GRC Manager
Overview
Glocomms is partnered with a leading Voice AI organization seeking a GRC Manager to own and scale its compliance and governance programs. This individual will be responsible for maintaining key security certifications, driving audit readiness, strengthening compliance operations, and partnering cross-functionally to support enterprise customer requirements.
This is a highly visible role that will work closely with Security, Engineering, Legal, and Go-To-Market teams to ensure the organization maintains a strong security and compliance posture while supporting continued growth.
Responsibilities
- Own and manage compliance programs across frameworks such as SOC 2, ISO 27001, and HIPAA.
- Lead internal and external audits, including audit preparation, evidence collection, auditor coordination, and remediation efforts.
- Maintain policies, procedures, controls, and documentation to support ongoing compliance requirements.
- Conduct risk assessments and partner with stakeholders to identify and mitigate security and compliance risks.
- Manage third-party and vendor risk review processes.
- Support customer security reviews, due diligence requests, RFPs, and security questionnaires.
- Partner with Engineering and Security teams to evaluate and improve control effectiveness.
- Drive compliance reporting, training, awareness programs, and continuous improvement initiatives.
- Leverage GRC and compliance automation platforms to streamline audit and compliance operations.
Requirements
- 5+ years of experience in compliance, GRC, information security, audit, or risk management.
- Strong knowledge of SOC 2, ISO 27001, HIPAA, and security control frameworks.
- Experience managing both internal and external audits.
- Familiarity with risk management, policy development, vendor risk assessments, and security governance.
- Experience supporting enterprise customer security reviews and compliance inquiries.
- Excellent communication skills with the ability to collaborate across technical and non-technical teams.
- Hands-on experience with Vanta, Drata, or similar compliance automation platforms.
Nice to Have
- Background supporting healthcare customers or healthcare compliance requirements.
- CISA, CISM, or CRISC Certifications
Benefits
- Full Health Benefits
- Equity participation
- Relocation Support
- Generous PTO
FAQs
Congratulations, we understand that taking the time to apply is a big step. When you apply, your details go directly to the consultant who is sourcing talent. Due to demand, we may not get back to all applicants that have applied. However, we always keep your resume and details on file so when we see similar roles or see skillsets that drive growth in organizations, we will always reach out to discuss opportunities.
Yes. Even if this role isn’t a perfect match, applying allows us to understand your expertise and ambitions, ensuring you're on our radar for the right opportunity when it arises.
We also work in several ways, firstly we advertise our roles available on our site, however, often due to confidentiality we may not post all. We also work with clients who are more focused on skills and understanding what is required to future-proof their business.
That's why we recommend registering your resume so you can be considered for roles that have yet to be created.
Yes, we help with resume and interview preparation. From customized support on how to optimize your resume to interview preparation and compensation negotiations, we advocate for you throughout your next career move.
