Skip to content
MongoDBMongoDBUnited States

Senior Manager, Policy and Controls Governance

Senior Manager overseeing policy lifecycle, common controls framework, issue management, and governance programs within MongoDB's Assurance, Risk and Compliance team. Requires 10+ years in security/GRC, experience leading policy and controls programs at scale, strong frameworks knowledge (SOC2, ISO, NIST), Jira/GRC tooling expertise, and people leadership skills.

114k – 224k/yr
Remote10+ YOEOther

About the role

Responsibilities

Scope of Ownership

  • Policy governance program ownership, including policy lifecycle management, documentation standards, review and approval cadences, change tracking, and exception governance
  • Controls governance ownership, including common controls framework lifecycle management, control harmonization, framework mapping, and processes that support audit readiness and scalable control oversight
  • Governance over supporting systems and workflows, including Jira, GRC tooling, documentation repositories, and reporting structures, that enable consistent execution and visibility
  • Issue management and remediation governance, including intake, triage, tracking, and reporting for timely closure of findings
  • Executive-ready reporting and metrics for policy health, controls maturity, policy exceptions and broader program effectiveness

Program Leadership

  • Own and evolve the governance model for policies, standards, procedures and controls, ensuring clear accountability, consistent execution and audit-ready outputs
  • Lead the end-to-end policy lifecycle, including creation, review, approval, publication, maintenance, retirement and exception governance
  • Lead the controls governance program, including common controls framework ownership, framework revision management, control harmonization and periodic cross-functional control reviews
  • Own the governance model for ARC issues and remediation tracking, including workflows for intake, tracking, monitoring, closure validation and ongoing reporting
  • Ensure policies and controls remain aligned with compliance requirements, and translate framework changes into actionable program updates

People Management

  • Manage and develop team members responsible for policy governance, controls governance, and related operational processes by setting priorities, driving workload clarity, and coaching for strong execution
  • Establish a high bar for quality, accountability, and follow-through while supporting team growth through regular feedback and development

Cross-functional Partnership

  • Partner within ARC and across Security, Engineering, Product, and Legal teams to align requirements, resolve blockers, and drive timely decisions
  • Coordinate with policy owners, subject matter experts and operational stakeholders to drive timely reviews, required updates, and exception handling
  • Serve as a key point of contact for compliance audit support related to policy governance and controls governance processes and program documentation

Operational excellence and metrics

  • Define, maintain and evolve KPIs, KRIs, dashboards and reporting that measure policy lifecycle health, control maturity, audit readiness, exception trends and program performance
  • Oversee the systems that support the program, including Jira workflows, GRC platform, and related automation or enhancement opportunities
  • Drive continuous improvement across governance workflows to reduce manual effort, strengthen stakeholder experience and improve scalability across ARC programs

Requirements

  • 10+ years of program management, governance, compliance or related experience within Information Security, GRC, or a high-growth technology environment
  • Experience leading policy and procedure programs, governance frameworks or controls governance programs at scale
  • Strong understanding of security and compliance frameworks such as SOC2, ISO 27001, PCI DSS, HIPAA, NIST CSF, with the ability to translate framework requirements into operational policy and control structures
  • Experience managing full-lifecycle cross-functional programs, including planning, risk mitigation, dependency management, change control, and executive reporting
  • Advanced experience with Jira, and GRC or policy management platforms
  • Strong people leadership capability, including managing team priorities, coaching team members, and driving accountability through ambiguity and complexity
  • Excellent communication and stakeholder management skills, with the ability to influence cross-functional partners and hold teams accountable to deadlines and governance expectations
  • Exceptional attention to detail, strong judgement and a proactive approach to building structure, clarity and sustainable governance mechanisms

Nice-to-Haves

  • Experience managing complex governance programs that require coordination across business and technical teams
  • Leadership in enhancing the maturity of policy and controls governance programs by creating repeatable mechanisms
  • Ability to own strategy and success of programs, working closely with technical and operational subject matter experts while being accountable for governance design, execution rigor, reporting clarity, and resolution of bottlenecks

Skills

GRCJirasoc2ISO 27001pci dssHIPAAnist csfpolicy managementcontrols frameworkissue managementcompliance auditingRisk ManagementStakeholder ManagementProgram ManagementPeople Management

Similar roles

Vercel

AI Accelerator Lead

VercelSan Francisco, CA

Own and execute the full lifecycle of Vercel's AI Accelerator program for pre-seed and idea-stage AI founders. Design cohorts, manage applications through Demo Day, build founder relationships and community, and partner cross-functionally to deliver exceptional programming and content while feeding insights back into Vercel.

114k – 172k/yr
Remote5+ YOEOther
Crusoe

Workplace Food & Beverage Manager

CrusoeSan Francisco, CA +1

Lead the development and execution of a unified Food & Beverage strategy across Crusoe's offices, data centers, and manufacturing sites. Own vendor transitions, guidelines, budgeting, sustainability, and program metrics while partnering with operations and leadership.

115k – 150k/yr
On-site7+ YOEOther
Coalition Security

Manager, Claims

Coalition SecurityUnited States

Lead a team handling complex first and third-party global cyber, technology, and media claims. Requires 6+ years claims experience (including product development), 2+ years people management, bachelor's degree, strong analytical and communication skills.

115k – 155k/yr
Remote6+ YOEOther
Datadog

Team Lead, Strategic Sourcing

DatadogNew York, NY

Lead strategic sourcing and procurement for enterprise SaaS, software licenses, and IT hardware at a high-growth company. Manage complex renewals, negotiate savings, transform processes from transactional to strategic, and develop a direct report while building cross-functional partnerships.

116k – 154k/yr
Hybrid5+ YOEOther
Chime

Senior Analyst, Financial Crimes & Identity Quality

ChimeChicago, IL

Senior Analyst performing and leading quality assurance reviews of Financial Crimes and Identity investigations (AML, fraud, KYC/CDD, EDD). Evaluates accuracy, coaches teams, identifies trends, and drives process improvements in a high-volume banking compliance environment. Requires 4+ years in fraud/AML/KYC plus QA experience.

112k – 155k/yr
On-site4+ YOEOther