Senior GRC Manager

Harris ComputerWashington, NV
$130,000 - $150,000Hybrid

About The Position

We are seeking a Senior GRC Manager to take full ownership of our GRC program, ensuring ClearDATA remains compliant with regulations such as HIPAA, GDPR, HITRUST, and SOC 2. This role involves maintaining our Information Security Management Program, managing audit cycles, and collaborating directly with auditors. A key aspect of this position is keeping policy and compliance documentation up-to-date as our systems and vendor landscape evolve. The ideal candidate will view compliance as a facilitator for business confidence rather than a bureaucratic hurdle. You will actively seek practical, risk-based solutions and reserve strict limitations for situations where they are absolutely necessary. This is a hands-on, senior position within our IT/ITSec team. While you will not have direct reports, you will work collaboratively with security engineers, DevSecOps, and leadership.

Requirements

  • 5+ years of experience in GRC, IT compliance, or information security compliance, preferably in a regulated industry and in hands-on roles.
  • Direct experience maintaining an Information Security Management Program or a similar compliance program.
  • Working knowledge of HIPAA, SOC 2, HITRUST, or GDPR; healthcare experience is strongly preferred.
  • Experience working directly with external auditors.
  • Proven ability to collaborate effectively across a technical organization and with executive leadership.
  • Strong writing skills, with the ability to translate operational and technical details into clear policy language.
  • Highly organized and detail-oriented, capable of managing multiple compliance workstreams simultaneously.
  • A pragmatic approach to risk management, distinguishing between real compliance issues and theoretical ones, with a focus on problem-solving over mere documentation.

Nice To Haves

  • CISA, HITRUST CCSFP, or CRISC certification.
  • Experience with AWS, Azure, or GCP and their associated compliance considerations.
  • Experience with GRC tooling (e.g., Thoropass, OneTrust, or similar platforms).
  • A background that combines both compliance and a technical discipline (IT, security, or engineering).

Responsibilities

  • Maintain ClearDATA's Information Security Management Program, including policies, procedures, and standards.
  • Support audits, assessments, and certification renewals for HIPAA, GDPR, HITRUST, and SOC 2.
  • Maintain the risk register, tracking third-party and vendor risk.
  • Keep control mapping and audit evidence current and organized.
  • Support incident response planning in conjunction with the IT/ITSec Manager and security team.
  • Collaborate with security engineers and DevSecOps to translate control requirements into system design and operation, and to convert implemented systems into defensible audit evidence.
  • Update policies and program documentation in response to changes in systems, vendors, or ownership of shared responsibilities.
  • Liaise directly with external auditors to identify and remediate compliance gaps before they become formal findings.
  • Identify and flag open risks or outstanding items requiring attention.
  • Serve as the primary compliance resource across the company, including engineering, DevSecOps, management, and executive leadership, guiding teams toward workable solutions and providing leadership with a clear understanding of the program's status.

Benefits

  • Full benefits package including medical, dental, and vision insurance.
  • STD and Life benefits.
  • 3 weeks of vacation plus 5 personal days.
  • Employee stock ownership and RRSP program.
  • Opportunities for community involvement.
  • Flexible work arrangements.
  • Opportunities to learn and grow your career.
  • Award-winning culture.
  • Casual work environment.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service