GRC Manager
Glocomms · San Francisco County, CA
Apply & track with Apply EdgeOverviewGlocomms is partnered with a leading Voice AI organization seeking a GRC Manager to own and scale its compliance and governance programs. This individual will be responsible for maintaining key security certifications, driving audit readiness, strengthening compliance operations, and partnering cross-functionally to support enterprise customer requirements.This is a highly visible role that will work closely with Security, Engineering, Legal, and Go-To-Market teams to ensure the organization maintains a strong security and compliance posture while supporting continued growth.ResponsibilitiesOwn and manage compliance programs across frameworks such as SOC 2, ISO 27001, and HIPAA.Lead internal and external audits, including audit preparation, evidence collection, auditor coordination, and remediation efforts.Maintain policies, procedures, controls, and documentation to support ongoing compliance requirements.Conduct risk assessments and partner with stakeholders to identify and mitigate security and compliance risks.Manage third-party and vendor risk review processes.Support customer security reviews, due diligence requests, RFPs, and security questionnaires.Partner with Engineering and Security teams to evaluate and improve control effectiveness.Drive compliance reporting, training, awareness programs, and continuous improvement initiatives.Leverage GRC and compliance automation platforms to streamline audit and compliance operations.Requirements5+ years of experience in compliance, GRC, information security, audit, or risk management.Strong knowledge of SOC 2, ISO 27001, HIPAA, and security control frameworks.Experience managing both internal and external audits.Familiarity with risk management, policy development, vendor risk assessments, and security governance.Experience supporting enterprise customer security reviews and compliance inquiries.Excellent communication skills with the ability to collaborate across technical and non-technical teams.Hands-on experience with Vanta, Drata, or similar compliance automation platforms.Nice to HaveBackground supporting healthcare customers or healthcare compliance requirements.CISA, CISM, or CRISC CertificationsBenefitsFull Health BenefitsEquity participationRelocation SupportGenerous PTO