Overview
Skills
Job Details
Program Manager GRC
Required Skills Experience: 10 years of experience in IT or cybersecurity, with 5 years in program or project management.
The Program Manager GRC is responsible for leading enterprise-level governance, risk, and compliance initiatives to ensure the organization maintains a strong security and regulatory posture. This role drives strategic programs across IT risk management, policy governance, regulatory compliance, audit management, and control assurance.
Role Description: Program Management Governance
Lead and manage enterprise GRC programs including risk assessments, control implementation, and compliance initiatives.
Define program scope, deliverables, success criteria, and performance metrics aligned with organizational goals.
Establish governance structures, steering committees, and regular reporting to leadership and stakeholders.
Develop project plans and roadmaps for risk and compliance tool deployments (e.g., Archer, ServiceNow GRC
Essential Skills:
The Program Manager GRC is responsible for leading enterprise-level governance, risk, and compliance initiatives to ensure the organization maintains a strong security and regulatory posture.
This role drives strategic programs across IT risk management, policy governance, regulatory compliance, audit management, and control assurance.
The ideal candidate combines strong program management expertise with a deep understanding of cybersecurity frameworks, risk methodologies, and compliance standards such as NIST, ISO 27001, SOC 2, SOX, and GDPR.
You will collaborate closely with CISO, risk owners, business units, and auditors to implement effective GRC practices that enable proactive risk management and informed decision-making.
Key Responsibilities:
Lead and manage enterprise GRC programs including risk assessments, control implementation, and compliance initiatives.
Define program scope, deliverables, success criteria, and performance metrics aligned with organizational goals.
Establish governance structures, steering committees, and regular reporting to leadership and stakeholders.
Develop project plans and roadmaps for risk and compliance tool deployments (e.g., Archer, ServiceNow GRC