CrowdStrike Logo

CrowdStrike

GRC Security Risk Manager (Remote)

Sorry, this job was removed Sorry, this job was removed at 03:14 p.m. (PST) on Thursday, Jan 30, 2025
Be an Early Applicant
Remote
Hiring Remotely in USA
110K-190K Annually
Remote
Hiring Remotely in USA
110K-190K Annually

As a global leader in cybersecurity, CrowdStrike protects the people, processes and technologies that drive modern organizations. Since 2011, our mission hasn’t changed — we’re here to stop breaches, and we’ve redefined modern security with the world’s most advanced AI-native platform. Our customers span all industries, and they count on CrowdStrike to keep their businesses running, their communities safe and their lives moving forward. We’re also a mission-driven company. We cultivate an inclusive culture that gives every CrowdStriker both the flexibility and autonomy to own their careers. We’re always looking to add talented CrowdStrikers to the team who have limitless passion, a relentless focus on innovation and a fanatical commitment to our customers, our community and each other. Ready to join a mission that matters? The future of cybersecurity starts with you.

CrowdStrike is seeking a highly experienced GRC Security Risk Manager to oversee and manage our cybersecurity risk management, issues and exceptions management, policy governance, and control framework programs. This critical role will play a key part in ensuring the security and integrity of our organization.

Responsibilities:

  • Oversee and manage CrowdStrike's cybersecurity risk management, issues and exceptions management, policy governance, and control framework programs

  • Identify, assess, measure, monitor, and report on information security risks

  • Track and remediate security issues and exceptions

  • Govern security policy, standards, and controls through CrowdStrike's Governance, Risk, and Compliance (GRC) program

  • Collaborate with Security teams, Engineering, and Internal Audit to ensure alignment and effective risk management

  • Lead organizational efforts in defining, establishing, managing, and enforcing cybersecurity policies, standards, and procedures

Ideal Candidate: We're looking for a seasoned security professional with expertise in risk management, cybersecurity principles, and effective communication. The ideal candidate will have:

  • Expert-level understanding of current processes and a proactive approach to improving CrowdStrike's risk posture and GRC program

  • Strong collaboration and communication skills, with the ability to work effectively across all levels of the organization

  • Relevant certifications (e.g. CISSP, CISM, CRISC) and experience in a similar role

What We Offer: The opportunity to work in a fast-paced, secure, and empowered environment in the tech industry, with a team of experienced security professionals.

What You'll Do:

Team Leadership:

  •  Lead a team of specialist, ensuring their engagement, development, and performance in alignment with expectations.
     

Program Development and Management:

  • Develop and implement a comprehensive cybersecurity risk management program to identify, assess, and mitigate risks across the organization.

  • Mature and enhanceBuild out the issues and exceptions management program to improve efficiency, effectiveness, user experience, and program scope.

  • Mature the policy governance program through content enhancement, stakeholder engagement, and enterprise awareness.

 

Continuous Improvement:

  • Proactively identify areas of improvement within Cyber GRC and lead efforts to address and remediate.

  • Perform other duties within the scope of GRC.

What You'll Need:
 

Education and Experience:

  • At least 10+ years of job-related experience in a related field, with a preferred BA or BS / MA or MS degree in Computer Science/Engineering, Math, Information Security, Information Systems, Information Assurance, Information Security Management, Intelligence Studies, Data Science, Cybersecurity, or other related field.

Technical Skills:

  • Proven experience in security risk management, including risk assessments, issue management, policy governance, and risk mitigation, with expertise in GRC tool implementation (ServiceNow).

  • Practical experience with policy and regulatory requirements such as SOC1/SOC2, CSA-CCM, ISO27001/27002/27031, GDPR, PCI-DSS and frameworks such as NIST Risk 800-34, NIST 800-53, etc.

  • Advanced technical understanding of key technologies such as operating systems, networks, application development, databases, virtualization, and cloud infrastructures.

Soft Skills:

  • Proven track record of successfully collaborating with cross-functional teams across multiple regions to achieve business objectives.

  • Ability to build rapport and maintain relationships across functions within the company, with external vendors, and with governmental teams.

  • Ability to think strategically about risks and tie those risks to tactical organizational activities.

Program and Project Management:

  • Program and project management experience in scoping, work break-down, critical path analysis, resourcing, managing time and cost estimates, project risks, and quality.

Bonus Points:

  • Experience with leading GRC products, such as ServiceNow, and/or cloud environments, including CrowdStrike products or services.

  • Practical experience in Software Development and Secure Coding best practices.

#LI-RC1
#LI-Remote

Benefits of Working at CrowdStrike:

  • Remote-friendly and flexible work culture

  • Market leader in compensation and equity awards

  • Comprehensive physical and mental wellness programs 

  • Competitive vacation and holidays for recharge  

  • Paid parental and adoption leaves

  • Professional development opportunities for all employees regardless of level or role

  • Employee Resource Groups, geographic neighbourhood groups and volunteer opportunities to build connections

  • Vibrant office culture with world class amenities

  • Great Place to Work Certified™ across the globe

CrowdStrike is proud to be an equal opportunity and affirmative action employer. We are committed to fostering a culture of belonging where everyone is valued for who they are and empowered to succeed. Our approach to cultivating a diverse, equitable, and inclusive culture is rooted in listening, learning and collective action. By embracing the diversity of our people, we achieve our best work and fuel innovation - generating the best possible outcomes for our customers and the communities they serve.

CrowdStrike is committed to providing equal employment opportunity for all employees and applicants for employment. The Company does not discriminate in employment opportunities or practices on the basis of race, color, creed, ethnicity, religion, sex (including pregnancy or pregnancy-related medical conditions), sexual orientation, gender identity, marital or family status, veteran status, age, national origin, ancestry, physical disability (including HIV and AIDS), mental disability, medical condition, genetic information, membership or activity in a local human rights commission, status with regard to public assistance, or any other characteristic protected by law. We base all employment decisions--including recruitment, selection, training, compensation, benefits, discipline, promotions, transfers, lay-offs, return from lay-off, terminations and social/recreational programs--on valid job requirements. If you need assistance accessing or reviewing the information on this website or need help submitting an application for employment or requesting an accommodation, please contact us at recruiting@crowdstrike.com for further assistance.

Find out more about your rights as an applicant.

CrowdStrike participates in the E-Verify program.

Notice of E-Verify Participation

Right to Work

CrowdStrike, Inc. is committed to fair and equitable compensation practices. The base salary range for this position in the U.S. is $110,000 - $190,000 per year + variable/incentive compensation + equity + benefits. A candidate's salary is determined by various factors including, but not limited to, relevant work experience, skills, certifications, job level, supervisory status, and location.

Expected Close Date of Job Posting is:02-24-2025

CrowdStrike Kirkland, Washington, USA Office

Kirkland, WA, United States

Similar Jobs at CrowdStrike

22 Hours Ago
Remote
Hybrid
USA
155K-255K Annually
Senior level
155K-255K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Join the Policy team to work on sensor configuration for CrowdStrike's product line. Engage in backend engineering, build cloud systems for cyber threat intelligence, and mentor developers. Improve product architecture and user experience while managing high-scale data and system challenges.
22 Hours Ago
Remote
Hybrid
MI, USA
130K-190K Annually
Senior level
130K-190K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The Regional Sales Manager will identify and close new business opportunities, manage existing relationships with key decision makers, and execute a Major Account strategy within the Southeast Michigan region. Responsibilities include leveraging relationships, managing sales processes, and collaborating with various internal teams to meet revenue targets.
Top Skills: CybersecuritySaaSSalesSalesforceSenior Executive Relationship BuildingTechnology
22 Hours Ago
Remote
Hybrid
USA
320K-370K Annually
Senior level
320K-370K Annually
Senior level
Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
The VP of Brand and Experiences at CrowdStrike will lead efforts in brand identity, storytelling, and experiential marketing. Responsibilities include defining brand strategy, overseeing media planning, managing global events, and mentoring a team. The role requires strategic thinking and a passion for innovation in brand marketing.
Top Skills: Brand MarketingCommunicationsExperiential MarketingMedia Strategy

What you need to know about the Seattle Tech Scene

Home to tech titans like Microsoft and Amazon, Seattle punches far above its weight in innovation. But its surrounding mountains, sprinkled with world-famous hiking trails and climbing routes, make the city a destination for outdoorsy types as well. Established as a logging town before shifting to shipbuilding and logistics, the Emerald City is now known for its contributions to aerospace, software, biotech and cloud computing. And its status as a thriving tech ecosystem is attracting out-of-town companies looking to establish new tech and engineering hubs.

Key Facts About Seattle Tech

  • Number of Tech Workers: 287,000; 13% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Amazon, Microsoft, Meta, Google
  • Key Industries: Artificial intelligence, cloud computing, software, biotechnology, game development
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Madrona, Fuse, Tola, Maveron
  • Research Centers and Universities: University of Washington, Seattle University, Seattle Pacific University, Allen Institute for Brain Science, Bill & Melinda Gates Foundation, Seattle Children’s Research Institute
By clicking Apply you agree to share your profile information with the hiring company.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account