Senior Manager, Security Governance & Compliance
Diligent CorporationAbout the role
About Us
Diligent is the AI leader in governance, risk and compliance (GRC) SaaS solutions, helping more than 1 million users and 700,000 board members to clarify risk and elevate governance. The Diligent One Platform gives practitioners, the C-Suite and the board a consolidated view of their entire GRC practice so they can more effectively manage risk, build greater resilience and make better decisions, faster.
At Diligent, we're building the future with people who think boldly and move fast. Whether you're designing systems that leverage large language models or part of a team reimaging workflows with AI, you'll help us unlock entirely new ways of working and thinking. Curiosity is in our DNA, we look for individuals willing to ask the big questions and experiment fearlessly - those who embrace change not as a challenge, but as an opportunity. The future belongs to those who keep learning, and we are building it together. At Diligent, you’re not just building the future - you’re an agent of positive change, joining a global community on a mission to make an impact.Learn more at diligent.com or follow us on LinkedIn and Facebook
Position Overview:
The Senior Manager, Security Governance & Compliance defines and leads operational execution of audit and compliance strategy across multiple products and services. This person understands compliance challenges related to software and AWS cloud architecture and can ensure ongoing and efficient compliance. Reporting to the Senior Director, GRC, this person will also mentor and lead analysts in the GRC group. The role’s primary objective is to clearly communicate compliance requirements to engineers, product managers, and corporate stakeholders, and to ensure that Diligent products maintain a compliance status that earns customer trust and reflects the organization’s commitment to security.
Key Responsibilities
- Manage a team of analysts responsible for executing external audits and maintaining compliance monitoring tasks for the organization with a focus primarily on SOC 2 and BSI C5.
- Monitor and interpret changes in relevant laws, regulations, and industry standards (e.g., GDPR, HIPAA, SOC 2, PCI DSS). They ensure internal controls are implemented, tested, and maintained to meet these requirements.
- Create or revise security and compliance-related policies and control sets (e.g., Access Control, Data Privacy, Incident Response).
- Translate abstract regulations into actionable controls for technical and business teams.
- Promote a security culture through awareness and GRC training programs, ensuring all employees understand their roles in risk management and policy adherence.
- Own people management responsibilities, including goal setting, feedback, performance management, and career development.
Required Experience/Skills
- Post-secondary degree in a relevant field.
- 7-10 years of experience in information technology, or an equivalent combination of education, technical training, with proven people management experience.
- Proven track record in developing and implementing governance frameworks and compliance programs.
- Experience with compliance audits, assessments, and Privacy Impact Assessments
- Working experience with audits in AWS
- Expertise in SOC 2, BSI C5 and strong knowledge of ISO 27000 series requirements.
- Excellent communication skills and ability to engage with stakeholders at all levels.
Preferred Experience/Skills
- Security certifications e.g. Security+, SSCP, CISSP
What Diligent Offers You
- Creativity is ingrained in our culture. We are innovative collaborators by nature. We thrive in exploring how things can be differently both in our internal processes and to help our clients
- We care about our people. Diligent offers a flexible work environment, global days of service, comprehensive health benefits, meeting free days, generous time off policy and wellness programs to name a few
- We have teams all over the world. We may be headquartered in New York City, but we have office hubs in Washington D.C., Vancouver, London, Galway, Budapest, Munich, Bengaluru, Singapore, and Sydney.
- Diversity is important to us. Growing, maintaining and promoting a diverse team is a top priority for us. We foster and encourage diversity through our Employee Resource
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s