Senior GRC Leader for FedRAMP & Cloud Security

Iris Energy

San Francisco (CA)

On-site

USD 165,000 - 190,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Health insurance
Disability insurance
Retirement plan 401(k)
Paid time off

Job summary

IREN is seeking a Senior Governance, Risk and Compliance professional to lead FedRAMP program execution and enterprise risk management across our cloud and data-center platforms. You will build governance frameworks, coordinate with 3PAOs and regulators, and drive ISO 27001, SOC 2 and HITRUST readiness while engaging with federal stakeholders.

This role requires 5-7 years of cybersecurity leadership, strong communication with technical and executive teams, and a proven track record with FedRAMP.

Qualifications

  • Bachelor's (or Master's) degree in Information Security, Risk, Business or equivalent.
  • 5-7 years of experience in cybersecurity, IT program management, or a related field.
  • Proven track record leading at least one successful FedRAMP authorization.
  • Deep knowledge of the FedRAMP framework, NIST 800-53 controls, and supporting documentation.
  • Audit/assessment experience using risk-based frameworks.
  • Familiarity with cloud security architecture and adjacent frameworks (SOC 2, ISO 27001, HITRUST, etc.)
  • Strong communication and relationship-building skills across technical and executive levels.
  • Demonstrated analytical and problem-solving skills, highly organized and detail oriented.
  • Experience engaging with government agencies or federal sector stakeholders is highly desirable.
  • Relevant certifications (CISM, CISA, CRISC, CISSP, ISO 27001 Lead Implementor) strongly preferred.

Responsibilities

  • Lead enterprise-wide risk assessment programs, identify strategic risks, recommend mitigation and monitor residual risk.
  • Develop and maintain governance frameworks that align business objectives with regulatory/compliance requirements and security best practices.
  • Execute the company's FedRAMP authorization program from strategy through implementation.
  • Manage relationships with 3PAOs, consultants, and other external partners to facilitate assessments and drive progress.
  • Lead the preparation and submission of all FedRAMP deliverables, including the System Security Plan (SSP), policies, procedures, and supporting security documents.
  • Develop and maintain security and privacy policies, standards, and control frameworks aligned with ISO 27001, SOC 2, HITRUST, FedRAMP, and other global regulations
  • Support policy approvals, exception handling, and attestation processes while identifying opportunities for automation and process improvements.
  • Lead and execute enterprise risk assessments, including vendor and process-level reviews.
  • Support IREN's Third-Party Risk Management program including vendor assessments, monitoring, and remediation tracking
  • Lead readiness and response efforts for ISO 27001, HITRUST, FedRAMP and other audits and certifications.
  • Keep abreast of emerging regulatory, technological and business-risks, and drive improvements to the GRC program accordingly.

Skills

FedRAMP
NIST 800-53
SOC 2
ISO 27001
HITRUST
CISM
CISA
CRISC
CISSP
ISO 27001 Lead Implementor

Education

Bachelor's or Master's in Information Security, Risk, Business or equivalent

Job description

IREN is seeking a Senior Governance, Risk and Compliance professional to lead FedRAMP program execution and enterprise risk management across our cloud and data-center platforms. You will build governance frameworks, coordinate with 3PAOs and regulators, and drive ISO 27001, SOC 2 and HITRUST readiness while engaging with federal stakeholders.

This role requires 5-7 years of cybersecurity leadership, strong communication with technical and executive teams, and a proven track record with FedRAMP.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC & FedRAMP Lead for Cloud Security
GRC & FedRAMP Lead for Cloud Security

Socket.dev • San Francisco (CA)

On-site
USD 165,000 - 190,000
Health insurance
Disability insurance
401(k) retirement plan with company 匹配
+2
Senior GRC Lead FedRAMP High & DoD Compliance
Senior GRC Lead FedRAMP High & DoD Compliance

Peregrine Technologies, Inc. • Washington, Northern (KY)

Hybrid
USD 158,000 - 184,000
Senior Governance Risk and Compliance (GRC) Analyst
Senior Governance Risk and Compliance (GRC) Analyst

Socket.dev • San Francisco (CA)

On-site
USD 165,000 - 190,000
Health insurance
Disability insurance
401(k) retirement plan with company 匹配
+2
Strategic FedRAMP & DoD GRC Leader
Strategic FedRAMP & DoD GRC Leader

Mosaic.tech • Washington

Hybrid
USD 158,000 - 184,000
Senior FedRAMP High & DoD GRC Lead
Senior FedRAMP High & DoD GRC Lead

Peregrine • Washington

Hybrid
USD 158,000 - 184,000
Benefits
Equity (if applicable)
Senior Governance Risk and Compliance (GRC) Analyst
Senior Governance Risk and Compliance (GRC) Analyst

Iris Energy • San Francisco (CA)

On-site
USD 165,000 - 190,000
Health insurance
Disability insurance
Retirement plan 401(k)
+1
Senior FedRAMP & DoD GRC Lead
Senior FedRAMP & DoD GRC Lead

Socket.dev • Washington

Hybrid
USD 158,000 - 184,000
Benefits
Equity (if applicable)
Bonus (if applicable)
Senior GRC Director: FedRAMP, ISO 27001 & SOC 2 Lead
Senior GRC Director: FedRAMP, ISO 27001 & SOC 2 Lead

Anomali • Redwood City (CA)

Hybrid
USD 180,000 - 230,000
Senior GRC Lead: CMMC, FedRAMP, SOC 2, ITAR
Senior GRC Lead: CMMC, FedRAMP, SOC 2, ITAR

Industrious Ventures • Torrance (CA)

On-site
USD 120,000 - 150,000
Remote Senior Security Compliance Lead - PCI DSS & FedRAMP
Remote Senior Security Compliance Lead - PCI DSS & FedRAMP

Entrust • United States

On-site
USD 120,000 - 150,000
Fully remote