CrawlJobs Logo

Program Manager, Integrity GRC

meta.com Logo

Meta

Location Icon

Location:
United States , New York

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

153000.00 - 209000.00 USD / Year

Job Description:

Meta’s Integrity GRC team is the central force behind integrity risk management and compliance for Meta and our family of apps. We’re seeking experienced professionals in compliance, risk management, and integrity to help protect Meta’s global products and services by proactively identifying, assessing, and mitigating compliance and integrity risks across our platforms.

Job Responsibility:

  • Lead Risk Assessment Activities: Proactively identify, assess, and mitigate compliance and integrity risks across Meta’s platforms, including conducting statutory risk assessments
  • Support Regulatory Audit Readiness: Manage audit readiness activities and coordinate responses to regulatory audits and requests for information, ensuring Meta’s compliance posture is well-documented and defensible
  • Draft, Edit, and Review Regulatory Reports: Prepare, edit, and review regulatory and compliance reports, ensuring clarity, accuracy, and alignment with internal standards and external requirements. Maintain submission-ready documentation
  • Monitor and Interpret Regulatory Changes: Maintain an understanding of the evolving global regulatory landscape impacting Meta’s Integrity functions, and translate regulatory changes into actionable project work and risk management deliverables
  • Serve as Integrity GRC Subject Matter Expert: Act as a key connection point between Integrity Risk Management, Legal, Regulatory Offices, and business teams, providing guidance on risk management matters
  • Drive Cross-Functional Collaboration: Build and maintain relationships with global stakeholders across Integrity, Legal, and business teams to ensure alignment and execution of compliance and risk management activities
  • Ensure Regulatory and Policy Adherence: Ensure all activities and documentation adhere to internal standards and regulatory requirements, supporting Meta’s capacity to maintain legal and regulatory compliance
  • Communicate Risk and Compliance Status: Establish streamlined communication models to provide regular updates, status reports, and feedback requests to stakeholders, ensuring transparency and cross-functional alignment
  • Identify and Address Gaps: Identify gaps in strategy, systems, or processes related to risk management, and work with relevant teams to implement improvements
  • Support Business Travel: Travel as needed (up to 10%) to support regulatory or risk management activities

Requirements:

  • 7+ years in risk management, compliance, or integrity roles within large, complex, or regulated organizations
  • Experience in risk assessment to identify, evaluate, and mitigate compliance and integrity risks
  • Knowledge of global regulatory frameworks relevant to technology, social media, or digital platforms
  • Demonstrated experience working across legal, regulatory, and business teams
  • Demonstrated communication skills, with experience presenting risk management topics to leadership and regulators
  • Demonstrated ability to prepare, edit, and review reports, including regulatory, risk, and compliance documentation
  • Program/project management experience, including prioritizing deliverables and driving cross-functional alignment
  • Track record of process improvement, identifying and addressing gaps in risk management strategy, systems, or processes

Nice to have:

  • Relevant Professional Certifications: - Certified Information Systems Auditor (CISA) - Certified in Risk and Information Systems Control (CRISC) - Certified Compliance & Ethics Professional (CCEP) - Certified Internal Auditor (CIA) - Certified Information Privacy Professional (CIPP) - Artificial Intelligence Governance Professional (AIGP) – IAPP - Other recognized certifications in risk management, compliance, privacy, or audit
  • Master’s degree in Business, Law, Risk Management, Public Policy, or a related field
  • Experience working with international regulatory bodies or in a global business environment, especially in technology, social media, or digital platforms
  • Familiarity with risk management and compliance tools, data analytics, reporting systems, and AI governance frameworks
What we offer:
  • bonus
  • equity
  • benefits

Additional Information:

Job Posted:
January 23, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Program Manager, Integrity GRC

