Jobs and Careers
QU

Senior Manager, Governance, Risk and Compliance (GRC) - Provo and Reston

Qualtrics
United Statesfull_timeVerifiedPosted 16 Jun 2025

About the role

At Qualtrics, we create software the world’s best brands use to deliver exceptional frontline experiences, build high-performing teams, and design products people love. But we are more than a platform—we are the creators and stewards of the Experience Management category serving over 18K clients globally. Building a category takes grit, determination, and a disdain for convention—but most of all it requires close-knit, high-functioning teams with an unwavering dedication to serving our customers.

When you join one of our teams, you’ll be part of a nimble group that’s empowered to set aggressive goals and move fast to achieve them. Strategic risks are encouraged and complex problems are solved together, by passing the mic and iterating until the best solution comes to light. You won’t have to look to find growth opportunities—ready or not, they’ll find you. From retail to government to healthcare, we’re on a mission to bring humanity, connection, and empathy back to business. Join over 5,000 people across the globe who think that’s work worth doing.
  Senior Manager, Governance, Risk and Compliance (GRC) - Provo, UT and Reston, VA

Why We Have This Role

Robust governance, risk management, and compliance (GRC) are crucial in today's complex regulatory landscape. The Sr. Manager of GRC is a key leader responsible for driving and managing our security compliance programs, ensuring our organization meets and exceeds stringent standards like FedRAMP and PCI. This role is essential for executing critical compliance activities, managing risk, and promoting a culture of security across the organization. By managing our GRC programs, you will directly contribute to our operational excellence, foster customer trust, and strengthen our market position.

How You’ll Find Success

  • Program Management: Manage and execute our GRC programs. You will drive initiatives to streamline processes related to audits, third-party risk management, and security certifications such as FedRAMP High, PCI, and DoD IL4.
  • Strategic Execution: Contribute to the overall GRC strategy and lead the implementation of its roadmap. You will ensure the GRC framework is effectively integrated into our product development lifecycle and corporate operations.
  • Cross-Functional Collaboration: Work closely with Engineering, Legal, Product, and other internal teams to translate GRC requirements into actionable plans. You will foster a collaborative environment to ensure compliance is understood, met, and sustained.
  • Process Improvement and Innovation: Identify and implement continuous improvements for GRC processes. You will find opportunities for automation and apply industry best practices to enhance the efficiency and effectiveness of our compliance activities.

How You’ll Grow

  • Influence industry standards by representing the company in key security and compliance working groups and forums.
  • Refine your strategic communication skills through regular interaction with senior leadership, auditors, and key internal stakeholders.
  • Develop your leadership skills by managing and mentoring GRC professionals, guiding their projects and supporting their professional growth.

Things You’ll Do

  • Drive our public sector and enterprise readiness by leading the charge on achieving and maintaining critical certifications like FedRAMP High, DoD IL4, and PCI. You will own the end-to-end process, from managing audits to implementing and maturing our continuous monitoring programs.
  • Build and lead the GRC team with an engineering-first philosophy, hiring and mentoring technical-minded professionals who can automate compliance controls and partner directly with developers to solve problems.
  • Embed security and compliance into our DNA. You will act as a key evangelist and partner to Engineering and Product teams, translating complex GRC requirements into actionable plans and fostering a culture where compliance is a natural part of the development lifecycle.
  • Build a scalable, modern GRC function. You will find and remove bottlenecks in our compliance processes, leveraging automation and innovative tools to increase efficiency and provide clear, data-driven insights to leadership through dashboards and reporting.
  • Strengthen our security posture by maturing our third-party risk program. You will evolve how we assess vendor risk, implementing streamlined processes that protect our organization and customers without slowing the business down.
  • Directly enable business growth and build customer trust. You will partner with Sales, Legal, and Pro

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Qualtrics

View company profile →