Skip to content
PalantirPalantirNew York, NY

GRC Program Manager

GRC Program Manager partnering with compliance engineers, security teams, and developers to design, scale, and operate Governance, Risk, and Compliance processes and frameworks. Requires experience managing compliance programs and multiple GRC standards (SOC 2, ISO 27001, FedRAMP, NIST), with strong project management and stakeholder coordination skills.

Salary not listed
Hybrid5+ YOEOther

About the role

Core Responsibilities

  • Design, document, and continuously improve compliance processes and frameworks to scale GRC operations across Commercial, International, and US Government environments.
  • Serve as connective tissue across teams, translating regulatory requirements into actionable workflows and ensuring accountability at every stage of the compliance lifecycle.
  • Coordinate across internal and external audit cycles (FedRAMP, SOC 2, ISO 27001, etc.), ensuring evidence collection, remediation tracking, and stakeholder communication stay on schedule.
  • Maintain broad and complete visibility into projects, including audit timelines, control implementation status, and continuous monitoring obligations. Pre-empt and resolve issues that may derail projects.
  • Enhance cross-team collaboration across engineering, legal, and customer-facing teams to drive key GRC deliverables through the software development and compliance lifecycle.
  • Synthesize compliance goals from product and regulatory vision, mapping strategy to granular team tasks. Triage requests from the field to focus the team and escalate urgent items.
  • Work with customer-facing engineering teams on adoption, rollout, and support of compliance-related product features and certifications.

What We Value

  • Demonstrated success managing compliance programs for an enterprise software company, startup, or similar.
  • Experience with multiple GRC frameworks and standards such as SOC 2, ISO 27001, IRAP, or ENS. USG-specific frameworks are particularly valuable: FedRAMP, NIST 800-53, DoD CC SRG, FISMA, or CMMC.
  • Excellent judgment and composure in high-pressure situations, including during active audits or compliance incidents.
  • Creative approach to project management using lightweight frameworks that enable rapid iteration while aligning with larger development and compliance organizations.
  • Ability to develop strong relationships with internal stakeholders (including customer-facing teams), auditors, and regulators, with high empathy for end-users' needs.
  • Meticulous attention to detail and commitment to maintaining high compliance and product quality standards.
  • Proven track record of building and scaling compliance processes from the ground up, particularly in USG-regulated environments.
  • Experience with risk management methodologies, including maintaining risk registers, conducting risk assessments, and managing third-party or vendor risk programs.

What We Require

  • Must work from the country listed on this job posting and be based within a commutable distance of your local Palantir office.
  • Willingness and eligibility to obtain a U.S. security clearance preferred.

Skills

GRCSOC 2ISO 27001FedRAMPnist 800-53Risk Managementcompliance frameworksaudit coordinationProject ManagementRegulatory Compliancevendor risk managementus government compliance

Similar roles

SmithRx

Business Systems Analyst

SmithRxCalifornia +11

Business Systems Analyst responsible for managing Jira intake and backlog, performing hands-on Salesforce administration and integrations (Five9, Ironclad, DocuSign), translating business needs into technical stories, building reports/dashboards, and facilitating stakeholder communication. Requires 4+ years experience including 2+ years with Jira workflows, strong analytical and communication skills.

94k – 152k/yr
Remote4+ YOEOther
Vanta

People Automation & AI Partner

VantaUnited States

Build and own AI-powered agents, workflows, and automations (using Claude, Dust, Zapier) embedded within Vanta's Recruiting and People teams to eliminate manual work, scale hiring processes, and drive adoption of production-grade internal tools.

140k – 175k/yr
RemoteOther
Rad AI

Radiology Transcriptionist

Rad AIUnited States

Proofread and correct AI-generated radiology reports for accuracy, terminology, and formatting. Requires 5+ years medical transcription experience, strong radiology knowledge, and attention to detail.

37k – 46k/yr
Remote5+ YOEOther
Axle

Inner Ear Biologist

AxleBethesda, MD

Biologist supporting inner ear cellular biology research at NIH/NIDCD. Involves designing/executing experiments on rodent models, managing transgenic mouse colonies, confocal microscopy, computational data analysis, and reporting findings. Requires Master's degree.

75k – 83k/yr
On-siteOther
Udacity

External Contractor

UdacityUnited States

Mentor students in Udacity's Data Product Manager track by providing technical support via online forums, answering course questions, hosting weekly live sessions, and escalating issues as needed. Flexible part-time contractor role allowing work from home.

Salary not listed
RemoteOther