Incident Response, Program Manager

This role will be responsible for execution and program management of Incident R...
Location
Location
United States , Menlo Park
Salary
Salary:
100000.00 - 143000.00 USD / Year
meta.com Logo
Meta
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 3+ years of experience in program management, consulting, business operations, technical program management, incident management, risk management, compliance management, or other GRC operational discipline
  • 2+ years of experience leading large, technical, cross-functional projects and/or programs
  • 2+ years of direct experience working in corporate privacy incident response or security/privacy compliance functions (e.g., GDPR, CCPA, SOC2)
  • 2+ years work experience collaborating directly with technology product management and engineering teams
  • Set priorities, multi-task and work with autonomy in a rapidly changing workplace environment
  • Bachelor’s degree in related field or equivalent experience
Job Responsibility
Job Responsibility
  • Plan and drive cross-functional incident management projects involving Legal, Policy, Communications, Product, and Engineering teams for complex risk incidents across all risk pillars (e.g. privacy, security, integrity, and AI)
  • Implement and execute ongoing management of compliance operations for incident management across privacy and other risk pillars. Ensure processes and controls meet regulatory obligations and internal standards
  • Build and maintain relationships with stakeholders across Legal, Product, and Engineering to drive alignment and prioritization of incident management and compliance activities for assigned cases
  • Translate technical and compliance details into clear, actionable communications for wide-ranging audiences from executives to engineers. Deliver concise updates and recommendations on incident status, compliance posture, and impact to stakeholders and Risk Organization leadership
  • Perform retrospectives to understand the root cause of incidents and support feedback loops to reduce future incidents and improve incident management processes
  • Advise on industry standards related to incident response and risk oversight practices
  • Identify, champion, and implement process improvements to increase the efficiency and effectiveness of incident management and compliance operations
  • Project manage and prioritize work based on urgency and complexity while building operational cadences across technical and operational teams to coordinate work
What we offer
What we offer
  • bonus
  • equity
  • benefits
  • Fulltime
Read More
Arrow Right

Incident Response, Program Manager

This role will be responsible for execution and program management of Incident R...
Location
Location
United States , Menlo Park
Salary
Salary:
122000.00 - 180000.00 USD / Year
meta.com Logo
Meta
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5+ years of experience in program management, consulting, business operations, technical program management, incident management, risk management, compliance management, or other GRC operational discipline
  • 3+ years of experience leading large, technical, cross-functional projects and/or programs
  • 3+ years of direct experience working in corporate privacy incident response or security/privacy compliance functions (e.g., GDPR, CCPA, SOC2)
  • 1+ years work experience collaborating directly with technology product management and engineering teams
  • Set priorities, multi-task and work with autonomy in a rapidly changing workplace environment
  • Bachelor’s degree or higher
Job Responsibility
Job Responsibility
  • Plan and drive cross-functional incident management projects involving Legal, Policy, Communications, Product, and Engineering teams for complex risk incidents across all risk pillars (e.g. privacy, security, integrity, and AI)
  • Implement and execute ongoing management of compliance operations for incident management across privacy and other risk pillars. Ensure processes and controls meet regulatory obligations and internal standards
  • Build and maintain relationships with stakeholders across Legal, Product, and Engineering to drive alignment and prioritization of incident management and compliance activities for assigned cases
  • Translate technical and compliance details into clear, actionable communications for wide-ranging audiences from executives to engineers. Deliver concise updates and recommendations on incident status, compliance posture, and impact to stakeholders and Risk Organization leadership
  • Perform retrospectives to understand the root cause of incidents and support feedback loops to reduce future incidents and improve incident management processes
  • Advise on industry standards related to incident response and risk oversight practices
  • Identify, champion, and implement process improvements to increase the efficiency and effectiveness of incident management and compliance operations
  • Project manage and prioritize work based on urgency and complexity while building operational cadences across technical and operational teams to coordinate work
What we offer
What we offer
  • bonus
  • equity
  • benefits
  • Fulltime
Read More
Arrow Right

Digital Resilience and IT Risk Manager

Our COO Functional Risk Management team embedded in the Digital Resilience Area ...
Location
Location
Spain , Barcelona
Salary
Salary:
Not provided
https://www.allianz.com Logo
Allianz
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Experience in using GRC tools and reporting tools (e.g., PowerBI)
  • A solid track record of achievement and continues development (can be any academic, professional, and/or sport)
  • Strong understanding of risk management frameworks and methodologies
  • Data-driven mindset with experience in data analysis and interpretation
  • excellent analytical and problem-solving skills
  • An organized and methodological approach with strong interpersonal skills
  • Possess a strong sense of curiosity and the ability to think creatively and innovatively
  • 4+ years of experience in Operational, IT, or Information Security (IS) Risk Management, Management Consulting, IT Governance, or a related field
  • Bachelor’s degree or higher in Information Technology, Engineering, Economics, Risk Management, Business Administration, or any related field
Job Responsibility
Job Responsibility
  • Support, coordinate and oversee information Risk Management Lifecycle activities performed by the 1st LoD
  • Actively contributes to identifying improvements and assist in adapting the Risk Management frameworks to address our rapidly evolving risk landscape
  • Coordinate thorough risk assessments to identify, evaluate and mitigate information risks across the organization
  • Ensure adherence to relevant regulatory requirements and internal policies related to information risk management as well as preparing detailed reports and presentations on risk findings, trends and recommendations for senior management and stakeholders
  • Utilize data analytics to support risk assessments, decision-making processes and to drive insights that enhance risk management strategies
  • Work closely with various business units, IT, IS, Risk and compliance teams to ensure alignment and integration of risk management practices
  • Utilize new technologies and feature within our organizational setup to enhance, scale, and optimize existing risk management processes
  • Develop and deliver training programs to enhance awareness and understanding of information risk management across the organization
  • Foster a risk-driven culture and advocate for the benefits of risk management whilst engaging with leadership and functional leads to ensure alignment and support
What we offer
What we offer
  • We offer a hybrid work model which recognizes the value of striking a balance between in-person collaboration and remote working incl. up to 25 days per year working from abroad
  • We believe in rewarding performance and our compensation and benefits package includes a company bonus scheme, pension, employee shares program and multiple employee discounts (details vary by location)
  • From career development and digital learning programs to international career mobility, we offer lifelong learning for our employees worldwide and an environment where innovation, delivery and empowerment are fostered
  • Flexible working, health and wellbeing offers (including healthcare and parental leave benefits) support to balance family and career and help our people return from career breaks with experience that nothing else can teach
  • Fulltime
Read More
Arrow Right

