520,299open jobs
17,886companies
71,691added this week
Browse all
Salary
$125k – $253k per year (Estimated)
Location
Remote (United States)
Seniority
Senior · 5+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
Clario is a healthcare technology company headquartered in Philadelphia, Pennsylvania, with a history dating back to 1972. The organization provides clinical trial endpoint technology and services, including electronic clinical outcome assessments, medical imaging, cardiac safety monitoring, and respiratory solutions. It operates on a global scale, supporting pharmaceutical and biotechnology firms through all phases of clinical research to generate high-quality evidence for regulatory submissions.

The Senior Security GRC Specialist is a high-impact role focused on strengthening and maintaining information security governance, risk, and compliance across the organization. This position partners closely with QA, IT, Information Security, Legal, Product, and other internal stakeholders, as well as external clients, vendors, auditors, and assessment partners.

The role will help drive security and compliance initiatives, support risk management activities, coordinate audits and certifications, manage third-party security risk, and continuously improve security governance, policies, processes, and controls.

What You’ll Be Doing

  • Security Governance, Risk & Compliance: Support and mature the organization’s Security GRC program, helping ensure IT, Product, and Information Security controls align with applicable policies, standards, regulations, and best practices.

  • Audit & Assessment Coordination: Coordinate and support external client audits, certifications, and assessments, including SOC 1, SOC 2, ISO 27001/2700x, client audits, and other security assessments or accreditations.

  • Compliance Monitoring: Evaluate the compliance status of IT, Product, and Information Security controls. Partner with control owners to identify gaps, develop remediation plans, track progress, and drive issues through resolution.

  • Risk Management: Support the organization’s risk management framework, including assessing inherent and residual risk, evaluating risk tolerance, facilitating risk discussions, and supporting periodic internal and third-party risk assessments.

  • Third-Party Risk Management: Execute established processes to assess, monitor, and manage information security risks associated with third parties, vendors, and other external partners.

  • Client Assurance & Regulatory Support: Serve as a key point of contact for QA, Regulatory, Customer, and other stakeholder interactions related to security and compliance. Support responses to audits, client questionnaires, RFPs, findings, and other assurance requests.

  • Policy & Standards Governance: Support the development, maintenance, and governance of the Information Security policies, standards, procedures, and related documentation.

  • Process Improvement: Identify opportunities to improve and mature IT and Information Security compliance processes. Use industry standards, emerging risks, regulations, and stakeholder feedback to recommend practical improvements.

  • Security Frameworks: Apply standards and best practices from frameworks such as ISO/IEC 27001, NIST, COBIT, and ITIL to support the organization’s security and compliance objectives.

  • Reporting & Metrics: Develop compliance and risk reports, metrics, and management insights to communicate the status of key risks, controls, remediation activities, and compliance initiatives to stakeholders at various levels.

  • Security Awareness: Support security education and awareness initiatives by helping communicate new policies, procedures, and security practices to IT teams and the broader organization.

  • Cross-Functional Collaboration: Build strong relationships across technical and non-technical teams and influence stakeholders to support security, compliance, risk management, and governance objectives.

  • Program & Process Support: Contribute to the selection, implementation, improvement, and management of GRC tools, platforms, processes, and operational procedures.

  • Prioritization & Delivery: Effectively prioritize multiple initiatives and deliverables while maintaining a high level of quality and attention to detail.

  • Perform other related duties and projects as assigned.

What We Look For

  • Bachelor’s degree in Information Systems, Information Technology, