seeking an Analyst, GRC - Public Sector to enhance governance, risk, and compliance operations. You will manage compliance efficiency and audit readiness for the public sector. Your role includes coordinating Third Party assessments, overseeing continuous monitoring...SuggestedRemote job
- Radar is hiring a Senior GRC Analyst in New York City to enhance security and compliance programs, focusing on third-party risk and SaaS governance. You will work with various teams to evaluate... ...Trust Lead. A passion for risk management and emerging tech is essential for...
$130k - $160k
...Department Engineering Team & Role As a Senior GRC Analyst at Benepass, you will help operate and mature the governance, risk, compliance, audit readiness, and customer assurance... ...auditor coordination, and audit response management. Control Testing: Maintain recurring...Full timeWork at officeRemote workWork from homeFlexible hours$125k - $135k
A dynamic data insights platform in the United States is seeking a Governance, Risk, Compliance (GRC) Analyst to oversee policies and ensure regulatory compliance. Key responsibilities include managing Third Party Risk Management, performing risk assessments, and coordinating...Remote job- Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience in...Remote workFlexible hours
- A security consulting company in the United States is looking for a GRC Analyst II to support governance programs for clients. In this role, you will onboard customers, perform gap assessments, and develop security policies. The ideal candidate will have 2-3 years in information...
- Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential... ...for efficiency and automation. Policy & Procedure Management - Analyze, draft, update, and maintain security and...Work at officeLocal areaRemote workFlexible hours
- ...Director of Governance, Risk & Compliance (GRC) (Volunteer) PromiseShield | Security Governance, Risk Management & Compliance Organization: Mentor A Promise (MAP) Division: PromiseShield Location: Remote / Hybrid (NYC Collaboration as Needed) Type: Volunteer...Remote work10 hours per week
$212k - $230k
Director, Governance, Risk, and Compliance (GRC) Remote - USA At Clover, the Business Enablement team leads our technological advancement while ensuring... .... We deliver user-friendly corporate applications, manage complex data ecosystems, and provide efficient tech solutions...Temporary workFixed term contractWork at officeImmediate startRemote workFlexible hoursShift work- A leading provider of procurement solutions is seeking a Manager for InfoSec Governance Risk and Compliance (GRC) in New York City. This role involves leading a team to manage the GRC program, ensuring compliance with certifications, and serving as a subject matter expert...
- A growing fintech company is seeking a GRC Program Manager to lead governance, risk, and compliance initiatives. The role encompasses managing audits like SOC 1 and SOC 2, developing compliance frameworks, and collaborating with different teams to ensure operational integrity...Remote workFlexible hours
- ## Customer Success Manager - GRC (Governance, Risk & Compliance)Applylocations: Denver: New York City: Scottsdale: Charleston: USA - Remotetime type: Full timeposted on: Posted Yesterdayjob requisition id: R11819Workiva Customer Success Managers (CSM) are a critical part...Work at officeRemote workFlexible hours
$212k - $230k
...technology company in the United States is seeking a Director of Governance, Risk, and Compliance (GRC) to define and execute security governance strategies. This role requires strong expertise in managing compliance, overseeing third-party risks, and leading audits....Remote job$205k - $225k
Genesis10 is currently seeking a Security Governance Risk and Compliance Manager - Hybrid for a direct placement position with a Global Professional Services... ...Provide senior guidance and awareness of the GRC program to partnering departments (e.g., Risk, Procurement...Permanent employmentFull timeContract work- ...impact is felt by businesses, governments, and millions of people... ...Socure is seeking an Analyst, GRC - Public Sector to execute and... ...the company's governance, risk, and compliance operations for its public sector... ...and audit readiness by managing vulnerability remediation, continuous...Permanent employmentContract work
- ...The Role Rogo is hiring a GRC Analyst to support our customer... ...trust, security assurance, and compliance programs as we scale globally.... ...to ensure Rogo's controls, risk posture, and security practices... ...to detail and the ability to manage multiple parallel requests without...
$90k - $150k
Governance, Risk, and Compliance Supervisor or Manager Job Category: Advisory Requisition Number: GOVER002831 Posted: November 12, 2025 Full-Time Hybrid Locations... ...York City-based Governance, Risk, and Compliance (GRC) practice is looking for an ambitious Supervisor or...Full timeWork at officeFlexible hours3 days per week$95k - $115k
...tech company specializing in identity verification is looking for an Analyst in GRC for the public sector. This role involves enhancing governance, risk, and compliance operations, managing vulnerability remediation, and collaborating with various teams for regulatory compliance...Remote job- ...read on... The Information Security GRC Analyst III is responsible for... ...- 5:00pm Responsibilities Monitor compliance by assisting in protecting the integrity... ...effective, functioning as designed, and managed at the appropriate level of risk. Coordinate IT self‑assessment...Monday to Friday
- A cutting-edge technology firm in the United States is seeking a Senior GRC Analyst. The role requires 5+ years of experience in risk management, compliance, and governance. You will support the organization's GRC program, maintain security compliance frameworks, and conduct...Remote job
- ...Passionate about cybersecurity, risk, and compliance? Ready to grow your career... ...-time, remote Entry-Level GRC Analyst. This is a contract... ..., data retention, change management, etc.) Familiarity with... ...in cybersecurity and GRC (Governance, Risk, and Compliance). We'...Permanent employmentFull timeContract workRemote work
- ...Employees Credit Union is seeking an Information Security GRC Analyst III to ensure the integrity, confidentiality, and availability of information. You'll monitor compliance, conduct risk assessments, and manage security policies. The ideal candidate should have a...
- Neier Inc. is seeking a highly skilled GRC Privacy Senior Analyst to lead privacy initiatives and ensure compliance with global data protection regulations. The role involves... ..., developing Records of Processing, and managing Data Subject Requests. The ideal candidate should...Remote job
- ## Lead GRC AnalystApplyremote type: Hybridlocations: NJ-Warrentime... ...your business’s unique risks.**Role Overview**MSIG is seeking a Lead**, Governance, Risk & Compliance (GRC)** to help run and mature... ...core security governance, risk management, and compliance activities....Local area
- We are seeking a talented Senior Governance, Risk, and Compliance (GRC) Analyst / Engineer to join our innovative team focused on advancing robotic... ...using BI tools like PowerBI or Looker Excellent project management skills with the ability to prioritize in a fast-paced...Remote workFlexible hours
- ...leading utility provider in Pennsylvania seeks a GRC Cybersecurity Senior Analyst to ensure compliance with regulatory obligations. This role... ...collaboration with various departments to implement governance and risk management processes. The ideal candidate has a Bachelor’...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Manager. Be the first to apply!
Related searches
- data governance director New York, NY
- governance manager New York, NY
- data governance manager New York, NY
- senior risk manager New York, NY
- risk management associate New York, NY
- director credit risk New York, NY
- risk management specialist New York, NY
- enterprise risk manager New York, NY
- head of risk management New York, NY
- operational risk manager New York, NY

