Governance, Risk & Compliance (GRC) Manager
$190k - $215kSigma Computing
Governance, Risk & Compliance (GRC) Manager New York City, NY Sigma is seeking an experienced GRC Manager to lead and scale our governance, risk, and compliance programs. This role is based in our San Francisco office or upcoming NewYork office and reports to the General Counsel. You'll have the opportunity to build a strategic, enterprise-wide GRC function that enables business growth while managing organizational risk. As our GRC Manager, you'll partner with Legal, Engineering, Product, Sales, Operations, and leadership to develop a comprehensive GRC framework that protects Sigma's interests, supports our strategic objectives, and builds stakeholder trust. You'll mature our governance structures, implement scalable risk management processes, and ensure compliance with applicable regulatory requirements—all while enabling the business to move quickly and confidently. What You'll Do Governance Design and implement governance frameworks, including reporting, policy governance, and control oversight Establish and maintain enterprise policies, standards, and procedures across technology, security, privacy, and operational functions Build and lead a governance committee structure that provides appropriate oversight and decision-making Create governance dashboards and metrics to provide visibility into program maturity and effectiveness Partner with leadership to align governance activities with business strategy and risk appetite Develop and operate a comprehensive Enterprise Risk Management (ERM) program Conduct regular enterprise-wide risk assessments and maintain a dynamic risk register Build and maintain business continuity and disaster recovery programs, including regular testing and tabletop exercises Implement third‑party risk management processes, including vendor risk assessments, contract reviews, and ongoing monitoring Create risk treatment plans and track remediation activities across the organization Facilitate risk‑informed decision‑making at all levels of the organization Coordinate with functional leaders to ensure risks across all business areas are identified and managed appropriately Compliance Own audit and certification programs including SOC2, ISO27001, HIPAA, and other relevant standards Develop and maintain compliance monitoring programs to track regulatory changes and work with the legal team to assess impact Partner with HR and Legal to support labor & employment compliance programs, including workplace safety, anti‑discrimination, wage and hour requirements, and multi‑jurisdictional employment regulations Monitor and ensure adherence to industry‑specific regulatory requirements relevant to Sigma's business operations Manage security awareness training programs enterprise‑wide Conduct internal audits and assessments to validate control effectiveness Coordinate external audits and assessments with third‑party auditors Business Enablement Support sales and customer success teams with compliance documentation and security inquiries Develop customer‑facing materials that articulate Sigma's risk management and compliance posture Complete and manage responses to customer security questionnaires and assessments (VSAs, SIGs, custom questionnaires) Enable efficient deal cycles by maintaining ready‑to‑use compliance artifacts, trust center content, and documentation Partner with Sales Engineering and Solutions teams to address prospect security and compliance requirements What You Bring Required 4+ years of experience in governance, risk management, and/or compliance roles, preferably in SaaS or technology companies Demonstrated experience building or significantly maturing a GRC program from the ground up Track record of successfully leading certification audits (SOC2, ISO27001, HIPAA, or similar) Experience implementing risk management frameworks (COSO, ISO31000, NISTRMF, or similar) Strong knowledge of data privacy regulations and their practical application (GDPR, CCPA, etc.) Experience developing and maintaining information security and privacy policies, procedures, and control frameworks Strong business acumen with ability to translate risk and compliance requirements into business value Excellent communication skills with ability to influence stakeholders at all levels, including leadership Proven ability to manage multiple priorities and stakeholders in a fast‑paced, high‑growth environment Collaborative mindset and commitment to enabling business success while managing risk Preferred Experience with GRC platforms (ServiceNow GRC, Archer, LogicGate, or similar) Hands‑on experience with cloud environments (GCP, AWS, Azure) from a compliance and security perspective Experience with labor & employment compliance or cross‑functional collaboration with HR on regulatory matters Familiarity with multi‑state or international employment regulations Experience with continuous compliance automation tools (Vanta, Drata, Secureframe, Tugboat, or similar) Professional certifications such as CRISC, CISA, CISM, CGEIT, CISSP, or CIPP Experience in high‑growth SaaS or technology companies Background in both technical and operational risk management Experience working in organizations with distributed or remote teams Familiarity with security frameworks such as NISTCSF, CIS Controls, or OWASP Why Join Sigma This is an opportunity to build a world‑class GRC program that doesn't just check boxes but genuinely enables the business to pursue opportunities with confidence. You'll work across the entire organization, have direct access to the General Counsel, and make a tangible impact on how Sigma manages risk and creates value for customers. Additional Job Details The base salary range for this position is $190k - $215k annually. Compensation may vary outside of this range depending on a number of factors, including a candidate’s qualifications, skills, competencies and experience. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work at Sigma Computing. This role is eligible for stock options, as well as a comprehensive benefits package. Benefits For Our Full‑Time Employees: Equity Flexible time off policy. Take the time off you need! Paid bonding time for all new parents Traditional and Roth 401k Commuter and FSA benefits Lunch Program Dog friendly office Sigma is an equal opportunity employer. We are committed to building a smart and strong team regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran, or any other protected status. We look forward to learning how your experience can enable all of us to grow. Note: We have an in‑office work environment in all our offices in SF, NYC, London and Sydney. Our Privacy Practices When you submit a job application on this site, Sigma processes your personal data for the purposes of evaluating your candidacy for employment at Sigma and as otherwise needed throughout the recruitment and hiring process. Please review Sigma’s Candidate Privacy Notice for more details. Please note that your personal data may be transferred to a country other than the one in which it was provided (including to the USA, the UK, and Canada, Australia). Sigma’s use of AI This hiring process utilizes artificial intelligence tools to assist in candidate screening and assessment. Our AI tools are designed to complement, not replace, human decision‑making. #J-18808-Ljbffr
- Riot Platforms is seeking a Director for Governance, Risk, and Compliance (GRC) to spearhead enterprise compliance and manage the ISO 27001 program. This role will establish scalable systems and controls architecture to integrate risk management into operations effectively...Suggested
- ...Radar Senior GRC Analyst Radar is the global leader in geolocation... ...scale Radar's security and compliance programs, with a focus on third-party risk and modern SaaS governance. You'll partner with... ...Security teams to evaluate vendors, manage risk, and help shape a...SuggestedWork at officeRemote work
$130k - $160k
...Department Engineering Team & Role As a Senior GRC Analyst at Benepass, you will help operate and mature the governance, risk, compliance, audit readiness, and customer assurance... ...auditor coordination, and audit response management. Control Testing: Maintain recurring...SuggestedFull timeWork at officeRemote workWork from homeFlexible hours$130k - $160k
...Alumni Ventures is seeking a Senior GRC Analyst to operate and mature governance, risk, compliance, and audit readiness programs. This role involves collaboration across departments to ensure effective compliance practices. Ideal candidates have 5+ years in GRC and experience...SuggestedRemote workFlexible hours$125k - $135k
...GRC Analyst job at Suzy. Remote. Suzy puts the voice of the consumer at your fingertips. Whether you're a novice... ...experiences backed by data-driven decisions. The Governance, Risk, Compliance (GRC) Analyst will manage policies, procedures, and standards to govern the...SuggestedWork experience placementImmediate startRemote work- ...Radar is hiring a Senior GRC Analyst in New York City to enhance security and compliance programs, focusing on third-party risk and SaaS governance. You will work with various teams to evaluate... ...Trust Lead. A passion for risk management and emerging tech is essential for...
- ...Alignerr is seeking a Governance, Risk & Compliance (GRC) Analyst to contribute to AI training initiatives. This fully remote position allows you to leverage your GRC expertise to shape how AI understands compliance and risk. Ideal candidates should have at least 2 years...Remote work
$120k - $150k
...solve highly relevant and complex risks and challenges associated with... ...Overview DTEX is seeking a GRC Analyst to support day‑to‑day governance, risk, and compliance activities across the organization... ...control execution, evidence management, continuous monitoring, and audit...Remote workWork from homeWorldwideFlexible hours- CybSafe is seeking an Analyst, GRC - Public Sector to enhance governance, risk, and compliance operations. You will manage compliance efficiency and audit readiness for the public sector. Your role includes coordinating Third Party assessments, overseeing continuous monitoring...Remote job
- ...Oura is seeking a Senior Governance, Risk, Compliance (GRC) Analyst to join the Security Team in New York City. This role involves leading GRC initiatives, managing compliance policies, and performing risk assessments. Candidates should have over 6 years of experience...Remote workFlexible hours
- ...A security consulting company in the United States is looking for a GRC Analyst II to support governance programs for clients. In this role, you will onboard customers, perform gap assessments, and develop security policies. The ideal candidate will have 2-3 years in...
$125k - $135k
A dynamic data insights platform in the United States is seeking a Governance, Risk, Compliance (GRC) Analyst to oversee policies and ensure regulatory compliance. Key responsibilities include managing Third Party Risk Management, performing risk assessments, and coordinating...Remote job- ...Apital Inc. is seeking a detail-oriented GRC Analyst to support cybersecurity governance for transit infrastructure projects. The role includes conducting audits, maintaining compliance documentation, and monitoring vendor adherence to regulations. Ideal candidates should...
- ...Disney is seeking an Executive Director for InfoSec Governance, Risk, and Compliance in New York City. This leadership role is key to transforming GRC strategies into risk-driven models that support enterprise decision-making. The ideal candidate will have over 12 years...
- Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every person to own their inner potential... ...for efficiency and automation. Policy & Procedure Management - Analyze, draft, update, and maintain security and...Work at officeLocal areaRemote workFlexible hours
- Governance, Risk & Compliance (GRC) Analyst Position Title Description Apital is looking for a compliance-focused, detail-oriented GRC Analyst to support cybersecurity governance efforts across CBTC and PTC transit infrastructure projects. They will support ongoing regulatory...Flexible hours
- Governance, Risk & Compliance (GRC) Analyst (AI Training) We partner with the world's leading AI research teams and labs to build and train cutting... ...expertise to shape how AI systems understand governance, risk management, and security policy — work that has a lasting impact on...Hourly payOngoing contractContract workFreelanceRemote workFlexible hours
- ...A growing fintech company is seeking a GRC Program Manager to lead governance, risk, and compliance initiatives. The role encompasses managing audits like SOC 1 and SOC 2, developing compliance frameworks, and collaborating with different teams to ensure operational integrity...Remote workFlexible hours
- ...Director of Governance, Risk & Compliance (GRC) (Volunteer) PromiseShield | Security Governance, Risk Management & Compliance Organization: Mentor A Promise (MAP) Division: PromiseShield Location: Remote / Hybrid (NYC Collaboration as Needed) Type: Volunteer...Remote work10 hours per week
$212k - $230k
Director, Governance, Risk, and Compliance (GRC) Remote - USA At Clover, the Business Enablement team leads our technological advancement while ensuring... .... We deliver user-friendly corporate applications, manage complex data ecosystems, and provide efficient tech solutions...Temporary workFixed term contractWork at officeImmediate startRemote workFlexible hoursShift work- A leading provider of procurement solutions is seeking a Manager for InfoSec Governance Risk and Compliance (GRC) in New York City. This role involves leading a team to manage the GRC program, ensuring compliance with certifications, and serving as a subject matter expert...
$240k - $270k
...A leading healthcare company is seeking a Director of Compliance and Regulatory to shape its Governance, Risk, and Compliance strategy. You will manage regulatory risks, develop compliance frameworks, and guide product initiatives to ensure adherence to regulations like...Remote workFlexible hours$212k - $230k
...technology company in the United States is seeking a Director of Governance, Risk, and Compliance (GRC) to define and execute security governance strategies. This role requires strong expertise in managing compliance, overseeing third-party risks, and leading audits....Remote job- ...LaunchDarkly Group is seeking a Security Analyst III for its Governance, Risk, and Compliance team. This remote role demands deep cybersecurity knowledge and excellent communication skills. You will collaborate with various teams to implement security controls, support...Remote work
$205k - $225k
Genesis10 is currently seeking a Security Governance Risk and Compliance Manager - Hybrid for a direct placement position with a Global Professional Services... ...Provide senior guidance and awareness of the GRC program to partnering departments (e.g., Risk, Procurement...Permanent employmentFull timeContract work$90k - $150k
Governance, Risk, and Compliance Supervisor or Manager Job Category: Advisory Requisition Number: GOVER002831 Posted: November 12, 2025 Full-Time Hybrid Locations... ...York City-based Governance, Risk, and Compliance (GRC) practice is looking for an ambitious Supervisor or...Full timeWork at officeFlexible hours3 days per week- ...impact is felt by businesses, governments, and millions of people... ...Socure is seeking an Analyst, GRC - Public Sector to execute and... ...the company's governance, risk, and compliance operations for its public sector... ...and audit readiness by managing vulnerability remediation, continuous...Permanent employmentContract work
- ...The Role Rogo is hiring a GRC Analyst to support our customer... ...trust, security assurance, and compliance programs as we scale globally.... ...to ensure Rogo's controls, risk posture, and security practices... ...to detail and the ability to manage multiple parallel requests without...
- ...Passionate about cybersecurity, risk, and compliance? Ready to grow your career... ...-time, remote Entry-Level GRC Analyst. This is a contract... ..., data retention, change management, etc.) ~ Familiarity with... ...in cybersecurity and GRC (Governance, Risk, and Compliance). We'...Permanent employmentFull timeContract workRemote work
- ...Hotman Group is seeking an Entry Level GRC Analyst to work remotely in the USA. The role involves assessing client security, developing risk frameworks, and translating technical requirements into actionable steps. Candidates should possess a relevant degree and 1-2 years...Remote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Manager. Be the first to apply!
- data governance director New York, NY
- data governance manager New York, NY
- governance manager New York, NY
- risk management manager New York, NY
- senior risk manager New York, NY
- risk management specialist New York, NY
- director of risk management New York, NY
- risk management associate New York, NY
- group risk manager New York, NY
- operational risk manager New York, NY

