MENU
  • Remote Jobs
  • Companies
  • Go Premium
  • Job Alerts
  • Post a Job
  • Log in
  • Sign up
Working Nomads logo Working Nomads
  • Remote Jobs
  • Companies
  • Post Jobs
  • Go Premium
  • Get Free Job Alerts
  • Log in

Director - GRC

Tines

Full-time
USA
$250k-$265k per year
director
program management
risk management
architecture
infosec
Apply for this position

*This is a remote position that must be based in the United States.

What You'll Be Doing

Strategic Leadership & Executive Engagement

  • Define and execute Tines' multi-year GRC strategy aligned with business objectives and market expansion goals

  • Own the compliance roadmap, prioritizing certifications and frameworks based on customer needs and revenue impact (FedRAMP, ISO 27001, SOC 2, GDPR, CCPA, etc.)

  • Serve as executive sponsor for all compliance programs, providing visibility and reporting to C-suite and Board of Directors

  • Build business cases for compliance investments, demonstrating ROI and competitive advantage

  • Monitor evolving compliance landscape, anticipating regulatory changes and translating requirements into actionable programs

Team Leadership & Organizational Development

  • Lead, mentor, and grow a team of GRC professionals, establishing career development paths and performance metrics

  • Scale the team strategically as Tines grows, hiring specialized roles as needed (GRC engineers, compliance analysts, etc.)

  • Foster cross-functional collaboration with Engineering, Product, Sales, Legal, IT, Security, and HR teams

  • Embed compliance champions across the organization and build a culture of excellence within the GRC function

FedRAMP & Federal Compliance Programs

  • Drive Tines' FedRAMP authorization to successful completion, overseeing gap remediation, documentation, and 3PAO engagement

  • Establish ongoing FedRAMP continuous monitoring and reauthorization processes

  • Build relationships with government stakeholders, agencies, and partners to support federal market expansion

  • Develop strategy for any future Federal requirements (DoD IL4/IL5, CMMC, StateRAMP) as business needs evolve

Compliance Program Management & Risk Governance

  • Maintain and optimize SOC 2 Type II compliance, ensuring efficient audit cycles and continuous control effectiveness

  • Lead ISO 27001 audits and other framework expansions

  • Establish and mature vendor risk management, third-party risk assessment, and supply chain security programs

  • Implement enterprise risk management processes, including risk registers, treatment plans, and executive risk reporting

  • Own the information security policy framework, ensuring alignment with regulatory requirements and business needs

  • Manage relationships with external auditors, 3PAOs, and assessors across all compliance programs

Customer Trust, Assurance & Market Positioning

  • Own the customer security assurance experience, including questionnaire responses, audit coordination, and Trust Center management

  • Partner with Sales and Customer Success to support enterprise deals requiring compliance evidence and security reviews

  • Build scalable processes to handle increasing volume of security assessments and due diligence requests

  • Represent Tines externally at customer meetings, industry events, and with auditors, positioning Tines as a compliance leader

Compliance Automation & Innovation

  • Champion the use of Tines' platform to automate compliance workflows, evidence collection, control testing, and reporting

  • Build a 'compliance-as-code' culture, treating compliance operations as a product with continuous improvement

  • Establish metrics and dashboards for real-time compliance posture visibility

  • Serve as an internal advocate and external case study for how automation transforms GRC

What You Bring With You

Required

  • 12+ years of progressive experience in GRC, information security, or risk management, with at least 5 years in a leadership role

  • Proven track record leading FedRAMP authorization efforts from planning through ATO (Authority to Operate)

  • Deep expertise in multiple compliance frameworks: SOC 2, ISO 27001, FedRAMP, NIST 800-53

  • Experience building and scaling GRC teams and programs in high-growth SaaS or technology companies

  • Strong executive presence with ability to influence C-suite and Board-level stakeholders

  • Demonstrated success managing complex, multi-workstream compliance programs with competing priorities

  • Exceptional communication skills with the ability to translate technical compliance requirements into business value for diverse audiences