GRC Specialist

This Contract to permanent position is essential for managing customer-facing tr...
Location
Location
United States , Lincolnshire
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Minimum of 5 years of experience in governance, regulatory compliance, or risk management roles
  • Hands-on experience managing SOC 2 compliance programs, including readiness assessments and audits
  • Strong knowledge of U.S. education regulatory requirements, including FERPA and state-level student data privacy laws
  • Proven track record in compliance due diligence and integration activities for mergers and acquisitions
  • Demonstrated project management experience with successful delivery of multiple projects
  • Familiarity with compliance monitoring tools and platforms
  • Excellent analytical and problem-solving skills to interpret regulatory language into actionable processes
Job Responsibility
Job Responsibility
  • Oversee the management and execution of customer-facing trust and compliance programs
  • Ensure compliance with U.S. K-12 education regulatory requirements, including laws related to student data privacy
  • Lead and manage SOC 2 compliance programs, including control implementation and audit processes
  • Conduct due diligence and integration activities for mergers and acquisitions to mitigate compliance risks
  • Translate complex regulatory requirements into actionable business processes and controls
  • Identify and assess risks related to data privacy and governance within the education sector
  • Collaborate with stakeholders across various levels to maintain compliance standards and address regulatory concerns
  • Monitor compliance using appropriate platforms and tools, ensuring continuous adherence to frameworks
  • Develop and implement strategies for readiness assessments and security audits
  • Provide expertise in frameworks such as ISO 27001 and other relevant certifications
What we offer
What we offer
  • Medical, vision, dental, and life and disability insurance
  • 401(k) plan
  • Free online training
  • Fulltime
Read More
Arrow Right

Director, Security GRC Program Lead

Meta is seeking a highly skilled Security GRC Program Manager to join our Risk O...
Location
Location
United States , Bellevue
Salary
Salary:
227000.00 - 287000.00 USD / Year
meta.com Logo
Meta
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Significant experience as a leader and contributor in security risk management and compliance, including providing second-line oversight
  • Strong track record of operating effectively and influencing outcomes with Engineering, Product, GRC, and Legal partners
  • Extensive experience with Governance, Risk, and Compliance (GRC) and Legal functions
  • Deep expertise in security, with the ability to holistically understand relevant issues, partners, and products, and go deep on technical details
  • Proven ability to identify critical issues, balance competing priorities, translate technical and regulatory concepts for diverse audiences, and personally drive initiatives to completion
  • In-depth knowledge of complex global regulatory requirements (e.g., GDPR, SEC, PCI-DSS, NYDFS)
  • Demonstrated ability to build strong formal and informal networks with key influencers and decision makers inside and outside the company
  • Experience working in integrated privacy-security environments or familiarity with unified GRC frameworks across multiple risk domains
Job Responsibility
Job Responsibility
  • Lead and deliver on deeply complex, high-impact projects that shape Meta's risk profile and business trajectory
  • Proactively identify long-term, critical, and ambiguous problems, setting a clear vision and strategy for risk management in alignment with company goals
  • Partner with Central Security teams to analyze, streamline, and consolidate issues and risks from all sources (1LoD, 2LoD, 3LoD, external) into a clear, prioritized list for first-line-of-defense consumption and actioning
  • Integrate security risk management with Meta's Security Prioritization Framework (SPF) and contribute to capability maturity assessments to drive risk-based prioritization across the organization
  • Define and maintain clear interfaces and points of contact with the Security organization and other key partners, ensuring efficient governance and communication
  • Prepare regular updates and compliance documents to ensure Meta meets board and regulatory obligations, adapting processes and strategies to evolving regulatory and business environments
  • Drive cross-org execution, collaborating with Risk, Security, Legal, Product, and Engineering functions to deliver results and maximize impact
  • Champion organizational efforts to build and sustain diversity, culture, recruitment, onboarding, mentoring, and development programs, serving as a role model and mentor for others
  • Integrate learnings and best practices from/to sister 2LoD organizations (e.g., Integrity GRC, Privacy GRC), and partner with Product & Engineering teams on necessary second-line-of-defense tooling within the unified GRC framework
What we offer
What we offer
  • bonus
  • equity
  • benefits
Read More
Arrow Right

