Senior Risk Program Manager

at CircleCI
  • $143k-$178k
  • Remote - United States

Remote

Project Management

Senior

Job description

Senior Risk Program Manager

Drive technical risk excellence across CircleCI as a key member of our Governance, Risk, and Compliance (GRC) team. You’ll collaborate with teams throughout the organization to transform diverse risk initiatives into cohesive, sustainable programs that support our business growth, compliance requirements, and security objectives. By combining your risk expertise with program management skills, you’ll help shape the future of GRC strategy while solving complex challenges critical to our continued success.

About the Team

Our GRC team serves as the second line of defense, working closely with Security, IT, Engineering, Finance, and other departments to ensure comprehensive risk management across CircleCI. We create and maintain processes that identify, assess, and mitigate risk, all while maintaining compliance with industry standards and regulations. The team plays a vital role in supporting CircleCI’s commitment to delivering a secure, reliable platform for our customers.

What You’ll Do

  • Design and maintain a comprehensive risk register spanning company operations
  • Develop and oversee a control portfolio in partnership with Security, IT, and Finance teams to contextualize and support risk treatment
  • Identify, track, prioritize, and work with owning teams to mitigate audit findings across multiple disciplines
  • Enhance vendor risk management and prevent shadow IT
  • Collaborate across teams to address documentation gaps, report findings, and escalate issues appropriately
  • Enhance GRC tooling capabilities through improvements to existing systems and evaluation of new solutions
  • Participate in daily GRC triage and support activities
  • Provide support to maintain our SOC 2 and FedRAMP accreditations, in addition to SOX ITGC and customer-driven reviews
  • Stay current with US and international risk management practices to scale CircleCI’s GRC efforts

Who You Are

  • A diligent, analytical program manager with 8+ years of experience in Security/GRC, managing technical risk across multiple audit areas in a cloud/SaaS environment
  • Experienced in implementing and maintaining comprehensive risk registers and control portfolios
  • Skilled at assessing and mitigating findings across diverse audits with sound judgment
  • Knowledgeable about FedRAMP, NIST 800-53, NIST 800-37, SOX, and other relevant industry standards
  • An effective communicator, able to convey messages clearly to diverse audiences including compliance professionals, engineers, and developers
  • Detail-oriented with a focus on documenting methods, workflows, and processes to drive efficiency
  • Someone who understands GRC’s role within broader security and risk management contexts
  • Familiar with project management and GRC software tools
  • Industry certifications (CRISC, CISM, PMP, CISSP, or similar) are beneficial

About CircleCI

CircleCI is the world’s largest shared continuous integration/continuous delivery (CI/CD) platform, and the hub where code moves from idea to delivery. As one of the most-used DevOps tools - processing more than 1 million builds a day - CircleCI has unique access to data on how engineering teams work, and how their code runs. Companies like Spotify, Coinbase, and BuzzFeed use us to improve engineering team productivity, release better products, and get to market faster.

Founded in 2011 and headquartered in downtown San Francisco with a global, remote workforce, CircleCI is venture-backed by Base10, Greenspring Associates, Eleven Prime, IVP, Sapphire Ventures, Top Tier Capital Partners, Baseline Ventures, Threshold Ventures, Scale Venture Partners, Owl Rock Capital, Next Equity Partners, Heavybit and Harrison Metal Capital.

CircleCI is an Equal Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state, and local law.

United States Base Pay Range

$143,000—$178,000 USD

We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.

About CircleCI

CircleCI is the world’s largest continuous integration/continuous delivery (CI/CD) platform, and the hub where code moves from idea to delivery. As one of the most-used DevOps tools - processing more than 3 million jobs a day - CircleCI has unique access to data on how the most effective engineering teams work, and the tools to help software companies successfully leverage the power of AI into their commercial applications. Companies like Hinge, HuggingFace, and Samsung use us to improve engineering team productivity, release better products, and get to market faster.

Founded in 2011 and headquartered in downtown San Francisco with a global, remote workforce, CircleCI is venture-backed by Base10, Greenspring Associates, Eleven Prime, IVP, Sapphire Ventures, Top Tier Capital Partners, Baseline Ventures, Threshold

Ventures, Scale Venture Partners, Owl Rock Capital, Next Equity Partners, Heavybit, and Harrison Metal Capital.

CircleCI is an Equal Opportunity and Affirmative Action employer. We do not discriminate based upon race, religion, color, national origin, sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state and local law.

Share this job:
Please let CircleCI know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply now