GRC Technical Program Manager

NetApp

Morrisville (NC)

Hybrid

USD 129,000 - 193,000

Full time

34 hours ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Health Insurance
Retirement Plan
Stock options
Paid Time Off

Job summary

NetApp’s Cloud business seeks a Governance, Risk & Compliance (GRC) Technical Program Manager to join the Security & Compliance team. This compliance and program management role requires strong cloud technical fluency to prepare products for assessments and certifications, manage risk, translate requirements into testable controls, and improve the security posture.

This is not a software engineering role. The position partners with engineering and security teams to automate compliance

Qualifications

  • Experience leading security risk and compliance programs through certification.
  • Ability to translate controls into engineering requirements for cloud environments.
  • Proven collaboration with engineering teams to deliver technical outcomes.

Responsibilities

  • Design, implement, and maintain compliance programs for ISO/IEC 27001, SOC 2, PCI DSS, NIST, and FedRAMP.
  • Perform risk assessments across infrastructure, applications, and cloud processes; monitor controls and advise remediation.
  • Translate regulatory controls into clear engineering requirements and automation opportunities.
  • Drive cross‑functional initiatives with Engineering, Cloud Security, Legal, Privacy, and Corporate Security.
  • Partner with AWS, Azure, and Google Cloud on shared security objectives and audits.
  • Manage auditor relationships and present security posture to leadership.

Skills

ISO/IEC 27001
SOC 2
PCI DSS
NIST
FedRAMP
AWS
Azure
Google Cloud
Kubernetes
Containers
CI/CD
SIEM

Education

Bachelor’s or Master’s degree in Engineering/CS/IT
CISA
CISSP
CCSP

Tools

AWS
Azure
Google Cloud
CI/CD pipelines

Job description

Own Every Moment at NetApp

At NetApp, your ideas power innovation. We lead in intelligent data infrastructure—delivering unified storage, integrated data services, and solutions that help organizations unlock the full potential of their data, from AI to multicloud. Ready to innovate and contribute to our path to $10B? Here, you'll collaborate with passionate teams, tackle real-world challenges, and see your impact in how customers transform and grow. If you're ready to bring curiosity, creativity, and drive to every moment, NetApp is where your journey begins. Join teams that innovate to elevate, drive results, and excel together across every function.

Job Summary

NetApp’s Cloud business seeks a Governance, Risk & Compliance (GRC) Technical Program Manager to join the Security & Compliance team. This compliance and program management role requires strong cloud technical fluency to prepare products for assessments and certifications, manage risk, translate requirements into testable controls, and improve the security posture. This is not a software engineering role. The position partners with engineering and security teams to automate compliance activities, detection, remediation, evidence collection, and monitoring, including through AI tooling. The role also aligns cross‑functional stakeholders and represents the compliance program to leaders, auditors, and hyperscaler partners.

Location: RTP, Boston, Waltham

Job Requirements
  • Design, maintain, and improve compliance programs supporting ISO/IEC 27001, SOC 2, PCI DSS, NIST, and FedRAMP assessments and certifications.
  • Perform technical gap and risk assessments across infrastructure, applications, and cloud engineering processes; monitor controls and advise owners on remediation.
  • Translate regulatory and compliance controls into clear, measurable engineering and security requirements.
  • Identify manual compliance activities for automation and partner with engineering and security teams on automated detection, remediation, evidence collection, and continuous monitoring.
  • Apply AI and related tooling to improve compliance workflows.
  • Align Engineering, SRE, Product, Cloud Security, Legal, Privacy, and Corporate Security teams and drive cross‑functional initiatives to completion.
  • Partner with Microsoft Azure, Google Cloud, and Amazon Web Services on shared compliance and security objectives.
  • Manage auditor and assessor relationships and clearly present the organization’s technical security posture.
  • Improve policies, processes, security governance, and adoption of GRC tooling.
Required Qualifications
  • 6+ years building and managing security risk and compliance programs, including ownership of large cross‑functional programs through certification.
  • Deep knowledge of ISO/IEC 27001, SOC 2, PCI DSS, NIST, and FedRAMP, with demonstrated ability to convert controls into engineering requirements.
  • Direct experience partnering with engineering teams to deliver technical outcomes.
  • Exceptional stakeholder management and ability to influence senior stakeholders and external partners without direct authority.
  • Strong technical fluency in AWS and Azure, Kubernetes, containers, virtual machines, identity and access control, network security, cryptography, logging and monitoring, incident response, DevOps, and CI/CD.
  • Familiarity with cloud security capabilities, SIEM, vulnerability scanning, cloud security posture management, and endpoint detection and response.
  • Product‑oriented problem solving with the ability to investigate gaps, gather requirements, and drive solutions to completion.
Preferred Qualifications
  • Experience with FedRAMP, GovRAMP, CMMC, CJIS, and NIST 800-53/800-171.
  • Experience applying AI or large language model tooling to compliance workflows and familiarity with NIST AI RMF or ISO/IEC 42001.
Education
  • Bachelor’s or Master’s degree in Engineering, Computer Science, Information Technology, or a related field, or equivalent professional experience.
  • Professional certifications in security, compliance, or cloud are advantageous, including CISA, CISSP, CRISC, CCSK, CCSP, CIPP, AWS certifications, or ISO 27001 Lead Implementer / Lead Auditor.
Compensation

The target salary range for this position is 129,200 - 192,500 USD. The salary offered will be determined by the candidate's location, qualifications, experience, and education and may be outside of this range. The range is based on 'On Target Earnings’ (OTE) representing the total potential earnings, which is the sum of the base salary and potential commission earned when performance targets are achieved. Final compensation packages are competitive and in line with industry standards, reflecting a variety of factors, and include a comprehensive benefits package. This may cover Health Insurance, Life Insurance, Retirement or Pension Plans, Paid Time Off, various Leave options, employee stock purchase plan, and/or restricted stocks (RSU’s). These offerings are subject to regional variations and governed by local laws, regulations, and company policies. We will provide detailed information about the specific benefits for your region during the recruitment process.

At NetApp, we embrace a hybrid working environment designed to strengthen connection, collaboration, and culture for all employees. This means that most roles will have some level of in‑office and/or in‑person expectations, which will be shared during the recruitment process.

Equal Opportunity Employer

NetApp is firmly committed to Equal Employment Opportunity (EEO) and to compliance with all federal, state and local laws that prohibit employment discrimination based on age, race, color, gender, sexual orientation, gender identity, national origin, religion, disability or genetic information, pregnancy, protected veteran status, and any other protected classification.

Why You’ll Thrive at NetApp

At NetApp, you won't wait for the perfect moment—you'll make it. The early planning, the extra thought, the bold idea that turns good into great: That's how our people operate and how we continue to push the boundaries of data infrastructure. NetApp is the trusted partner for organizations transforming data into opportunity. As the only enterprise‑grade storage service natively embedded in Google Cloud, AWS, and Microsoft Azure, we empower customers to run everything from traditional workloads to enterprise AI with unmatched performance, resilience, and security.

Our culture

We celebrate mold breakers, bold thinkers, and problem solvers. We reward initiative, impact, and ownership. We provide flexibility so you can balance professional ambition with your personal life. Here, differences are not just welcomed—they drive everything we do.

If you're ready to innovate, rise to the challenge, and own every moment - make your next move your best one.

AI Disclosure

For select roles, some stages of our hiring process may use artificial intelligence tools to help evaluate applications and candidate selection. These tools support—rather than replace—human decision‑making.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Technical Program Manager
GRC Technical Program Manager

NetApp, Inc. • Morrisville (NC)

On-site
USD 129,000 - 193,000
Health Insurance
Retirement plan
Paid time off
+2
Global Cybersecurity Compliance Manager
Global Cybersecurity Compliance Manager

NetApp • Morrisville (NC)

On-site
USD 150,000 - 230,000
Technical Program Mgr
Technical Program Mgr

NetApp • Wichita (KS)

Hybrid
USD 170,000 - 253,000
Comprehensive benefits
Hybrid work environment
Program Manager - Business Process & Program Excellence
Program Manager - Business Process & Program Excellence

NetApp • San Jose (CA)

Hybrid
USD 100,000 - 150,000
Program Manager - Business Process & Program Excellence
Program Manager - Business Process & Program Excellence

NetApp, Inc. • San Jose (CA)

On-site
USD 100,000 - 150,000
Hybrid work model
Comprehensive benefits
Principal Program Manager, Talent Management
Principal Program Manager, Talent Management

NetApp • Morrisville (NC)

On-site
USD 148,000 - 220,000
Technical Program Mgr
Technical Program Mgr

NetApp, Inc. • Wichita (KS)

Hybrid
USD 170,000 - 253,000
Health Insurance
Retirement Plans
Paid Time Off (PTO)
+3
Technical Program Mgr
Technical Program Mgr

NetApp • San Jose (CA)

On-site
USD 170,000 - 253,000
Sr. Director, AI Business Architecture & Enterprise Adoption
Sr. Director, AI Business Architecture & Enterprise Adoption

NetApp • Morrisville (NC)

Hybrid
USD 228,000 - 339,000
Health Insurance
401(k) Plans
Employee Stock Purchase Plan
Sr. Director, AI Business Architecture & Enterprise Adoption
Sr. Director, AI Business Architecture & Enterprise Adoption

NetApp • San Jose (CA)

Hybrid
USD 228,000 - 339,000
Health Insurance
Retirement plans
Paid time off