GRC Technical Program Manager

ID.me

$120K — $150K *
Enterprise Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years managing security or compliance programs compliant with FedRAMP or NIST 800-53
  • 2+ years leading end-to-end audits, either as manager or auditor
  • Experience with control lifecycles and POA&M remediation in a cloud-native environment
  • Hands-on experience with GRC platforms, preferably LogicGate
  • Proficient in using AI tools for drafting and technical evaluation in compliance programs

Responsibilities

  • Drive the lifecycle of FedRAMP, ISO 27001, and SOC 2 compliance programs
  • Lead cross-functional initiatives to align teams on compliance goals
  • Manage documentation for controls, policies, and compliance frameworks
  • Utilize AI tools for evidence validation and control evaluation
  • Oversee continuous monitoring processes and ensure program adherence

Benefits

  • Full-time in-office work culture
  • Commitment to diversity and equal opportunity
  • Supportive of reasonable accommodations for employees with disabilities
  • Access to a collaborative work environment
  • Opportunity to work with cutting-edge technology in digital identity
Full Job Description
Role Overview

ID.me is seeking a Technical Program Manager - Security Assurance to serve as the operational backbone of our external compliance programs. You will co-own the end-to-end lifecycle of controls, policies, and program-specific documentation for FedRAMP, ISO 27001, and SOC 2, with additional contributions to Kantara accreditation.

You will drive cross-functional alignment independently, owning outcomes rather than tasks. A unique requirement of this role is high proficiency with AI tools; our team utilizes purpose-built AI agents for evidence validation, control evaluation, and finding management. Fluency in AI-assisted workflows is essential.

This role is based out of our Mountain View, CA or McLean, VA offices and requires full-time in-office attendance.
Core Responsibilities
  • 3+ years of experience operating security or compliance programs aligned to FedRAMP or NIST 800-53.
  • 2+ years leading internal or external audits end-to-end, either as audit manager, program owner, or auditor.
  • Experience managing control lifecycles, POA&M remediation, and continuous monitoring in a cloud-native environment (AWS or GCP).
  • Hands-on experience with a GRC platform (LogicGate preferred) for control tracking, evidence management, and findings remediation.
  • Demonstrated professional use of AI tools to support drafting, analysis, evaluation, or workflow automation within compliance or technical programs.
Preferred Qualifications
  • Experience managing FedRAMP Continuous Monitoring and Significant Change Requests.
  • Familiarity with NIST SP 800-63, digital identity systems, or Kantara accreditation.
  • Certifications such as CISSP, CISA, CCSK, or ISO 27001 Lead Auditor.
  • Experience in SaaS, FinTech, GovCloud, or other regulated technology environments.

#LI-JS1

ID.me is a full-time, in-office culture. Unless a specific job description explicitly states otherwise, all roles are on-site five days per week at one of our offices in McLean, VA; Mountain View, CA; New York City, NY; or Tampa, FL. Certain roles - such as field-based sales or other remote-by-design positions - may have different work arrangements as noted in their individual postings.

Similar Jobs

More Jobs at ID.me

More Enterprise Technology Jobs

Find similar GRC Technical Program Manager jobs: