Director, Governance, Risk & Compliance (GRC)

Tacony Corporation

St. Louis, Northern (MO, KY)

Hybrid

USD 120,000 - 190,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health and Life Insurance Plans
Dental and Vision Plans
401(k) with company match
Paid Time Off and Holiday Pay
Maternity/Paternity Leave
Casual Dress Environment
Tuition Reimbursement
MTM Perks Discount Program
Leadership Mentoring Opportunities

Job summary

MTM is seeking a Director of Governance, Risk & Compliance to lead enterprise technology and AI compliance, shaping policies, controls, and oversight across cloud, data, AI/ML, GenAI, and software development. This high-impact role drives regulatory alignment, audit readiness, and executive reporting while guiding a specialized compliance team in a fast-growing environment.

The ideal candidate brings deep technology knowledge with a regulatory mindset, strong leadership, and a proven track

Qualifications

  • High School Diploma or GED required.
  • 4+ years in technology compliance, technology risk, cybersecurity risk, audit, or data governance roles.
  • 4+ years of data analysis experience.
  • Experience with regulatory frameworks and certifications such as SOC 2, HITRUST, FedRAMP.

Responsibilities

  • Lead compliance oversight for SOC 2, HITRUST, FedRAMP, and similar certifications.
  • Ensure first-line teams produce audit-ready artifacts.
  • Track remediation and risk closure.
  • Lead enterprise governance for technology and AI within the Compliance function.
  • Own policies, standards, and controls related to cloud, data, AI/ML/GenAI, automation, and software development.
  • Drive risk-tiering and governance requirements for technology and AI systems.
  • Ensure alignment to regulatory, ethical, and customer expectations.
  • Establish KRIs and KPIs for technology and AI compliance (control maturity, issues, exceptions, drift signals, audit readiness).
  • Provide regular reporting to senior leadership and the AI Governance Committee.
  • Lead thematic reviews of technical risk trends and emerging threats.
  • Ensure cloud and SaaS environments meet compliance-related controls (SOC 2, HITRUST, FedRAMP).
  • Validate due diligence, technical assessments, and ongoing monitoring for technology adoption.
  • Ensure data governance practices incorporate compliance standards for classification, retention, quality, and access.
  • Support privacy with DPIAs and data-related assessments.
  • Deliver training on AI governance, cloud/SaaS compliance, and technology risks.
  • Build processes, templates, and playbooks that operationalize compliance expectations.
  • Serve as a strategic advisor to technology, data, and AI leaders.
  • Govern AI risk assessments, use-case oversight, and documentation standards.
  • Define compliance criteria for high-risk AI.
  • Monitor evolving AI regulations.
  • Set compliance expectations for technology and AI vendors.
  • Oversee due diligence, contractual requirements, and ongoing vendor monitoring.
  • Define compliance-required controls; review and challenge technical architecture, risk assessments, and AI documentation.
  • Oversee compliance evidence requirements (e.g., model cards, testing results, data lineage).
  • Advise on risk acceptance, control gaps, and compensating controls.
  • Provide daily guidance for team of direct reports.

Skills

AI governance
Executive presence
Communication
Analytical skills
Regulatory knowledge
Risk assessment
Cross-functional collaboration
Leadership
Project management
Work under pressure

Education

High School Diploma or GED

Job description

At MTM, we are not just colleagues; we are collaborators on a shared mission;communities without barriers. We have exciting opportunities to join our growing team where your work has a direct impact on the communities we serve. Our company culture is one of innovation, collaboration, and growth. If you are passionate, driven, and ready to join a team where your work will directly transform and shape our industry, then we want to talk to you!

What will your job look like?

The Director, Governance, Risk & Compliance (GRC) serves as the enterprise’s senior leader responsible for governing the compliance dimensions of modern technology and AI. This role is a second line of defense, and provides the strategic oversight and assurance needed to ensure the organization’s technology, and AI ecosystem aligns with regulatory expectations, ethical standards, and customer commitments.

The Director, GRC owns the technology & AI compliance Framework, oversees governance for high‑risk technologies, and ensures the organization is prepared for external scrutiny, including certifications such as SOC 2, HITRUST, and FedRAMP.

This is a governance and risk leadership position, ideal for someone who understands technology deeply but operates with a compliance, assurance, and regulatory mindset.

What you’ll do:
Audit & Certification Readiness
  • Lead compliance oversight for SOC 2, HITRUST, FedRAMP, and similar certifications

  • Ensure first-line teams produce audit-ready artifacts

  • Track remediation and risk closure

Technology & AI Governance
  • Lead enterprise governance for technology and AI within the Compliance function

  • Own policies, standards, and controls related to cloud, data, AI/ML/GenAI, automation, and software development

  • Drive risk-tiering and governance requirements for technology and AI systems

  • Ensure alignment to regulatory, ethical, and customer expectations

  • Establish KRIs and KPIs for technology and AI compliance (control maturity, issues, exceptions, drift signals, audit readiness)

  • Provide regular reporting to senior leadership and the AI Governance Committee

  • Lead thematic reviews of technical risk trends and emerging threats

Compliance Oversight
  • Ensure cloud and SaaS environments meet compliance-related controls (SOC 2, HITRUST, FedRAMP)

  • Validate due diligence, technical assessments, and ongoing monitoring for technology adoption

  • Ensure data governance practices incorporate compliance standards for classification, retention, quality, and access

  • Support privacy with DPIAs and data-related assessments

  • Deliver training on AI governance, cloud/SaaS compliance, and technology risks

  • Build processes, templates, and playbooks that operationalize compliance expectations

