Senior Manager, GRC Engineering (Special Programs)

Workstreet

$120K — $145K *
US-AnywhereRemote in United States
Information Technology
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of cybersecurity compliance experience across frameworks like SOC 2, ISO 27001, and NIST CSF.
  • 5+ years of experience leading mid-sized teams, particularly first-line managers.
  • Extensive experience managing executive client relationships and high-stakes escalations.
  • Hands-on experience authoring, implementing, and enforcing enterprise cybersecurity policies for 8+ years.
  • Ability to navigate fast-paced security environments with sound judgment and immediate problem ownership.

Responsibilities

  • Assume end-to-end program ownership, ensuring client satisfaction and delivery health.
  • Lead executive-level escalation resolution to restore client trust in high-risk situations.
  • Maintain delivery and timeline tracking to protect project deadlines.
  • Enforce operational delivery standards and ensure quality across all teams.
  • Manage capacity and resource allocation to prevent bandwidth risks.
  • Direct and develop first-line managers to instill accountability and consistency.
  • Oversee quality assurance by reviewing deliverables for accuracy and alignment with client goals.

Benefits

  • Clear growth path with mentorship and training opportunities.
  • Comprehensive onboarding on security and compliance frameworks.
  • Regular performance reviews and merit-based appraisals.
  • Significant room for career advancement in an early-stage company.
  • Flexibility to work remotely while collaborating with a global team.
Full Job Description
The Opportunity

Workstreet is seeking a Senior Manager, GRC Engineering (Special Programs) to serve as the operational owner of a high-visibility, customer-facing delivery organization. Reporting directly to the Director of Special Programs, you will drive the day-to-day success of the program while guiding a team of 30 to 40 consultants managed through 4 to 5 direct-report managers. In this strategic capacity, you will ensure delivery remains on schedule, enforce rigorous quality standards across the management layer, and address operational risks before they affect client outcomes.

The ideal candidate brings 8+ years of cybersecurity compliance experience across frameworks such as SOC 2, ISO 27001, and NIST CSF, paired with a proven history of leading management teams and driving operational results. Operating with a client-first philosophy, you will manage high-stakes client relationships with professionalism and step in decisively to resolve complex escalations with composure while keeping teams aligned and accountable during U.S. Eastern Time business hours.

What You'll Do
  • Assume end-to-end program ownership - take total accountability for Special Programs delivery health, client satisfaction metrics, and cross-functional team execution.
  • Lead executive-level escalation resolution - serve as the primary escalation authority for high-risk engagements, partnering with managers to resolve complex issues and restore client trust.
  • Maintain delivery and timeline tracking - monitor portfolio-wide engagement milestones, identify slipping schedules early, and proactively unblock teams to protect project deadlines.
  • Enforce operational delivery standards - uphold established quality benchmarks and engagement playbooks across all teams, holding managers accountable to consistent execution.
  • Manage capacity and resource allocation - track workload distribution across direct reports, flag bandwidth risks to executive leadership early, and ensure optimal staffing across engagements.
  • Direct and develop first-line managers - coach and mentor 4 to 5 direct-report managers to foster a culture of strict accountability, ownership, and operational consistency.
  • Drive team performance management - establish clear delivery expectations, conduct performance evaluations, recognize high performers, and address execution gaps directly.
  • Oversee quality assurance and risk mitigation - review client deliverables and communications across key accounts to guarantee accuracy, technical rigor, and alignment with client business objectives.
Who You Are
  • Senior client relationship leader - bring extensive experience managing executive client relationships, navigating complex accounts, and handling high-stakes escalations with composure.
  • Experienced manager of managers - possess 5+ years of experience leading mid-sized teams, including direct experience developing, managing, and holding first-line managers accountable.
  • Deep compliance domain authority - hold 8+ years of cybersecurity compliance expertise across SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS, HITRUST, and NIST 800-171 or CMMC frameworks.
  • Policy framework architect - demonstrate 8+ years of hands-on experience authoring, implementing, and enforcing enterprise cybersecurity policies.
  • Disciplined operational operator - prove sound judgment under pressure with a bias toward taking immediate ownership and solving issues independently rather than escalating upward.
  • High-velocity startup performer - thrive in fast-paced cybersecurity environments, possessing the organizational discipline to manage multiple concurrent compliance programs seamlessly.

What will help you succeed

  • Big 4 advisory tenure - background in management consulting, assurance, or advisory practice within Big 4 or top-tier consulting firms.
  • MSSP or GRC leadership experience - proven track record managing GRC delivery functions within a managed security service provider or specialized consulting organization.
  • Advanced security certifications - active professional certifications such as CISA, CISSP, CISM, ISO 27001 Lead Implementer, or CRISC.
  • GRC automation platform mastery - practical exposure to configuring and managing automated compliance platforms such as Vanta, Drata, or Secureframe.
  • Multi-framework audit expertise - deep familiarity with risk management frameworks and complex audit methodologies across diverse regulatory standards.
What We Offer
  • Career Development: Clear growth path with mentorship and training opportunities.
  • Technical Training: Comprehensive onboarding on security and compliance frameworks.
  • Competitive Compensation: Competitive base salary with regular performance reviews, merit-based appraisals, and bonus opportunities.
  • Growth Opportunity: Early-stage company with significant room for career advancement.
  • Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.

What You'll Need to Thrive

  • Excellent written and verbal English communication skills, with the ability to engage confidently with candidates, hiring managers, and business leaders across global teams.
  • A reliable, high-speed internet connection and a professional home office environment that supports confidential conversations, virtual interviews, and uninterrupted collaboration.
  • Commitment to working a standard schedule of 8:00 AM-5:00 PM U.S. Eastern Time (ET) to effectively collaborate with team members, stakeholders, and cross-functional partners while ensuring timely communication and support.
  • Willingness and ability to travel locally for occasional onsite meetings, team gatherings, or business activities as needed.

Hiring and Selection Process

  • Candidates must participate in live video interviews throughout the hiring process with camera on (non-negotiable) and be prepared to verify their identity during recruitment and onboarding.
  • Employment is contingent upon successful completion of identity verification and background screening, where permitted by law.
  • Selected candidates will participate in structured interviews with hiring managers and cross-functional stakeholders to assess role fit, experience, and alignment with Workstreet's operating principles.
  • Candidates will receive prompt updates and consistent communication throughout the interview process, ensuring a transparent, smooth, and engaging experience at every step.
  • Applicants must be authorized to work in the U.S. without the need for visa sponsorship now or in the future. Workstreet does not provide employment-based visa sponsorship or transfers for this role, including H-1B, L-1, TN, O-1, E-3, H-1B1, F-1 (OPT/CPT), J-1, or any other work-authorized visa category.

Similar Jobs

More Jobs at Workstreet

More Information Technology Jobs

Find similar Senior Manager, GRC Engineering (Special Programs) jobs: