Manager, GRC Engineering (Special Programs)
Workstreet
Let the right jobs find you
Get personalised suggestions from verified company career pages, matched to your role, location, level, and skills.
Overview
Position Type
Full Time
Experience
5+ years
Job Description
The Opportunity
Workstreet is seeking a Manager for the Special Programs team who leads with a client-first mindset and brings exceptional relationship management skills to every engagement. The ideal candidate is an experienced client manager who knows how to build trust, navigate complex accounts, and deliver an outstanding client experience while bringing deep expertise in cybersecurity compliance frameworks such as SOC 2, ISO 27001, and NIST CSF.
The successful candidate will come up to speed quickly, integrate into the organization, and take on active clients within their first 15 days. You will serve as the primary point of contact for a portfolio of clients, leading engagements end-to-end, managing escalations with composure and urgency, and ensuring every interaction reflects the highest standard of service during U.S. Pacific Time business hours.
What You’ll Do
- Own executive client account management - act as the first point of contact across new client portfolios, cultivating trusted executive relationships and ensuring implementation alignment to drive net new business.
- Lead client kickoffs - solve specific customer challenges, from establishing a compliance foundation in 30 days to migrating organizations onto new GRC platforms, supporting audits, and delivering other specialized compliance services.
- Manage complex account escalations - resolve high-stakes client issues with urgency and composure, applying structured solutions that safeguard retention and confidence.
- Deliver strategic compliance guidance - act as a trusted advisor, interpreting complex regulatory criteria into actionable, business-aligned technical controls.
- Direct and develop engineering pods - manage, mentor, and coach a dedicated pod of 3 to 5 analysts to enforce accountability and maintain strict delivery standards.
- Architect technical GRC frameworks - author and align corporate security policies, procedures, and technical controls across SOC 2, ISO 27001, HIPAA, and PCI DSS.
- Execute multi-cloud certification projects - lead complex SOC 2 and ISO 27001 implementation motions across enterprise AWS, GCP, and Azure environments.
- Leverage modern compliance automation - utilize enterprise automation platforms such as Drata, Vanta, and Secureframe to track readiness metrics and maintain continuous audit posture.
Who You Are
- Proven client relationship manager - background in direct account ownership, adept at facilitating high-stakes client meetings and navigating challenging conversations with poise.
- Experienced GRC engineering leader - bring 5+ years of direct experience leading technical teams, managing pod throughput, and coaching individual performers.
- Technical compliance expert - hands-on execution history building and managing enterprise compliance programs aligned with SOC 2 and ISO 27001 frameworks.
- Compliance Automation - Hands on experience with modern automation platforms such as Drata, Vanta, and Secureframe.
- Cloud control architect - strong practical knowledge implementing technical security controls within AWS, GCP, or Azure environments.
- Multi-project delivery operator - proven track record of managing multiple concurrent technical compliance engagements without sacrificing execution quality or client satisfaction.
- Autonomous technical operator - self-directed practitioner holding a Bachelor's degree in IT, Cybersecurity, or a related technical discipline, operating with exceptional initiative.
What will help you succeed
- Big 4 consulting tenure - background in risk advisory, technical assurance, or security consulting at a Big 4 or elite professional services firm.
- Active industry certifications - credentialed professional holding active CISA, CISSP, CISM, or equivalent security designations.
- Specialized GRC advisory history - documented success managing external technical clients within specialized cybersecurity consulting environments.
- Expanded framework mastery - deep operational familiarity with additional regulatory and security standards including HITRUST, PCI DSS, NIST, GDPR, and HIPAA.
What We Offer
- Career Development: Clear path with mentorship and training opportunities.
- Role-Related Training: Reimbursement for the successful completion of approved training and certification courses relevant to your current role.
- Competitive Compensation: A competitive base salary with regular performance reviews linked to merit-based appraisals and bonus opportunities.
- Growth Opportunity: Early-stage company with significant room for career advancement.
- Remote-First Culture: Flexibility to work from anywhere while collaborating with a global team.