GRC Program ManagerActive$90K–$160K

The opportunity

A World-Changing Company Palantir builds the world’s leading software for data-driven decisions and operations. By bringing the right data to the people who need it, our platforms empower our partners to develop lifesaving drugs, forecast supply chain disruptions, locate missing children, and more.

What you'll do

  • Design, document, and continuously improve compliance processes and: frameworks to scale GRC operations across Commercial, IG, and USG environments.

  • Serve as connective tissue across teams, translating regulatory requirements: into actionable workflows and ensuring accountability at every stage of the compliance lifecycle.

  • Coordinate across internal and external audit cycles (FedRAMP, SOC 2, ISO: 27001, etc.), ensuring evidence collection, remediation tracking, and stakeholder communication stay on schedule.

  • Keep broad and complete state of everything involving or related to your: projects, including audit timelines, control implementation status, and continuous monitoring obligations. Pre-empt and resolve any issues that may steer projects off-course.

  • Enhance cross-team collaboration across engineering, legal, and: customer-facing teams to drive key GRC deliverables through the entire software development and compliance lifecycle.

  • Synthesize concrete compliance goals from product and regulatory vision,: mapping global strategy to granular team tasks and issues. This means triaging requests from the field to create maximum focus for the team, while escalating items that need immediate attention.

What they're looking for

  • Work with customer-facing engineering teams on adoption, roll out, and: support of compliance-related product features and certifications.
  • Demonstrated success managing compliance programs for an enterprise software: company, startup or other company.
  • Experience with multiple GRC frameworks and standards, such as SOC 2, ISO: 27001, IRAP or ENS. Experience in USG-specific frameworks is particularly valuable: FedRAMP, NIST 800-53, DoD CC SRG, FISMA, or CMMC.
  • Excellent judgment and composure in high-pressure situations, including: during active audits or compliance incidents.