  • Strategic mindset with hands-on execution capability; comfortable rolling up sleeves while setting long-term vision

  • Experience partnering with Sales, Engineering, Product, and Legal teams to operationalize compliance

Preferred

  • Industry certifications such as CISSP, CISA, CISM, or CRISC

  • Experience achieving FedRAMP authorization for a SaaS platform (bonus for Moderate or High impact levels)

  • Background in compliance automation, GRC tooling, or security orchestration

  • Experience with privacy regulations and programs (GDPR, CCPA, data governance)

  • Knowledge of cloud security architecture and controls (AWS, Azure, GCP)

  • Prior experience in a startup or hypergrowth environment (Series B-D stage)

  • Familiarity with DevSecOps, infrastructure-as-code, and modern engineering practices

  • Experience using or implementing workflow automation platforms

  • Active participation in industry groups (CSA, FedRAMP PMO community, etc.)

Target Annual Compensation: $250-265K

Applicants for this opportunity must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.

#LI-SW1

Apply for this position
Bookmark Report

About the job

Full-time
USA
Senior Level
$250k-$265k per year
Posted 1 day ago
director
program management
risk management
architecture
infosec

Apply for this position

Bookmark
Report
Enhancv advertisement
+ 1,284 new jobs added today
30,000+
Remote Jobs

Don't miss out — new listings every hour

Join Premium

Director - GRC

Tines

*This is a remote position that must be based in the United States.

What You'll Be Doing

Strategic Leadership & Executive Engagement

  • Define and execute Tines' multi-year GRC strategy aligned with business objectives and market expansion goals

  • Own the compliance roadmap, prioritizing certifications and frameworks based on customer needs and revenue impact (FedRAMP, ISO 27001, SOC 2, GDPR, CCPA, etc.)

  • Serve as executive sponsor for all compliance programs, providing visibility and reporting to C-suite and Board of Directors

  • Build business cases for compliance investments, demonstrating ROI and competitive advantage

  • Monitor evolving compliance landscape, anticipating regulatory changes and translating requirements into actionable programs

Team Leadership & Organizational Development

  • Lead, mentor, and grow a team of GRC professionals, establishing career development paths and performance metrics

  • Scale the team strategically as Tines grows, hiring specialized roles as needed (GRC engineers, compliance analysts, etc.)

  • Foster cross-functional collaboration with Engineering, Product, Sales, Legal, IT, Security, and HR teams

  • Embed compliance champions across the organization and build a culture of excellence within the GRC function

FedRAMP & Federal Compliance Programs

  • Drive Tines' FedRAMP authorization to successful completion, overseeing gap remediation, documentation, and 3PAO engagement

  • Establish ongoing FedRAMP continuous monitoring and reauthorization processes

  • Build relationships with government stakeholders, agencies, and partners to support federal market expansion

  • Develop strategy for any future Federal requirements (DoD IL4/IL5, CMMC, StateRAMP) as business needs evolve

Compliance Program Management & Risk Governance

  • Maintain and optimize SOC 2 Type II compliance, ensuring efficient audit cycles and continuous control effectiveness

  • Lead ISO 27001 audits and other framework expansions

  • Establish and mature vendor risk management, third-party risk assessment, and supply chain security programs

  • Implement enterprise risk management processes, including risk registers, treatment plans, and executive risk reporting

  • Own the information security policy framework, ensuring alignment with regulatory requirements and business needs

  • Manage relationships with external auditors, 3PAOs, and assessors across all compliance programs

Customer Trust, Assurance & Market Positioning

  • Own the customer security assurance experience, including questionnaire responses, audit coordination, and Trust Center management

  • Partner with Sales and Customer Success to support enterprise deals requiring compliance evidence and security reviews

  • Build scalable processes to handle increasing volume of security assessments and due diligence requests

  • Represent Tines externally at customer meetings, industry events, and with auditors, positioning Tines as a compliance leader

Compliance Automation & Innovation

  • Champion the use of Tines' platform to automate compliance workflows, evidence collection, control testing, and reporting

