Sr. Manager of Compliance and Risk Management

Parallels International GmbH

• $110K — $130K *
US-AnywhereRemote in United States
Business Services
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Information Security, Computer Science, Business, or related field (or equivalent experience)
  • 8+ years of experience in GRC, information security compliance, IT audit, or enterprise/vendor risk management
  • Hands-on experience leading or supporting audits against major frameworks (e.g., ISO 27001, NIST, SOC 2)
  • Demonstrated experience managing external audits end-to-end, including auditor relationships and finding remediation
  • Solid understanding of risk assessment methodologies and control frameworks (e.g., COBIT)
  • Experience with risk register tools, GRC platforms and ticketing systems

Responsibilities

  • Monitor organizational compliance with internal policies and external regulations
  • Respond to customer RFPs and security/vendor questionnaires, coordinating with subject matter experts
  • Define and manage the third-party risk management program, including vendor security assessments
  • Maintain and update the organization's risk register, ensuring all identified risks are documented and assessed
  • Contribute to executive and board-level reporting on risk and compliance posture
  • Lead all infrastructure and product security or privacy incidents, ensuring compliance with required regulations
  • Manage, hire and train GRC analysts, ensuring they maintain the necessary skills

Benefits

  • Fully remote workspace with no pressure to work in an office
  • Flexible working hours to help balance personal life and work
  • Energetic and collaborative team environment with smart, motivated colleagues
Full Job Description
Senior Manager of Compliance and Risk Management

Parallels has an immediate vacancy for this role.

Parallels is seeking a Senior Manager of Compliance and Risk Management to support the ongoing maturity of our Governance, Risk, and Compliance program. This role is primarily focused on third-party risk management, responding to customer RFPs and security/vendor questionnaires, ensuing organization-wide compliance to common security, privacy, and AI frameworks, and leading, creating and managing the risk register, and policy development. In addition, this position will lead all infrastructure and product security or privacy incidents ensuring full compliance with required regulations.

This is a blended role: you'll own audit readiness and control testing for our certifications while also driving enterprise and third-party risk management and compliance. You'll work directly with external auditors and assessors, and partner closely with Security, Legal, IT, HR, and Engineering to keep the program audit-ready year-round.

The ideal candidate is experienced in third-party risk management, has worked on customer RFPs, security questionnaires, policy development, and is familiar with compliance frameworks such as SOC 2, ISO 27001, and DORA. Must be comfortable working cross-functionally with IT, Legal, and business stakeholders.

As a Senior Manager of Compliance and Risk Management, you will:

What YOU bring to the team:

  • Monitor organizational compliance with internal policies and external regulations. Track control performance, identify gaps, and prepare regular compliance status reports for leadership.
  • Monitor regulatory and framework changes (e.g., EU Data Act) and assess their impact on the compliance program.
  • Respond to customer RFPs and security/vendor questionnaires, coordinating with subject matter experts to ensure accurate and timely responses. Maintain a library of standard responses and supporting evidence.
  • Work directly with sales to attend customer calls for large enterprise customers.
  • Maintain the organization's Trust Center to enable customers and partners to quickly find compliance, security, and privacy information, with the goal of automating responses for repeat questions.
  • Define and manage the third-party risk management program, including vendor security assessments, due diligence reviews, and ongoing monitoring of vendor risk. Track vendor remediation items and maintain vendor risk documentation.
  • Ensure ongoing reviews for existing third parties, including changing usage related to AI and privacy where applicable.
  • Maintain and update the organization's risk register, ensuring all identified risks are documented, assessed, and monitored. Track risk treatment plans and follow up with risk owners on remediation status.
  • Contribute to executive and board-level reporting on risk and compliance posture, including recurring management business reviews.
  • Oversee the development, review, and implementation of GRC policies and procedures. Define processes and implement automation to ensure that policies stay current with regulatory changes and organizational needs.
  • Lead employee awareness and training of policy requirements.
  • Prepare and maintain audit-readiness materials, control narratives, policies, and standard operating procedures for both internal and external stakeholders.
  • Lead and coordinate audits and assessments across the compliance portfolio (e.g., ISO 27001/42001, SOC 2, NIST, FedRAMP, GovRAMP, CMMC, PCI DSS), owning evidence collection, auditor interviews, and finding remediation end-to-end.
  • Manage external audits end-to-end, including auditor and assessor relationships.
  • Design, test, and monitor internal controls; identify gaps and drive remediation with control owners across the business.
  • Lead all infrastructure and product security or privacy incidents, ensuring full compliance with required regulations and reporting obligations.
  • Define and own the company-wide incident process, ensuring readiness and compliance with required regulatory frameworks.
  • Implement systems to ensure efficient and compliance incident handling.
  • Manage, hire and train GRC analysts, ensuring that they maintain the skills needed to manage the complexity of Parallels environment.


What YOU Bring to the Team:

  • Bachelor's degree in Information Security, Computer Science, Business, or related field (or equivalent experience)
  • 8+ years of experience in GRC, information security compliance, IT audit, or enterprise/vendor risk management
  • Hands-on experience leading or supporting audits against major frameworks (e.g., ISO 27001, NIST and SOC 2)
  • Demonstrated experience managing external audits end-to-end, including auditor relationships and finding remediation
  • Solid understanding of risk assessment methodologies and control frameworks (e.g., COBIT)
  • Experience with risk register tools, GRC platforms and ticketing systems


US:

  • Parallels features award-winning solutions that have helped millions of users for 40 years (can you believe it?!).
  • We have millions of users and decades of innovation under our belts.
  • We offer a fully remote workspace. There is no pressure to work in an office whatsoever.
  • Hours are flexible, too! You've worked hard to build your life, and we don't want you to give it up for work.
  • Our team is growing fast, and there's a ton of energy and a lot of really smart, motivated, fun people ready to welcome you in.


What are you waiting for? Apply now! We can't wait to meet you.

(FYI, we're lucky to have a lot of interest and we so appreciate your application, though please note that we'll only contact you if you've been selected for an interview.)

Similar Jobs

More Jobs at Parallels International GmbH

More Business Services Jobs

  • Vice President, Sales & Service
    $150K — $250K + $30K bonus + equity, medical, dental, vision, life, std/ltd *
    Southern Dock Products / DuraServ
    Memphis, TN 38109 (Shelby County)
  • Vice President, Sales & Service
    $150K — $250K + $30K bonus + equity, medical, dental, vision, life, std/ltd, auto allowance, *
    Just Rite Equipment / DuraServ
    South Windsor, CT 06074 (Capitol County)
  • Vice President, Service & Sales
    $200K — $500K++ $30K bonus + equity, medical, dental, vision, life, std/ltd, auto allowance, *
    Casco Dock & Door / DuraServ
    West Sacramento, CA 95691 (Yolo County)
  • Account Executive, Field
    $90K *
    Roadrunner
    Humble, TX 77346 (Harris County)
  • Leader, Business Process Transformation
    $110K — $130K *
    Ralliant
    Chandler, AZ 85226 (Maricopa County)

Find similar Sr. Manager of Compliance and Risk Management jobs: