Doppel is seeking a Manager, Governance, Risk & Compliance to own and scale our GRC program end to end. You will lead a team of GRC analysts and set the strategy, roadmap, and operating model for certifications, risk management, control assurance, third-party risk, privacy, and customer trust across the company.
Key responsibilities
- Define and execute the multi-year GRC strategy, roadmap, and program priorities while reporting on risk posture to executive leadership.
- Hire, manage, and develop a team of GRC analysts, fostering a culture of rigor, ownership, and continuous improvement.
- Serve as the executive owner for SOC 2 Type II, ISO 27001, ISO 27701, and ISO 42001, directing audit scoping and auditor relationships.
- Lead the enterprise and security risk framework, chairing risk review forums and managing remediation with senior stakeholders.
- Drive customer trust by managing security questionnaires, RFP responses, and acting as an executive-level security counterpart for strategic customers.
Requirements
- 8+ years in GRC, security audit, or risk management, with at least 1 year of experience managing people and owning a GRC program.
- Proven track record of scaling a program and team through rapid company growth.
- Executive-level ownership of SOC 2 Type II and ISO 27001 programs through multiple certification cycles.
- Deep command of management systems, common control frameworks, and evidence sufficiency in cloud-first environments.
- Strong executive communication skills, with the ability to translate technical detail into business impact for leadership and boards.
What we offer
- The opportunity to turn security, privacy, and compliance into a durable competitive advantage for a growing company.
- A leadership role that enables the organization to scale responsibly and earn lasting confidence from customers and regulators.
- A fully remote work environment where you can build and shape a high-performing GRC team.