  • Build a 'compliance-as-code' culture, treating compliance operations as a product with continuous improvement

  • Establish metrics and dashboards for real-time compliance posture visibility

  • Serve as an internal advocate and external case study for how automation transforms GRC

What You Bring With You

Required

  • 12+ years of progressive experience in GRC, information security, or risk management, with at least 5 years in a leadership role

  • Proven track record leading FedRAMP authorization efforts from planning through ATO (Authority to Operate)

  • Deep expertise in multiple compliance frameworks: SOC 2, ISO 27001, FedRAMP, NIST 800-53

  • Experience building and scaling GRC teams and programs in high-growth SaaS or technology companies

  • Strong executive presence with ability to influence C-suite and Board-level stakeholders

  • Demonstrated success managing complex, multi-workstream compliance programs with competing priorities

  • Exceptional communication skills with the ability to translate technical compliance requirements into business value for diverse audiences

  • Strategic mindset with hands-on execution capability; comfortable rolling up sleeves while setting long-term vision

  • Experience partnering with Sales, Engineering, Product, and Legal teams to operationalize compliance

Preferred

  • Industry certifications such as CISSP, CISA, CISM, or CRISC

  • Experience achieving FedRAMP authorization for a SaaS platform (bonus for Moderate or High impact levels)

  • Background in compliance automation, GRC tooling, or security orchestration

  • Experience with privacy regulations and programs (GDPR, CCPA, data governance)

  • Knowledge of cloud security architecture and controls (AWS, Azure, GCP)

  • Prior experience in a startup or hypergrowth environment (Series B-D stage)

  • Familiarity with DevSecOps, infrastructure-as-code, and modern engineering practices

  • Experience using or implementing workflow automation platforms

  • Active participation in industry groups (CSA, FedRAMP PMO community, etc.)

Target Annual Compensation: $250-265K

Applicants for this opportunity must be authorized to work for any employer in the U.S. We are unable to sponsor or take over sponsorship of an employment Visa at this time.

#LI-SW1

Working Nomads

Post Jobs
Premium Subscription
Sponsorship
Reviews
Job Alerts

Job Skills
Jobs by Location
Jobs by Experience Level
Jobs by Position Type
Jobs by Salary
API
Scam Alert
FAQ
Privacy policy
Terms and conditions
Contact us
About us

Jobs by Category

Remote Administration jobs
Remote Consulting jobs
Remote Customer Success jobs
Remote Development jobs
Remote Design jobs
Remote Education jobs
Remote Finance jobs
Remote Legal jobs
Remote Healthcare jobs
Remote Human Resources jobs
Remote Management jobs
Remote Marketing jobs
Remote Sales jobs
Remote System Administration jobs
Remote Writing jobs

Jobs by Position Type

Remote Full-time jobs
Remote Part-time jobs
Remote Contract jobs

Jobs by Region

Remote jobs Anywhere
Remote jobs North America
Remote jobs Latin America
Remote jobs Europe
Remote jobs Middle East
Remote jobs Africa
Remote jobs APAC

Jobs by Skill

Remote Accounting jobs
Remote Assistant jobs
Remote Copywriting jobs
Remote Cyber Security jobs
Remote Data Analyst jobs
Remote Data Entry jobs
Remote English jobs
Remote Entry Level jobs
Remote Spanish jobs
Remote Project Management jobs
Remote QA jobs
Remote SEO jobs

Jobs by Country

Remote jobs Australia
Remote jobs Argentina
Remote jobs Belgium
Remote jobs Brazil
Remote jobs Canada
Remote jobs Colombia
Remote jobs France
Remote jobs Germany
Remote jobs Ireland
Remote jobs India
Remote jobs Japan
Remote jobs Mexico
Remote jobs Netherlands
Remote jobs New Zealand
Remote jobs Philippines
Remote jobs Poland
Remote jobs Portugal
Remote jobs Singapore
Remote jobs Spain
Remote jobs UK
Remote jobs USA


Working Nomads curates remote digital jobs from around the web.

© 2026 Working Nomads.