Remote GRC Manager, Tech Risk & Controls

Coinbase, Inc.

Indianapolis (IN)

Hybrid

USD 194,000 - 228,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Coinbase, Inc. is seeking a Manager, GRC to join our Technology Risk & Controls team within Security and lead second line advisory coverage across critical technology and security domains.

You will manage a team and directly own advisory coverage for domains including disaster recovery, SDLC, IAM, and supply chain, partnering with engineering and leadership to address risks. The role requires 8+ years in technology risk and hands-on GRC delivery, with the ability to translate complex risk

Qualifications

  • 8+ years in technology risk, IT controls, IT audit, cybersecurity risk, or compliance, with hands-on experience delivering full-stack GRC services (risk management, control design, continuous monitoring, governance documentation).
  • Deep understanding of technical design and governance principles across domains such as infrastructure resiliency, SDLC, change management, or incident response, with demonstrated ability to challenge status quo and drive improvement.
  • Hands-on experience evaluating risks and control design, identifying weaknesses, and partnering with stakeholders to improve risk outcomes and control maturity.
  • Proven track record managing and mentoring analysts, growing their capabilities and careers while holding teams accountable to deliverables and timelines.
  • Track record of influencing cross-functional stakeholders, translating complex risk and compliance concepts into clear functional requirements for both technical and non-technical audiences.
  • Utilizes generative AI responsibly, maintaining human oversight to deliver business-ready outputs and drive measurable improvements in workflow efficiency, cost, and quality.

Responsibilities

  • Lead second line advisory coverage for key technology and security domains, assessing risk exposure, control effectiveness, policy alignment, and emerging issues across the business.
  • Partner with engineering and technology teams to evaluate domain posture and identify where additional controls, remediation, or governance improvements are needed.
  • Review and challenge the design of new and existing risks and their corresponding controls to ensure our mitigations are scalable, effective, and aligned to business, risk, and regulatory expectations.
  • Drive coordination across risk, controls, policy, audit, and assurance teams to translate incidents, audit findings, and regulatory expectations into actionable improvements that strengthen the technology control environment.
  • Intake, triage, and calculate inherent and residual risk with subject matter experts and risk owners, facilitating risk treatment decisions and validating execution of mitigation plans.
  • Enable leadership decision-making by communicating quantitative and qualitative risk tradeoffs and connecting risks, controls, policies, incidents, and findings into clear narratives that support prioritization and reporting.
  • Build, grow, and coach a team of technology and security analysts and senior analysts, fostering a culture of agility, innovation, and continuous performance feedback.

Skills

GRC leadership
Risk management
IT controls
Cybersecurity risk
Regulatory compliance

Job description

Coinbase, Inc. is seeking a Manager, GRC to join our Technology Risk & Controls team within Security and lead second line advisory coverage across critical technology and security domains.

You will manage a team and directly own advisory coverage for domains including disaster recovery, SDLC, IAM, and supply chain, partnering with engineering and leadership to address risks. The role requires 8+ years in technology risk and hands-on GRC delivery, with the ability to translate complex risk

Get your free, confidential resume review.

or drag and drop your file here.