Valence Logo

Valence

GRC Manager

Reposted One Month Ago
Remote
Hiring Remotely in USA
Senior level
Remote
Hiring Remotely in USA
Senior level
Lead day-to-day GRC operations: manage audits and certifications (SOC 2, ISO 27001/42001), maintain risk register and controls, coordinate assessments and evidence collection, support customer security questionnaires and due diligence, partner with Engineering to implement technical controls, and build scalable governance processes.
The summary above was generated by AI

Valence has built the only first-to-market AI native coaching platform for enterprise, offering personalized, expert, and human-like guidance and support to any leader or employee. We’re not just talking about the future of work — we’re building it now, with the most innovative Fortune 500 companies across healthcare, financial services, manufacturing, and technology.

Learn more about our work with Microsoft: Valence Brings AI Coaching More Deeply Into the Flow of Work with Microsoft 365

 

Our focus is on the problems that actually decide whether AI changes how organizations operate — the ones with no playbook, no obvious answers, and no guarantee of success. If you want to be part of the small group that defines how AI transforms the future at a global scale, this is your chance.

And this isn’t for everyone. We’re not looking for people who want predictability or incremental progress. We only want those who are restless at the edge of what’s possible, who get bored when things feel “done,” and who are driven to redefine what AI can mean for leaders, companies, and the world. Because at Valence, the work worth doing is the kind that redefines work itself.

 
The Role


We are seeking an experienced Governance, Risk & Compliance (GRC) Manager to help mature and scale Valence's security and compliance program. In this role, you will partner with Engineering, Product, IT, Sales, and Operations to ensure our security program remains effective while enabling the business to move quickly.

You'll own the operational side of our GRC program: managing audits, coordinating risk assessments, maintaining policies and controls, supporting customer assurance, and helping turn compliance from a reactive exercise into a scalable business capability.

This is a highly cross-functional role where success depends on organization, communication, and the ability to influence without authority.

 
About Valence

We're the only company pioneering leadership coaching for large enterprises in an AI-first way. Our mission is to transform how the world's biggest companies approach learning and development, helping teams work better together through AI-powered personalization that adapts to individual goals and organizational culture using the latest advances in machine learning and natural language processing.

We've been featured in Harvard Business Review, TIME, World Economic Forum, Financial Times, Forbes and an Inc. 5000 fastest-growing private companies in America. Our clients represent the most diverse and sophisticated enterprise AI implementations globally, including Coca-Cola, Delta, Nestlé, General Mills, Schneider Electric, Deutsche Telekom, AstraZeneca, Prudential, CVS and Bristol Myers Squibb.

Working at Valence means you'll work directly with Fortune 500 technology leaders, building expertise through the most complex enterprise deployments while gaining insight into diverse organizational approaches to AI transformation. These aren't just any enterprise clients - they're the companies defining what AI-first business transformation looks like across every major industry.

What You'll Do
  • Own the day-to-day operation of Valence's GRC program.

  • Maintain and continuously improve our Information Security and Artificial Intelligence Management System for ISO 27001/42001.

  • Coordinate SOC 2, ISO 27001, ISO 42001, and other certification efforts.

  • Manage the security risk register and facilitate enterprise risk assessments.

  • Coordinate internal and external audits.

  • Manage security policies, standards, and control documentation.

  • Track remediation activities and drive control improvements across teams.

  • Support customer security questionnaires, RFPs, and due diligence activities.

  • Partner with Engineering to ensure technical controls meet compliance requirements.

  • Help develop security metrics and executive reporting.

  • Coordinate annual control testing and evidence collection.

  • Build scalable governance processes as the company grows.

What We're Looking For
  • Experience managing GRC or security compliance programs.

  • A desire to automate GRC tasks, including with the use of AI.

  • Strong understanding of security frameworks such as SOC 2, ISO 27001, NIST CSF and ISO 42001.

  • Experience with risk management methodologies and maintaining risk registers.

  • Experience coordinating internal and external audits.

  • Experience working cross-functionally with Engineering, IT, Legal, Privacy and business stakeholders.

  • Strong organizational and project management skills.

  • Excellent written and verbal communication.

  • Comfortable interpreting control requirements and translating them into practical implementation guidance.

  • Familiarity with cloud security concepts and requirements (AWS/Azure preferred).

  • Experience with GRC platforms such as Vanta, Drata, Secureframe, OneTrust, Archer or similar is a plus.

  • Familiarity with privacy regulations and AI governance, including GDPR and the EU AI Act.

What You'll Get

Ownership & Rapid Growth

  • Outsized missions from day one, with direct responsibility for company-defining projects

  • Work alongside the executive team with transparency into strategy and decision-making

  • Influence on direction through real-time customer feedback and market insights

AI-First Operator

  • Work directly with cutting-edge AI models and next-generation platforms

  • Build expertise in enterprise AI implementation across Fortune 500 companies and multiple industries

  • Establish yourself as a recognized leader among peers in shaping how AI transforms work at a global scale

Compensation

  • Competitive salary including base + bonuses

  • Comprehensive health coverage (medical, dental, vision) from day one

  • Generous PTO, company-wide R&R shutdowns, and paid parental leave

  • Retirement plan support for US and global employees

  • A WFH stipend, phone stipend and support to work in a We Work or other space as preferred.

Equity

  • Meaningful ownership in a venture-backed company at a growth inflection point

  • Financial upside that comes from scaling fast

  • Top-up grants as we scale and you deliver exceptional performance — your compensation grows alongside your impact

Top-Performing Culture

  • A culture built for top talent: intensity to win, growth without limits, and a team that solves hard problems and celebrates big wins together

Learn more about us and meet our team here

Location and Work Environment

We’re looking for a candidate that can fully support our team in ET time zone (e.g. Toronto, NYC). While we’re open to candidates from other areas, they need to be generally available during Eastern Time working hours. have valid travel documents without work authorization restrictions in the US.

 
Diversity and Inclusion

We are dedicated to creating a diverse and inclusive environment where everyone feels valued and supported. We encourage applications from candidates of all backgrounds and offer accommodations upon request throughout the hiring process. If you have any questions, please reach out to Allison Langille, Head of People, at [email protected].

 
Employment Verification & Commitment

We use third-party services to verify employment history, education, and other information relevant to your candidacy. Employment is contingent upon the successful completion of these verification checks. This is a full-time role that requires a high level of focus, availability, and commitment. Employees may not hold concurrent full-time employment with another organization while employed at Valence. Any outside consulting, advisory, freelance, or other professional work must be disclosed and approved in advance and must not interfere with job responsibilities, availability, performance, or create a conflict of interest - including risks related to confidentiality, intellectual property, or competition.

Valence takes candidate fraud seriously. We verify identity, LinkedIn profiles, employment history, and references; any misrepresentation during the hiring process is grounds for withdrawing an offer or ending employment. All offers are contingent on successful completion of these checks.

 

#LI-HYBRID

Similar Jobs

Yesterday
Remote or Hybrid
United States
Senior level
Senior level
Consulting • Financial Services
Leads cybersecurity GRC, data privacy, technical risk, regulatory readiness, and third-party risk advisory engagements. Assesses security controls, architectures, identity, cloud, vulnerability management, monitoring, incident response, resilience, and privacy programs. Advises executives, translates technical findings into business risk, develops remediation roadmaps, supports cyber due diligence and post-acquisition initiatives, contributes to business development, and mentors consulting teams.
Top Skills: AWSCcpa/CpraCis ControlsCmmcDevsecopsEdr/XdrEntra IdFedrampGdprGrc PlatformsHipaaIam/PamIso 27001/27002Microsoft 365AzureNist CsfNist Sp 800-53Nydfs 500Pci DssSec Cyber DisclosureSIEMSoc 2Sox ItgcUk GdprVulnerability Scanning Tools
Yesterday
Remote or Hybrid
United States
Senior level
Senior level
Consulting • Financial Services
Lead cybersecurity GRC, privacy, and AI governance advisory engagements for enterprise and private equity clients. Design governance models, risk programs, control frameworks, privacy operations, third-party risk programs, and AI compliance frameworks aligned with NIST AI RMF, EU AI Act, and ISO 42001. Advise executives, develop board-ready deliverables, manage client workstreams, support business development, and mentor consulting teams.
Top Skills: Ai Lifecycle ManagementCcpaCis ControlsCmmcCpraEu Ai ActFedrampGdprGlbaHipaaIso 27001Iso 27002Iso 42001Model ValidationNist Ai RmfNist CsfNist Sp 800-171Nist Sp 800-53Pci DssSoc 2Sox ItgcThird-Party Risk ManagementUk Gdpr
One Month Ago
Easy Apply
Remote
USA
Easy Apply
194K-228K Annually
Senior level
194K-228K Annually
Senior level
Artificial Intelligence • Blockchain • Fintech • Financial Services • Cryptocurrency • NFT • Web3
Lead second-line technology and security risk advisory coverage across critical domains, evaluating risk exposure, control effectiveness, policy alignment, and emerging issues. Partner with engineering and security teams to improve control design and risk outcomes, coordinate remediation across risk and audit functions, communicate risk tradeoffs, and manage and coach technology risk analysts.
Top Skills: Change ManagementContinuous MonitoringCybersecurity RiskDisaster RecoveryGenerative AiGrcIdentity And Access ManagementIncident ResponseIt AuditIt ControlsResiliencySdlc

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account