Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Director, GRC (Subject Matter Expert) image - Rise Careers
Job details

Director, GRC (Subject Matter Expert)

At Vanta, our mission is to secure the internet and protect consumer data. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. 

At Vanta, our mission is to secure the internet and protect consumer data. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. 

At Vanta, our mission is to secure the internet and protect consumer data. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. 

Vanta is growing quickly and we're continually moving upmarket, dealing with sophisticated customers with complex security and compliance environments and needs. Our Security team uses our own Security and Privacy GRC experience to meet customer demand to help grow our market share as the industry leader in compliance and security.

As a Director of GRC Subject Matter Expert, you will be a highly visible, customer-facing leader within Vanta’s Security team, responsible for representing Vanta’s Trust Management Platform to prospects and customers, as well as having a role in collaborating with internal teams to help drive and implement new features in the product.

If this sounds like you, and you're excited to use your Security and GRC experience to help grow and sell our product, we'd love to hear from you.

What you’ll do as a Director for the GRC Subject Matter Experts (SME) at Vanta:

  • Oversee the work of two primary teams. One customer facing GRC Subject Matter Expert team and one internal facing GRC Subject Matter Expert team. 

  • Lead and grow a team of the best security professionals in the world, with a view of security that is forward thinking, human-centric, and trust-based. 

  • Help define the strategy for future offerings to Vanta customers from subject matter expert teams. 

  • Provide, both individually and through your teams, expert feedback to Vanta’s Engineering, Product and Design teams on our product offerings and serve as a strong customer voice in product development.

  • Represent Vanta’s products, vision, and voice as a trusted security thought leader in public security forums.

  • Participate within the CISO leadership team and collaborate extensively with other leaders within the Security and Enterprise Engineering teams. 

  • Track the team’s performance and report goals and objectives to leaders outside of the security team

  • Partner with the Vanta's Sales and Customer Success teams to represent Vanta’s Trust Management Platform to prospects and customers 

  • Engage with executives at prospect and customer organizations to establish relationships with customers’ Security and Compliance points of contact

  • Become an expert on the security features available for customers to deploy within Vanta, including best practices for implementation

  • Use your expert knowledge of compliance frameworks like SOC 2 and ISO 27001 to advise customers regarding questions about scoping, policy creation, detailed control requirements and security best practices

  • Leverage your knowledge of running Governance, Risk, and Compliance programs to help our customers navigate this function and meet their compliance goals 

  • Coordinate with cross-functional teams to provide customers with meaningful updates on features and programs

How to be successful in this role:

  • 10+ years of experience working in the Governance, Risk, and Compliance industry 

  • Strong leadership experience and an ability to lead a team from a foundation of transparency and trust

  • Experience working with security and privacy frameworks, including SOC2, ISO 27001, ISO 27701, FedRAMP, HIPAA, GDPR, CCPA

  • Demonstrable expertise in SOC 2 or ISO 27001 at minimum

  • Experience managing a large team of people (10+)

  • Experience working and interfacing with C-level customer contacts

  • Technical expertise to understand and explain security and GRC concepts

  • Familiarity with Cloud Infrastructure, Risk Management, Vendor Risk Management, Vulnerabilities Management, and their related security processes 

  • Experience in building productive relationships and driving collaboration with both technical and non-technical teams

  • Knowledge of the cybersecurity audit process

  • Public accounting experience preferred, but not required

  • Security compliance management experience within a SaaS environment preferred, but not required

  • Professional customer facing experience preferred, but not required

  • Security certifications (e.g. CISA, CISSP) and/or formal education strongly preferred, but not required

What you can expect as a Vantan:

  • Industry-competitive compensation

  • 100% covered medical, dental, and vision benefits with dependents coverage

  • 16 weeks fully-paid parental Leave for all new parents

  • Health & wellness and remote workplace stipends

  • Family planning benefits through Carrot Fertility

  • 401(k) matching

  • Flexible work hours and location

  • Open PTO policy

  • 11 paid holidays in the US

  • Offices in SF, NYC, Dublin, and Sydney

To provide greater transparency to candidates, we share base pay ranges for all US-based job postings regardless of state. We set standard base pay ranges for all roles based on function, level, and country location, benchmarked against similar-stage growth companies. Final offer amounts are determined by multiple factors, including candidate location, skills, depth of work experience, and relevant licenses/credentials, and may vary from the amounts listed below. The salary or OTE range for this position is $246,000 - $289,000. This role may also be eligible for commissions/bonus, equity, medical benefits, 401(k) plan, and other company perk programs.

