Sr Manager, InfoSec Governance Risk and Compliance (GRC)
IvaluaAbout the role
<p><strong>Sr Manager, InfoSec Governance Risk and Compliance (GRC)</strong>(Pittsburgh, Pennsylvania, US)</p> <p><em>Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions.</em></p> <p><strong>COMPANY OVERVIEW</strong></p> <p>At Ivalua we are a global community of exceptional professionals, who believe that digital transformation revolutionizes supply chain sustainability and resiliency to unlock the power of supplier collaboration. </p> <p>We achieve this through our leading cloud-based spend management platform that empowers hundreds of the world's most admired brands to effectively manage all categories of spend and all suppliers to increase profitability, improve ESG (environmental, social, and corporate governance) performance, lower risk, and improve productivity. Driven by our passions and fueled by our shared ambitions, we empower and challenge each other to create meaningful experiences for our colleagues, customers, partners, and communities. </p> <p>Learn more at <a href="http://www.ivalua.com">www.ivalua.com</a>. Follow us on <a href="https://www.linkedin.com/company/ivalua">LinkedIn</a> and <a href="https://twitter.com/ivalua">Twitter</a>.</p> <p><strong>THE OPPORTUNITY</strong></p> <p><strong>CONTEXT:</strong></p> <p>Our InfoSec team is dedicated to building, maintaining, and continuously improving Ivalua’s Information Security program globally. We provide peace of mind and assurance of protection and safety to our customers. In this fast-growing environment, the GRC program is critical to ensuring compliance with industry standards and certifications, managing risks, and supporting business growth.</p> <p><strong>ROLE:</strong></p> <p>We are currently looking for an experienced InfoSec Governance Risk and Compliance (GRC) Sr Manager to lead a global team and own the GRC program worldwide. Reporting to the InfoSec leadership, you will manage and develop a high-performing team, drive compliance efforts, and serve as a subject matter expert on security frameworks and standards.</p> <p><strong>WHAT YOU WILL DO WITH US</strong></p> <ul> <li>Lead and own the Governance, Risk, and Compliance (GRC) program globally, managing and developing a high-performing team.</li> <li>Manage and drive compliance efforts and audits for certifications such as FedRAMP, IRAP, ISO 27001, HIPAA, SOC1/SOC2, PCI DSS, and others.</li> <li>Serve as the subject matter expert (SME) on security frameworks and standards including NIST SP 800-53 Rev 5, NIST 800-171, ITAR, FedRAMP, PCI DSS, SOC2, etc., providing guidance to internal stakeholders.</li> <li>Efficiently manage a
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s