Lead Security GRC Program Manager

At Bumble, we’re building secure, AI-driven systems that empower connection and ...
Location
Location
United States , Austin
Salary
Salary:
145000.00 - 180000.00 USD / Year
bumble.com Logo
Bumble Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6+ years of experience in Security GRC, audit, or compliance within a cloud-native or technology-driven environment
  • Proven ownership of PCI, SOX, ITGC, and GDPR compliance programs — from planning through audit closure
  • Demonstrated success driving measurable improvements in audit efficiency, control maturity, or automation adoption
  • Strong working knowledge of cloud architectures, including hands-on experience operating in GCP environments
  • Experience with AWS is a plus
  • Strong grasp of common ITGC control areas, including access management, change management, and incident response
  • Experience integrating GRC tools with engineering systems (e.g., CI/CD pipelines, Jira, Slack, or identity platforms like Okta)
  • Ability to design or refine control automation workflows and collaborate with engineers on technical control implementation
  • Practical understanding of data flow mapping and system-of-record validation to support GDPR evidence and privacy controls
  • Track record of leading multi-stakeholder audits (Finance, Legal, Engineering, Privacy) and aligning diverse teams on deadlines and deliverables
Job Responsibility
Job Responsibility
  • Own Bumble’s Core Compliance Programs: Lead end-to-end management of PCI, SOX, ITGC, and GDPR frameworks — from annual audit planning through evidence collection, remediation, and executive reporting
  • Drive Audit Efficiency & Automation: Partner with Security Engineering, Finance IT, and Product teams to automate evidence workflows, control attestations, and testing pipelines via tools such as Drata, Vanta, or ServiceNow GRC
  • Lead SOX & ITGC Program Delivery: Co-own SOX ITGC compliance with Finance IT, directly manage external audit partners, and maintain strong control hygiene across identity, change management, and infrastructure layers
  • Oversee PCI Compliance Operations: Maintain Bumble’s PCI program scope, manage annual assessments, and coordinate with payments and infrastructure teams to ensure ongoing adherence and minimal audit fatigue
  • Steward GDPR Alignment: Partner with Legal, Privacy, and Data Engineering to operationalize GDPR requirements, ensuring data protection principles and privacy-by-design controls are consistently validated
  • Report Risk & Remediation Metrics: Build dashboards and KPI reports that provide visibility into audit readiness, control performance, and remediation progress for executive stakeholders
What we offer
What we offer
  • Maven Fertility: $10,000 lifetime benefit opportunity for reproductive journey support
  • Family & compassionate paid leave
  • 26 weeks parental leave for primary caregiver
  • 26 weeks paid leave for secondary caregiver after 1 year of employment
  • Unlimited paid time off
  • Company-wide week off
  • Focus Fridays
  • Fulltime
Read More
Arrow Right

