Senior GRC Leader: Security Strategy & Risk

WHOOP

Boston (MA)

On-site

USD 180,000 - 250,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Flexible vacation
Parental leave 18 weeks
Stock options
WHOOP membership
Medical, dental, vision
Wellness stipend $500/year
Sleep incentive $100

Job summary

WHOOP is seeking a Senior Manager, GRC to shape and lead our information security governance program in a fast‑growing environment. You will drive the GRC roadmap with stakeholders across Product, Engineering, Data Analytics, and Legal to meet evolving security needs and regulatory requirements.

You will lead development and ongoing management of security controls, policies, and awareness, while guiding a growing team to scale risk management, reporting, and strategic governance across the

Qualifications

  • Excellent communication, interpersonal, and leadership skills with the ability to influence across teams and levels.
  • Deep understanding of regulations and standards including ISO 27001, SOC 2, GDPR, PCI, NIST CSF, and privacy/security obligations.
  • 10+ years of experience in GRC, or information security / cybersecurity, with 5+ years in managing GRC, information security, or cybersecurity professionals.
  • Bachelor’s degree required; computer science, cyber security or risk/technology degrees preferred.
  • Experience building or integrating GRC programs in enterprise security to improve overall security posture.

Responsibilities

  • Lead the development, implementation, and continuous evolution of the GRC program, driving strategy and hands‑on execution.
  • Partner with Product, Engineering, Data Analytics, and Legal to strengthen security posture.
  • Develop, implement, and manage scalable security control frameworks, policies, standards, and awareness programs.
  • Actively manage the enterprise risk register, drive risk prioritization, and deliver executive‑level reporting.
  • Mentor and develop GRC analysts while balancing hands‑on execution as the program scales.

Skills

Leadership
Strategic thinking
Regulatory expertise
GRC experience
Stakeholder management

Education

Bachelor's degree
Cybersecurity or risk-related degree preferred

Job description

WHOOP is seeking a Senior Manager, GRC to shape and lead our information security governance program in a fast‑growing environment. You will drive the GRC roadmap with stakeholders across Product, Engineering, Data Analytics, and Legal to meet evolving security needs and regulatory requirements.

You will lead development and ongoing management of security controls, policies, and awareness, while guiding a growing team to scale risk management, reporting, and strategic governance across the

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Leader: Enterprise Risk & Compliance Ops
GRC Leader: Enterprise Risk & Compliance Ops

WHOOP • Boston (MA)

On-site
USD 140,000 - 190,000
Flexible vacation
Parental leave (18 weeks)
Stock options
+5
Senior Manager of GRC
Senior Manager of GRC

WHOOP • Boston (MA)

On-site
USD 180,000 - 250,000
Flexible vacation
Parental leave 18 weeks
Stock options
+4
GRC Risk & Compliance Manager | Equity & Impact
GRC Risk & Compliance Manager | Equity & Impact

WHOOP • Boston (MA)

On-site
USD 155,000 - 195,000
Senior GRC Analyst: AI Security & Compliance Leader
Senior GRC Analyst: AI Security & Compliance Leader

Shift Technology • New York (NY)

Hybrid
USD 120,000 - 150,000
Remote and hybrid options
Learning & development opportunities
Generous PTO & holidays
+2
Senior GRC Security Lead: Build Policy & Risk for SaaS
Senior GRC Security Lead: Build Policy & Risk for SaaS

Gong.io • United States

Hybrid
USD 121,000 - 185,000
Medical, dental, and vision plans
Flexible wellness stipend
Mental health benefits
+6
Remote GRC Leader: Governance, Risk & Compliance
Remote GRC Leader: Governance, Risk & Compliance

Sound Physicians • Northern (KY)

Hybrid
USD 130,000 - 160,000
Medical, dental & vision insurance
FSA (healthcare & dependent care)
401(k) with company match
+2
Senior GRC Leader: Governance, Risk & Compliance Strategy
Senior GRC Leader: Governance, Risk & Compliance Strategy

Brobston Group LLC • Seattle (WA)

On-site
USD 180,000 - 260,000
Senior GRC Manager — Security & Compliance Lead
Senior GRC Manager — Security & Compliance Lead

Socket.dev • Chicago (IL)

On-site
USD 110,000 - 140,000
Senior GRC & Security Lead — Policy, Risk & Compliance
Senior GRC & Security Lead — Policy, Risk & Compliance

Gong • San Francisco (CA)

On-site
USD 121,000 - 185,000
Medical, dental, and vision plans
Wellbeing Fund
401(k) program
+2
Senior GRC & Information Security Lead
Senior GRC & Information Security Lead

Dorsey & Whitney LLP • Phoenix (AZ)

On-site
USD 140,000 - 180,000
Health benefits
Paid time off
Parental leave