Senior Manager, GRC Engineering (Special Programs)

Workstreet

Full Time8+ yearsPosted about 7 hours ago

Let the right jobs find you

Get personalised suggestions from verified company career pages, matched to your role, location, level, and skills.

Overview

Position Type

Full Time

Experience

8+ years

Job Description

The Opportunity

Workstreet is seeking a Senior Manager, GRC Engineering (Special Programs) to serve as the operational owner of a high-visibility, customer-facing delivery organization. Reporting directly to the Director of Special Programs, you will drive the day-to-day success of the program while guiding a team of 30 to 40 consultants managed through 4 to 5 direct-report managers. In this strategic capacity, you will ensure delivery remains on schedule, enforce rigorous quality standards across the management layer, and address operational risks before they affect client outcomes.

The ideal candidate brings 8+ years of cybersecurity compliance experience across frameworks such as SOC 2, ISO 27001, and NIST CSF, paired with a proven history of leading management teams and driving operational results. Operating with a client-first philosophy, you will manage high-stakes client relationships with professionalism and step in decisively to resolve complex escalations with composure while keeping teams aligned and accountable during U.S. Eastern Time business hours.

What You'll Do

  • Assume end-to-end program ownership - take total accountability for Special Programs delivery health, client satisfaction metrics, and cross-functional team execution.
  • Lead executive-level escalation resolution - serve as the primary escalation authority for high-risk engagements, partnering with managers to resolve complex issues and restore client trust.
  • Maintain delivery and timeline tracking - monitor portfolio-wide engagement milestones, identify slipping schedules early, and proactively unblock teams to protect project deadlines.
  • Enforce operational delivery standards - uphold established quality benchmarks and engagement playbooks across all teams, holding managers accountable to consistent execution.
  • Manage capacity and resource allocation - track workload distribution across direct reports, flag bandwidth risks to executive leadership early, and ensure optimal staffing across engagements.
  • Direct and develop first-line managers - coach and mentor 4 to 5 direct-report managers to foster a culture of strict accountability, ownership, and operational consistency.
  • Drive team performance management - establish clear delivery expectations, conduct performance evaluations, recognize high performers, and address execution gaps directly.
  • Oversee quality assurance and risk mitigation - review client deliverables and communications across key accounts to guarantee accuracy, technical rigor, and alignment with client business objectives.

Who You Are

  • Senior client relationship leader - bring extensive experience managing executive client relationships, navigating complex accounts, and handling high-stakes escalations with composure.
  • Experienced manager of managers - possess 5+ years of experience leading mid-sized teams, including direct experience developing, managing, and holding first-line managers accountable.
  • Deep compliance domain authority - hold 8+ years of cybersecurity compliance expertise across SOC 2, ISO 27001, GDPR, HIPAA, PCI DSS, HITRUST, and NIST 800-171 or CMMC frameworks.
  • Policy framework architect - demonstrate 8+ years of hands-on experience authoring, implementing, and enforcing enterprise cybersecurity policies.
  • Disciplined operational operator - prove sound judgment under pressure with a bias toward taking immediate ownership and solving issues independently rather than escalating upward.
  • High-velocity startup performer - thrive in fast-paced cybersecurity environments, possessing the organizational discipline to manage multiple concurrent compliance programs seamlessly.

What will help you succeed

  • Big 4 advisory tenure - background in management consulting, assurance, or advisory practice within Big 4 or top-tier consulting firms.
  • MSSP or GRC leadership experience - proven track record managing GRC delivery functions within a managed security service provider or specialized consulting organization.
  • Advanced security certifications - active professional certifications such as CISA, CISSP, CISM, ISO 27001 Lead Implementer, or CRISC.
  • GRC automation platform mastery - practical exposure to configuring and managing automated compliance platforms such as Vanta, Drata, or Secureframe.
  • Multi-framework audit expertise - deep familiarity with risk management frameworks and complex audit methodologies across diverse regulatory standards.

What We Offer

  • Career Development: Clear growth path with mentorship and training opportunities.
  • Technical Training: Comprehensive onboarding on security and compliance frameworks.
  • Competitive Compensation: Competitive base salary with regular performance reviews, merit-based appraisals, and bonus opportunities.
  • Growth Opportunity: Early-stage company with significant room for career advancement.
  • Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.

Required Skills

Soc2Iso 27001GdprCmmcNist 800 171Nist Sp 800 53Fed RampBig 4 Advisory TenureMssp Or Grc Leadership ExperienceSecurity CertificationsGrc Automation Platform MasteryMulti Framework Audit Expertise

About the Company

Workstreet

United States

Share This Job