#LI-remote

At Vanta, we are committed to hiring diverse talent of different backgrounds and as such, it is important to us to provide an inclusive work environment for all. We do not discriminate on the basis of race, gender identity, age, religion, sexual orientation, veteran or disability status, or any other protected class. As an equal opportunity employer, we encourage and welcome people of all backgrounds to apply.

About Vanta

We started in 2018, in the wake of several high-profile data breaches. Online security was only becoming more important, but we knew firsthand how hard it could be for fast-growing companies to invest the time and manpower it takes to build a solid security foundation. Vanta was inspired by a vision to restore trust in internet businesses by enabling companies to improve and prove their security.From our early days automating security monitoring for compliance standards like SOC 2, HIPAA and ISO 27001 to creating the world's leading Trust Management Platform, our vision remains unchanged. 

Now more than ever, making security continuous—not just a point-in-time check— is essential. Thousands of companies rely on Vanta to build, maintain and demonstrate their trust— all in a way that's real-time and transparent.

Vanta Glassdoor Company Review
4.3 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
Vanta DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Vanta
Vanta CEO photo
Christina Cacioppo
Approve of CEO

Average salary estimate

$267500 / YEARLY (est.)
min
max
$246000K
$289000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Director, GRC (Subject Matter Expert), Vanta

Are you ready to take on a pivotal role as the Director of GRC (Subject Matter Expert) at Vanta? We’re on a mission to secure the internet and protect consumer data, and we’re excited to empower a diverse range of companies to enhance their security processes. At Vanta, we embrace the belief that security should be constantly monitored and verified, providing customers with a seamless path to prove it. As the Director of GRC, you’ll be leading two dynamic teams composed of security professionals dedicated to ensuring our Trust Management Platform meets and exceeds the evolving demands of our sophisticated clientele. You’ll act as a beacon of expertise, representing Vanta and collaborating with various internal teams to refine our offerings. Your days will be exciting; one moment you'll be engaging with C-level executives to build relationships, and the next, you’ll provide invaluable feedback to our Engineering, Product, and Design teams. With over a decade of experience in Governance, Risk, and Compliance and a genuine passion for security, you will help shape the future of our products. Vanta’s inclusive environment welcomes different backgrounds, allowing you to thrive while making a real impact in the cybersecurity space. We encourage you to apply if you’re excited to join our mission and lead an incredible team to drive customer success and product innovation.

Frequently Asked Questions (FAQs) for Director, GRC (Subject Matter Expert) Role at Vanta
What are the key responsibilities for the Director of GRC at Vanta?

As the Director of GRC at Vanta, your key responsibilities include overseeing both customer-facing and internal GRC Subject Matter Expert teams, leading a talent pool of security professionals, and collaborating with multiple departments to enhance product offerings. You'll also represent Vanta at security forums, engage with C-level customers, and provide expert advice on compliance frameworks like SOC 2 and ISO 27001.

Join Rise to see the full answer
What qualifications are ideal for the Director of GRC position at Vanta?

Ideal candidates for the Director of GRC position at Vanta should possess at least 10 years of experience in the Governance, Risk, and Compliance industry. Strong leadership skills, familiarity with security and privacy frameworks, and experience managing large teams are essential. Technical expertise in security concepts and compliance frameworks like SOC 2 and ISO 27001 is crucial.

Join Rise to see the full answer
How does the Director of GRC at Vanta contribute to product development?

The Director of GRC at Vanta plays a pivotal role in product development by providing expert feedback based on customer interactions and team insights. This leadership position ensures that Vanta’s Trust Management Platform aligns with customer needs and market demands, helping shape future offerings from subject matter expert teams.

Join Rise to see the full answer
What skills are essential for success in the Director of GRC role at Vanta?

Essential skills for success in the Director of GRC role at Vanta include strong communication and leadership capabilities, a deep understanding of compliance frameworks, and the ability to build relationships with both technical and non-technical stakeholders. Additionally, expertise in navigating security and GRC concepts crucially impacts customer success.

Join Rise to see the full answer
What benefits come with the Director of GRC position at Vanta?

The benefits accompanying the Director of GRC position at Vanta include competitive compensation, 100% covered medical, dental, and vision benefits, generous parental leave, flexible working hours, and an open PTO policy. Vanta is dedicated to ensuring key benefits promote a healthy work-life balance for all team members.

Join Rise to see the full answer
Common Interview Questions for Director, GRC (Subject Matter Expert)
Can you describe your leadership style as the Director of GRC?

When addressing your leadership style as the Director of GRC, highlight your approach to transparency, trust, and empowerment. Be prepared to share specific examples of how you've successfully led teams and fostered a collaborative environment, ensuring everyone contributes to a common goal.

Join Rise to see the full answer
How do you stay current with changes in compliance frameworks?

To demonstrate your commitment to staying current with compliance frameworks, discuss techniques like attending industry conferences, participating in webinars, and joining relevant professional organizations. Show your passion for continuous learning and your proactive approach to applying this knowledge at Vanta.

Join Rise to see the full answer
What strategies would you utilize to engage C-level executives at Vanta?

When engaging C-level executives, emphasize your strategies for establishing trust and credibility. Discuss how you’d tailor your communication to address their specific concerns while showcasing the value Vanta's solutions bring to their security environment.

Join Rise to see the full answer
How would you prioritize tasks between your two GRC teams?

Prioritizing tasks between your two GRC teams requires effective communication and a keen understanding of both customer and internal needs. Explain your approach to assessing urgency, aligning team goals with Vanta’s objectives, and leveraging team strengths to ensure efficient task allocation.

Join Rise to see the full answer
What experience do you have with SOC 2 compliance, and how would you advise clients?

Share your firsthand experience in managing SOC 2 compliance initiatives. Discuss your role in guiding clients through the requirements and highlight how you help them implement best practices, scope policies, and ensure readiness for audits, thus positioning yourself as a valuable resource.

Join Rise to see the full answer
Describe your experience with cross-functional collaboration.

When addressing your experience in cross-functional collaboration, provide examples of how you've worked closely with engineering, sales, and product teams to achieve common goals. Discuss specific projects where collaboration led to successful outcomes, demonstrating your ability to bridge gaps between different areas.

Join Rise to see the full answer
How do you plan on representing Vanta at public security forums?

When representing Vanta at public security forums, focus on your preparation, insights on emerging trends, and thought leadership. Share specific topics you would like to present and how you would engage the audience to showcase Vanta's expertise and commitment to security.

Join Rise to see the full answer
What are your strategies for mentoring less experienced team members?

Outline the importance of mentorship in your management style. Discuss specific strategies you use, such as regular check-ins, providing constructive feedback, and encouraging open communication, to foster the growth and development of less experienced team members.

Join Rise to see the full answer
How do you measure your teams' success in achieving GRC objectives?

Be prepared to discuss KPIs and metrics you employ to measure your teams' success in GRC objectives. Highlight the importance of regular performance reviews, feedback from clients, and tracking of compliance metrics to ensure continued improvement and accountability within your teams.

Join Rise to see the full answer
What do you consider the biggest challenge facing GRC today?

When discussing the biggest challenges facing GRC today, provide a thoughtful analysis of current industry issues, such as evolving regulations or cyber threats. Discuss your perspective on proactive strategies that Vanta can employ to navigate these challenges and maintain strong GRC practices.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Inclusive & Diverse
Growth & Learning
Customer-Centric
Collaboration over Competition
Medical Insurance
Maternity Leave
Flex-Friendly
401K Matching
Photo of the Rise User
Inclusive & Diverse
Growth & Learning
Customer-Centric
Collaboration over Competition
Medical Insurance
Maternity Leave
Flex-Friendly
401K Matching
Photo of the Rise User
Posted yesterday
Photo of the Rise User
Posted 6 days ago
Photo of the Rise User
Posted 14 days ago
Admirals Group Remote No location specified
Posted 12 days ago
Photo of the Rise User
Posted 6 days ago
Photo of the Rise User
Posted 12 days ago

Vanta is the leading trust management platform that helps simplify & centralize security for organizations of all sizes.

187 jobs
MATCH
Calculating your matching score...
BADGES
Badge ChangemakerBadge Future MakerBadge Innovator
CULTURE VALUES
Inclusive & Diverse
Growth & Learning
Customer-Centric
Collaboration over Competition
BENEFITS & PERKS
Medical Insurance
Maternity Leave
Flex-Friendly
401K Matching
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 7, 2024

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!