Remote Information Security GRC Manager

Neumo

Carrollton (VA)

On-site

USD 140,000 - 190,000

Full time

31 hours ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Neumo is seeking a Manager, Information Security (GRC) to own and mature its Governance, Risk, and Compliance program. You will drive SOC 1, SOC 2, and PCI DSS readiness, build data governance foundations, and lead risk mitigation cycles.

You will translate regulatory requirements into practical controls, collaborate with legal, engineering, and executives, and guide 1–2 direct reports while advancing automation and AI-driven workflows across the security program.

Qualifications

  • 6+ years of experience in GRC, information security compliance, or IT audit.
  • Hands-on experience owning SOC 1, SOC 2, and PCI DSS compliance programs end‑to‑end, including audit management.
  • Experience with GRC platforms (e.g., Vanta, Drata, ServiceNow GRC, OneTrust, Archer).
  • Build risk management programs: risk registers, risk acceptance/exception processes, and recurring risk mitigation cadences.

Responsibilities

  • Own end-to-end readiness and execution for SOC 1, SOC 2, and PCI DSS audits, including evidence collection and remediation tracking.
  • Lead and mentor 1–2 direct reports supporting compliance, risk, and audit activities.
  • Design and implement data governance foundations: classification, ownership, retention, and handling standards.
  • Build and maintain the risk register; lead monthly, quarterly, and annual risk mitigation cycles.
  • Report on compliance posture, audit status, and risk trends to executives and the board.

Skills

GRC
Audits
Jira
Data governance
Automation
AI tools
Incident management
Policy development
Risk assessment

Education

CISA/CRISC/CISSP/CISM certifications

Tools

Vanta
Drata
ServiceNow GRC
OneTrust
Archer

Job description

Neumo is seeking a Manager, Information Security (GRC) to own and mature its Governance, Risk, and Compliance program. You will drive SOC 1, SOC 2, and PCI DSS readiness, build data governance foundations, and lead risk mitigation cycles.

You will translate regulatory requirements into practical controls, collaborate with legal, engineering, and executives, and guide 1–2 direct reports while advancing automation and AI-driven workflows across the security program.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Remote GRC & InfoSec Leader: SOC 1/2, PCI
Remote GRC & InfoSec Leader: SOC 1/2, PCI

Neumo • West Jordan (UT)

On-site
USD 120,000 - 180,000
Manager, Information Security (GRC) (Remote)
Manager, Information Security (GRC) (Remote)

Neumo • Carrollton (VA)

On-site
USD 140,000 - 190,000
Manager, Information Security (GRC) (Remote)
Manager, Information Security (GRC) (Remote)

Neumo • West Jordan (UT)

On-site
USD 120,000 - 180,000
Senior Director, Information Security — SOC 1/2 & PCI Lead
Senior Director, Information Security — SOC 1/2 & PCI Lead

Neumo • Town of Texas (WI)

On-site
USD 180,000 - 260,000
Remote Security GRC Analyst: Risk & Compliance Lead
Remote Security GRC Analyst: Risk & Compliance Lead

NEPSE Trading • United States

On-site
USD 70,000 - 77,000
Health insurance
401(k) plan with company match
Pension plan
+1
Senior GRC Engineer - Automate Compliance & Security
Senior GRC Engineer - Automate Compliance & Security

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 241,000
Remote GRC Leader: Governance, Risk & Compliance
Remote GRC Leader: Governance, Risk & Compliance

Sound Physicians • Northern (KY)

Hybrid
USD 130,000 - 160,000
Medical, dental & vision insurance
FSA (healthcare & dependent care)
401(k) with company match
+2
Security GRC Engineer — Lead Compliance & Risk
Security GRC Engineer — Lead Compliance & Risk

Whatnot • Los Angeles (CA)

Hybrid
USD 120,000 - 180,000
Health Insurance options
Work From Home Support
Home office setup allowance
+3
Senior GRC Program Lead - SOC 2, GDPR & Security
Senior GRC Program Lead - SOC 2, GDPR & Security

Tandem Inc. • Draper (UT)

Hybrid
USD 110,000 - 170,000
On-site gym
Flexible PTO
Redo perks: monthly ecommerce credit
+2
Senior Director, Information Security (Remote)
Senior Director, Information Security (Remote)

Neumo • Town of Texas (WI)

On-site
USD 180,000 - 260,000