2 open positions available
Lead security governance program, oversee risk management, policy lifecycle, audit readiness, control validation, executive reporting, and cross-functional collaboration. | At least seven years in GRC, IT audit, or security program management with a bachelor's degree and strong multi-framework compliance and executive communication skills. | Position Title: Senior GRC Manager Position Location: Remote in the United States Job Summary: The Senior Governance, Risk, and Compliance (GRC) Lead is responsible for leading the organization's security governance program and operational cadence. Reporting to the Director of Information Security, this role oversees risk management, policy lifecycle management, control validation, audit readiness, evidence quality, and executive reporting across multiple compliance frameworks, including SOC 2, PCI, ISO, and CMMC-aligned environments. The ideal candidate combines strong governance expertise, audit readiness experience, and stakeholder leadership capabilities to drive risk-informed decision-making, maintain compliance objectives, and promote a culture of accountability, evidence quality, and continuous improvement. Essential Functions: Lead and manage the governance calendar and recurring GRC operating cadence, including risk committee activities, policy publication schedules, audit milestones, and control validation programs. Oversee audit readiness and evidence management activities across applicable compliance frameworks, ensuring evidence is complete, timely, and reusable when appropriate. Administer and continuously improve the enterprise risk management program, including risk identification, risk register maintenance, ownership tracking, risk reviews, and executive reporting. Manage the full policy lifecycle, including drafting coordination, review processes, publication, communication, and exception management alignment. Lead control effectiveness validation efforts, including control design reviews, operational effectiveness testing, evidence standards development, sampling methodologies, and remediation follow-up activities. Oversee access governance programs from a compliance and risk perspective, ensuring reviews are completed, documented, and aligned with exception management processes. Support governance initiatives related to AI governance, customer assurance activities, architecture reviews, and security review processes. Track and manage audit findings, risk remediation efforts, customer diligence requests, and program assessment results, escalating significant risks and obstacles as appropriate. Maintain customer-facing security assurance materials, evidence packages, and trust documentation supporting customer and sales engagements. Prepare leadership-level reporting on governance decisions, risk posture, compliance status, and remediation progress. Collaborate with Security, Internal IT, Legal, Privacy, Compliance, and business stakeholders to support evidence collection, testing, remediation planning, and validation activities. Promote a culture of evidence quality, repeatable governance processes, accountability, and continuous improvement across the organization. Required Skills/Abilities/Competencies: Strong knowledge of governance, risk management, compliance programs, policy management, and control validation methodologies. Extensive understanding of multi-framework compliance environments, including SOC 2, PCI, ISO 27001, CMMC, and NIST-aligned standards. Expertise in risk management practices, including risk identification, risk register administration, ownership tracking, risk assessments, and executive reporting. Strong policy development, procedure documentation, and executive-level writing skills with the ability to translate control requirements into scalable operational processes. Experience conducting control effectiveness reviews, operating effectiveness testing, evidence validation, remediation oversight, and audit support activities. Knowledge of governance operating models, committee facilitation, calendar management, and follow-through on governance decisions and remediation actions. Strong executive communication, presentation, and reporting skills that translate technical and compliance activities into actionable business insights. Familiarity with access governance oversight, exception management, customer assurance programs, and cross-framework control mapping. Knowledge of emerging governance disciplines, including AI governance, third-party risk management, and privacy governance. Strong stakeholder management, relationship-building, accountability, and issue escalation skills. Ability to establish priorities, manage multiple initiatives simultaneously, and meet deadlines in a fast-paced environment. Demonstrated competencies in Governance Program Management, Risk Management, Policy Lifecycle Management, Control Effectiveness Validation, Audit Readiness, Multi-Framework Compliance, Executive Reporting, Customer Assurance, and Stakeholder Management. Education and Experience: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, Business Administration, Risk Management, or a related field; or an equivalent combination of education and relevant professional experience. Minimum of seven (7) years of experience in Governance, Risk and Compliance (GRC), Security Compliance, IT Audit, Enterprise Risk Management, or Security Program Management. Experience managing audit readiness programs, evidence collection processes, control testing activities, and compliance initiatives across multiple security and regulatory frameworks. Experience maintaining governance, risk, and compliance technology platforms and supporting evidence-management workflows is preferred. Familiarity with customer-facing assurance programs, due diligence support, vendor security reviews, and security trust programs is preferred. Experience supporting risk committees, governance forums, executive reporting, and enterprise-wide policy management processes. Relevant certifications such as CISSP, CISA, CRISC, ISO Lead Auditor, ISO Lead Implementer, PCI QSA, or equivalent industry credentials are preferred. Experience working in highly regulated, client-assurance-focused, or defense-adjacent environments is preferred. Physical Requirements: Prolonged periods of sitting at a desk and working on a computer. Must be able to lift up to 15 pounds at times.