Product & Technical Go-To-Market Readiness Manager

The Product & Technical GTM Readiness Manager ensures all GTM teams can confiden...
Location
Location
Australia , Sydney; Melbourne; Hobart; Brisbane
Salary
Salary:
Not provided
https://www.upguard.com Logo
UpGuard
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 8+ years of progressive experience in Product or Technical Sales Enablement, Sales Engineering (SE), Technical Customer Success, or Product Marketing (PMM)
  • Deep exposure to Cybersecurity, GRC, Risk & Compliance, or DevOps environments
  • Proven track record working within a multi-product B2B SaaS organization, understanding the nuances of platform-based selling
  • Exceptional ability to distill complex technical concepts (architectures, integrations, workflows) into clear, structured, and sales-ready content
  • Strong presentation skills with the confidence to deliver training to both technical (SE/DevOps) and non-technical (Sales/CS) audiences
Job Responsibility
Job Responsibility
  • Curriculum Design: Build foundational and advanced product training for the full GTM team (AEs, SDRs, SEs, AMs, and CSMs), translating complex technical concepts (data flows, scoring logic, DORA compliance) into accessible, sales-ready narratives
  • Competency Frameworks: Define role-based product competency frameworks and oversee certification paths to ensure technical fluency across all regions and segments
  • Platform Storytelling: Own the technical 'UpGuard Platform' narrative, training teams on interoperability, cross-product workflows, and platform architecture to differentiate our market position
  • Demo Strategy: Own the demo structure across the unified platform
  • partner with SE leadership to maintain accuracy, depth, and effectiveness
  • POC Framework: Build a standard POC framework (success criteria, validation steps, best practices) and train reps on running efficient, high-quality technical evaluations
  • Skill Certification: Build and administer consistent certification programs for Demos and POCs to ensure AEs and SEs can deliver compelling, value-aligned technical presentations
  • Product Launches: Own the GTM readiness strategy for all product releases
  • partner with PMM (messaging) and Product (roadmap) to ensure consistent delivery of value propositions to the field
  • Launch Training: Execute role-based launch training and create internal readiness materials (walkthroughs, FAQs, demo updates) to drive immediate adoption of new features
What we offer
What we offer
  • Monthly Lifestyle subsidy: Use this for financial, physical, and mental well-being
  • WFH set-up allowance: To ensure you have the right environment to work in, we will help you get set up within your first 3 months at UpGuard
  • $1500 USD annual Learning & Development allowance: To support your career development, all team members will be able to expense development opportunities against this allowance
  • Annual leave: 6 weeks PTO plus two additional UpGuardian leave days to give you time to recharge your batteries
  • 18 weeks paid Parental Leave: Irrespective of parenting role
  • Personal Leave Allowance: This includes sick & carer’s leave
  • Fully remote working environment: While we have physical offices in Sydney & Hobart, we do not mandate compulsory attendance
  • Top-spec hardware: All team members will be provided with top-spec laptops for their role
  • Generative AI subsidy: UpGuard provides paid subscriptions for all team members to access generative AI tools to support their work
  • Fulltime
Read More
Arrow Right

Cybersecurity Governance, Risk, Compliance, Training & Resilience Manager

We are hiring a Manager to lead the day-to-day execution of cybersecurity Govern...
Location
Location
United States , Boston
Salary
Salary:
120000.00 - 180000.00 USD / Year
aptiv.com Logo
Aptiv plc
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 7–10+ years of cybersecurity risk, compliance, audit, or GRC program experience
  • Experience managing or contributing to ISO 27001, NIST 800-171, SOX, GDPR, or TISAX efforts
  • Proficiency with GRC platforms and internal controls execution
  • Strong writing and documentation skills
  • Must reside in Greater Boston area with ability to be present on site at least 3 days/weekly
  • United States Citizenship required
Job Responsibility
Job Responsibility
  • Lead execution of GRC programs across Aptiv and Wind River, including control maintenance, risk register updates, and audit readiness
  • Maintain documentation, controls, and audit-ready evidence for ISO 27001, NIST 800-171, TISAX, SOX, NIS2, CMMC and GDPR across both Aptiv and Wind River, incorporating new regulatory or customer requirements as they arise
  • Administer GRC tooling (ZenGRC, AuditBoard, ServiceNow), ensuring accuracy, auditability, and workflow continuity
  • Manage internal risk exceptions, maturity roadmaps, and control owners’ engagement
  • Provide daily operational support to maintain compliance posture and support regulatory assessments
  • Own documentation and execution for business impact assessments (BIAs), continuity planning, and tabletop exercises
  • Coordinate resilience planning with cross-functional partners including IT, Facilities, Cyber Defense, and Legal
  • Maintain continuity playbooks, incident response records, and recovery planning materials
  • Provide execution support for Wind River’s third-party risk assessments, evidence collection, and remediation tracking
  • Execute and drive enforcement of cybersecurity right-to-audit clauses with vendors and partners
What we offer
What we offer
  • Hybrid work model for workplace flexibility
  • Comprehensive health, dental, and life insurance
  • Short and long-term disability coverage
  • RRSP matching for financial security
  • Flexible time-off policies for work-life balance
  • Employee assistance program for mental well-being
  • Learning benefits, including a LinkedIn Learning subscription and seminars
  • Fulltime
Read More
Arrow Right