  • Serve as a strategic advisor to technology, data, and AI leaders

  • Govern AI risk assessments, use-case oversight, and documentation standards

  • Define compliance criteria for high-risk AI

  • Monitor evolving AI regulations

  • Set compliance expectations for technology and AI vendors

  • Oversee due diligence, contractual requirements, and ongoing vendor monitoring

  • Define compliance-required controls; review and challenge technical architecture, risk assessments, and AI documentation

  • Oversee compliance evidence requirements (e.g., model cards, testing results, data lineage)

  • Advise on risk acceptance, control gaps, and compensating controls

  • Provide daily guidance for team of direct reports

What you’ll need:
Experience, Education & Certifications:
  • High School Diploma or G.E.D

  • 4+ years in technology compliance, technology risk, cybersecurity risk, audit, or data governance roles

  • 4+ years of data analysis experience

  • Experience with regulatory frameworks and certifications such as SOC 2, HITRUST, FedRAMP

Skills:
  • Strong command of AI governance, model risk, or responsible AI frameworks

  • Excellent executive presence, judgment, and the ability to influence senior technical leaders

  • Ability to translate complex technical concepts into actionable compliance requirements

  • Outstanding analytical and organizational skills and attention to detail

  • Ability to work independently and collaboratively with others to achieve defined goals

  • Ability to motivate and empower employees

  • Ability to work well under pressure

  • Passion for data

  • Ability to build and maintain effective cross functional department partnerships

  • Strong sense of urgency

  • Strategic thinker

  • Demonstrate excellent time management skills

  • Ability to identify, interpret and communicate business risks

  • Ability to lead, coach and motivate a specialized compliance team

  • Excellent problem-solving skills with the ability to anticipate and resolve problems

  • Ability to maintain positive attitude and team focused during high stress situations

  • Deep familiarity with cloud, SaaS, software development, and AI/ML from a risk and compliance perspective

  • Must be able to communicate with staff of all job levels professionally

  • Demonstrate a high level of ownership

  • Excellent communication skills

  • Ability to maintain high level of confidentiality

Even better if you have:
  • Experience in healthcare, SaaS, regulated industries, or technology-focused compliance programs, preferred

  • Prior experience leading SOC/HITRUST/FedRAMP audits, preferred

  • Professional certifications (e.g., CISA, CISM, CRISC, CIPM, CCSK, CCAI) a plus

  • Direct exposure to data governance programs, cloud security concepts, or AI governance, preferred

What’s in it for you:
  • Health and Life Insurance Plans

  • Dental and Vision Plans

  • 401(k) with a company match

  • Paid Time Off and Holiday Pay

  • Maternity/Paternity Leave

  • Casual Dress Environment

  • Tuition Reimbursement

  • MTM Perks Discount Program

  • Leadership Mentoring Opportunities

Equal Opportunity Employer: MTM is an equal opportunity employer. MTM considers qualified candidates with a criminal history in a manner consistent with the requirements of applicable local, State, and Federal law. If you are in need of accommodations, please contact MTM’s People & Culture.

#MTM

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior GRC Leader — Tech & AI Compliance
Senior GRC Leader — Tech & AI Compliance

Tacony Corporation • St. Louis (MO), Northern (KY)

Hybrid
USD 120,000 - 190,000
Health and Life Insurance Plans
Dental and Vision Plans
401(k) with company match
+6
Governance, Risk and Compliance Lead
Governance, Risk and Compliance Lead

Thinking Machines Lab Inc. • San Francisco (CA), Northern (KY)

On-site
USD 225,000 - 350,000
Health, dental, and vision benefits
Unlimited PTO
Paid parental leave
+1
Project Manager, Enterprise Security Compliance
Project Manager, Enterprise Security Compliance

Tacony Corporation • St. Louis (MO), Northern (KY)

On-site
USD 90,000 - 130,000
Health and Life Insurance Plans
Dental and Vision Plans
401(k) with a company match
+6
Senior GRC Analyst
Senior GRC Analyst

Turing • United States

On-site
USD 120,000 - 180,000
Frontier AI projects
Conference exposure
Collaborative team environment
Senior Director, Employee Relations and Compliance
Senior Director, Employee Relations and Compliance

MGT Consulting Group • Northern (KY)

Hybrid
USD 180,000 - 240,000
Flexible PTO
401(k) matching
Equity opportunities
+5
Manager, Governance, Risk and Compliance
Manager, Governance, Risk and Compliance

Path Robotics • Columbus (OH)

On-site
USD 100,000 - 130,000
Daily free lunch
Flexible PTO
Comprehensive medical, dental, and vision coverage
+3
Manager, IT Governance, Risk & Compliance
Manager, IT Governance, Risk & Compliance

The Institutes • Malvern

Hybrid
USD 110,000 - 150,000
401(k) with company contribution up to
Paid maternity and parental leave
Medical, dental, vision coverage
+1
GRC Manager
GRC Manager

G2 Crowd, Inc. • Chicago (IL)

On-site
USD 120,000 - 131,000
Flexible work
Parental leave
Unlimited PTO
Director, Governance, Risk & Compliance
Director, Governance, Risk & Compliance

MX • Lehi (UT)

On-site
USD 150,000 - 230,000
Company-paid meals
Gym access
Mothers lounge
Cyber Manager - Governance, Risk and Compliance
Cyber Manager - Governance, Risk and Compliance

Steelcase • Grand Rapids (MI)

Hybrid
USD 150,000 - 200,000
Hybrid work model
Continual learning opportunities
Competitive wages and benefits