Lead pre-sales cybersecurity engagements and architect security solutions to drive sales growth. | 8+ years in cybersecurity architecture or advisory roles with strong communication and scoping skills. | Position Title: Senior Sales Specialist/Principal Architect/Field CISO - Cybersecurity Position Location: Remote in Seattle, WA, San Francisco Bay Area/Northern CA, or Los Angeles/Southern CA to cover the West Coast of the US Job Summary: The Cybersecurity Sr. Sales Specialist is a senior, field-facing cybersecurity leader responsible for driving OEM sales and services-led growth, accelerating deal velocity, and owning complex cybersecurity engagements across assigned enterprise accounts. This role partners closely with Account Executives to lead discovery, architect solutions, scope advisory and implementation services, and guide opportunities from first conversation through close and delivery alignment. This is not a post-sales delivery role and not a transactional overlay. It is a strategic, outcomes-driven position focused on turning customer security challenges into executable roadmaps, scoped services, and platform expansion while owning the Cybersecurity relationships in assigned accounts. Essential Functions: Lead pre-sales cybersecurity engagements across assigned enterprise accounts, aligning solutions to customer risk, business objectives, and security outcomes. Serve as a primary technical and advisory liaison for customers during the sales cycle, leading discovery, understanding requirements, and guiding solution strategy. Partner closely with Account Executives and the Practice to design, position, and propose cybersecurity solutions that drive services-led growth and platform expansion. Architect end-to-end cybersecurity solutions and author Statements of Work (advisory, assessment, and implementation) that clearly define scope, outcomes, and success criteria. Maintain momentum throughout the sales process by accelerating time from discovery to proposal and removing friction between sales, technical, and delivery teams. Participate in project kickoffs and remain engaged post-sale to ensure alignment between proposed solutions and delivery execution. Maintain a strong working knowledge of cybersecurity technologies, architecture, and industry trends, applying insights to customer use cases and recommendations. Support sales efforts through technical presentations, executive briefings, solution walkthroughs, and proof-of-concept engagements as required. Collaborate with internal engineering, delivery, and partner teams to ensure proposed solutions align with organizational capabilities and customer expectations. Build and maintain trusted relationships with customer stakeholders, including security and IT leadership, to support long-term account growth. Accurately track opportunities, pipeline influence, and activities within CRM systems and support forecasting and reporting requirements. Success Measures Influenced product and services revenue aligned to annual targets Consistent services attach and advisory engagement adoption Strong win rates on architected opportunities Timely progression from discovery to scoped solutions Positive feedback from Account Executives and customers Required Skills/Abilities/Competencies Deep technical expertise in cybersecurity solutions, architecture, and advisory-led engagements. Proven experience supporting pre-sales, consulting, or technical advisory roles within a VAR, SI, or services-focused organization. Strong ability to lead customer discovery and translate complex security requirements into clear, actionable solutions and scoped services. Excellent verbal and written communication skills, with the ability to present to both technical and executive audiences. Demonstrated ability to build trusted customer and seller relationships and operate effectively in a field-facing role. Strong analytical, problem-solving, and critical-thinking skills, with a focus on outcomes and execution. Experience developing proposals, technical documentation, solution designs, and Statements of Work. High level of organization, accountability, and attention to detail, with the ability to manage multiple opportunities concurrently. Ability to prioritize work effectively in a fast-paced, deadline-driven environment. Ethical judgment, professionalism, and sound decision-making in all customer and internal interactions. Education and Experience: 8+ years of experience in cybersecurity, security architecture, or technical advisory roles Experience supporting enterprise or commercial accounts in a pre-sales or consulting capacity Strong understanding of modern cybersecurity platforms and architectures Proven ability to scope services and communicate technical solutions to executive audiences Experience working within a VAR, SI, or consulting organization preferred Physical Requirements: Prolonged periods of sitting at a desk and working on a computer. Travel, as required to support customer and business needs. Field-based role supporting assigned accounts. Must be able to lift up to 15 pounds at times.
Create tailored applications specifically for Converge Technology Solutions with our AI-powered resume builder
Get Started for Free