GRC Manager: SOC2/HITRUST Security Leader

Femtech Insider Ltd.

Town of Texas (WI)

Hybrid

USD 170,000 - 201,000

Full time

9 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Hybrid work model
Equity
16 weeks paid parental leave
Professional development stipend
Career coaching
401K matching

Job summary

Maven Clinic is seeking a GRC Manager to own governance, risk, and compliance for our B2B health benefits platform. You will lead the GRC function, work with Engineering, IT, HR, Legal, and Sales to gather evidence, close gaps, and manage audits and certifications.

You will drive SOC 2, HITRUST, ISO 27001 programs, respond to customer RFIs, and maintain security knowledge bases. This role reports to the CISO and shapes our compliance posture across enterprise engagements.

Qualifications

  • Experience owning at least one SOC 2 or similar audit cycle end-to-end.
  • Hands-on knowledge of SOC 2, HITRUST, and ISO 27001 frameworks.
  • Experience responding to customer security questionnaires/RFIs in a B2B SaaS or healthcare-adjacent environment.
  • Strong cross-team collaboration with Engineering, IT, HR, Legal and Sales.
  • Solid project management: sequencing audits, tracking remediation and deadlines.

Responsibilities

  • Own continuation and renewal of SOC 2 (Type II) and HITRUST certifications end-to-end.
  • Lead ISO 27001 and ISO 42001 programs, including gap assessments and policy writing.
  • Manage audit calendar and coordinate evidence with stakeholders.
  • Translate regulatory changes into control updates.
  • Serve as primary owner of security questionnaires and RFIs/RFPs for Sales and Customer Success.
  • Maintain security knowledge base and partner with teams for customer calls when security is a blocker.

Skills

GRC management
Security compliance
Audits
Policies writing
Cross-team collaboration
Project management
Security risk assessment

Education

CISA certification
CRISC certification
CISSP certification
PMP / CAPM
CISM certification

Tools

Vanta
Drata
Secureframe
Hyperproof

Job description

Maven Clinic is seeking a GRC Manager to own governance, risk, and compliance for our B2B health benefits platform. You will lead the GRC function, work with Engineering, IT, HR, Legal, and Sales to gather evidence, close gaps, and manage audits and certifications.

You will drive SOC 2, HITRUST, ISO 27001 programs, respond to customer RFIs, and maintain security knowledge bases. This role reports to the CISO and shapes our compliance posture across enterprise engagements.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Leader: SOC 2, HITRUST & ISO 27001 Expert
GRC Leader: SOC 2, HITRUST & ISO 27001 Expert

Maven Clinic Co. • New York (NY), Northern (KY)

Hybrid
USD 170,000 - 201,000
Hybrid work model
Parental leave & family support
401K matching
GRC Lead: Security & Compliance (SOC2/HITRUST)
GRC Lead: Security & Compliance (SOC2/HITRUST)

Maven Clinic • New York (NY)

Hybrid
USD 170,000 - 201,000
Hybrid work model
Parental leave
Professional development stipend
+1
GRC Program Lead — Health Tech Security & Compliance
GRC Program Lead — Health Tech Security & Compliance

Maven Clinic • United States

On-site
USD 140,000 - 180,000
Parental leave
401K matching
Professional development stipend
+2
Hybrid GRC Manager: Enterprise Security & Compliance
Hybrid GRC Manager: Enterprise Security & Compliance

Maven Clinic • United States

Hybrid
USD 170,000 - 201,000
Hybrid work model
Parental leave
Professional development stipend
+1
Senior Manager of Governance, Risk, and Compliance
Senior Manager of Governance, Risk, and Compliance

Maven Clinic • United States

On-site
USD 140,000 - 180,000
Parental leave
401K matching
Professional development stipend
+2
Remote Senior GRC Manager: HIPAA, SOC 2 & HITRUST
Remote Senior GRC Manager: HIPAA, SOC 2 & HITRUST

Virta Health • United States

Remote
USD 150,000 - 210,000
Senior Manager, GRC
Senior Manager, GRC

Femtech Insider Ltd. • Town of Texas (WI)

Hybrid
USD 170,000 - 201,000
Hybrid work model
Equity
16 weeks paid parental leave
+3
GRC & Security Compliance Lead
GRC & Security Compliance Lead

Neura Market • San Francisco (CA)

On-site
USD 140,000 - 190,000
Equity
Medical, dental, and vision coverage
Flexible PTO
+4
Security Compliance Program Lead: SOC 2, HITRUST & ISO
Security Compliance Program Lead: SOC 2, HITRUST & ISO

Jobtailor • California (MO)

On-site
USD 130,000 - 165,000
GRC Engineering Manager: Lead Secure Cloud Compliance
GRC Engineering Manager: Lead Secure Cloud Compliance

Workstreet • Northern (KY)

Hybrid
USD 150,000 - 190,000
Career Development
Role-Related Training
Competitive Compensation
+2