See all roles

Manager, InfoSec Governance Risk and Compliance (GRC)

Work from home Full-time role Hiring

About the position At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities. Learn more at www.ivalua.com. Follow us on LinkedIn and Twitter. CONTEXT: Our InfoSec team is dedicated to building, maintaining, and continuously improving Ivalua’s Information Security program globally. We provide peace of mind and assurance of protection and safety to our customers. In this fast-growing environment, the GRC program is critical to ensuring compliance with industry standards and certifications, managing risks, and supporting business growth. ROLE: We are currently looking for an experienced InfoSec Governance Risk and Compliance (GRC) Manager to lead a global team and own the GRC program worldwide. Reporting to the InfoSec leadership, you will manage and develop a high-performing team, drive compliance efforts, and serve as a subject matter expert on security frameworks and standards.

Responsibilities

  • Lead and own the Governance, Risk, and Compliance (GRC) program globally, managing and developing a high-performing team.
  • Manage and drive compliance efforts and audits for certifications such as FedRAMP, IRAP, ISO 27001, HIPAA, SOC1/SOC2, PCI DSS, and others.
  • Serve as the subject matter expert (SME) on security frameworks and standards including NIST SP 800-53 Rev 5, NIST 800-171, ITAR, FedRAMP, PCI DSS, SOC2, etc., providing guidance to internal stakeholders.
  • Efficiently manage and respond to customer security audit and compliance requests in a timely manner.
  • Maintain continuous compliance and monitoring of security controls to ensure ongoing adherence to standards.
  • Collaborate closely with Sales, Marketing, and Customer Success teams to effectively communicate Ivalua’s security posture to prospects and customers.
  • Review and negotiate information security exhibits and contractual terms in partnership with the legal team.
  • Lead the Security Awareness and Training program to promote a culture of security across the organization.
  • Track, manage, and drive remediation efforts for control deficiencies and gaps identified through internal and external audits.
  • Oversee the Third Party Risk and Vendor Security Assessment program to mitigate supply chain risks.
  • Develop, maintain, and enforce InfoSec policies, standards, and plans.

Requirements

  • At least 7+ years of proven experience leading GRC programs and managing compliance certifications and audits (FedRAMP, ISO 27001, HIPAA, SOC1/SOC2, PCI DSS, IRAP, etc.).
  • At least 3+ years experience as a direct leader, managing a team. The position will be part of an established global team with opportunity to grow the team
  • Strong knowledge of security frameworks such as NIST SP 800-53, NIST 800-171, ITAR, PCI DSS, SOC2, and FedRAMP.
  • Demonstrated ability to manage and influence stakeholders across multiple departments and time zones.
  • Excellent project management, analytical, and problem-solving skills with keen attention to detail.
  • Strong interpersonal and communication skills, capable of building trust and managing conflicts effectively.
  • Self-motivated with a high degree of initiative and ability to work independently.
  • Ability to handle multiple competing priorities and deadlines efficiently.
  • Bachelor’s degree in related field preferred or equivalent experience with proven skills
  • Excellent interpersonal, communication, and organizational skills.
  • Team player with the ability to interface effectively with a broad range of individuals and roles, including IT and vendors.
  • High degree of initiative, dependable, and able to work well with limited supervision.

Benefits

  • Hybrid working model (3 days in the office per week)
  • Snacks and weekly lunches in the office
  • Feel empowered to pursue your goals with improved team collaboration and increased creativity/productivity
  • Unlock and unleash your full professional potential with our exceptional training and career development program
  • Join a dynamic and international team of top-notch professionals who are experts in their respective fields. Collaborate with like-minded individuals who are deeply passionate and highly motivated about their work. Experience a truly diverse and inclusive work environment where your unique contributions are highly valued
  • Regular social events, competitive outings, team running events, and musical activities,
  • Ivalua also offers exceptional benefits including medical, dental, vision and transportation.

Apply tot his job Apply To this Job

You might like

Lead, Governance Risk & Compliance (HITRUST Certified) - Healthcare Consulting

Work from home Full-time role

Manager, IT Governance, Risk & Compliance (Remote - West Coast)

Work from home Full-time role

Senior, Governance Risk & Compliance Analyst (Virtual, US)

Work from home Full-time role

Manager Governance, Risk and Compliance

Work from home Full-time role

Governance, Risk, and Compliance Specialist - Customer Assurance; Remote

Work from home Full-time role

Information Security - Governance, Risk, and Compliance (GRC) Director (Remote)

Work from home Full-time role

Governance, Risk, and Compliance (GRC) Manager

Work from home Full-time role

Associate Director - Governance, Risk and Compliance Analyst job at Lilly in Indianapolis, IN

Work from home Full-time role

Governance & Compliance Analyst - TPRM (EST Preferred)

Work from home Full-time role

0000002092.Governance, Risk, And Compliance Analyst.Info Tech Services

Work from home Full-time role

Experienced Customer Support Specialist – Remote Chat Support Agent for Dynamic Product and Service Enhancements

Work from home Full-time role

Looking for 23/24: Teaching Assistant – AHS in LaGrangeville, NY

Work from home Full-time role

Senior Software Engineer, Kubernetes Platform, Fabric Integration

Work from home Full-time role

Power BI Developer- Remote - Locals only - Colorado

Work from home Full-time role

Private Equity Attorney (Professional Track) (Chicago)

Work from home Full-time role

Product Manager, Workforce Solutions

Work from home Full-time role

[Remote] Business Development Representative - Public Sector

Work from home Full-time role

Remote Part Time Data Entry Clerk, Typing

Work from home Full-time role

Sales Developer Madrid - Temporal

Work from home Full-time role

DevOps Engineer

Work from home Full-time role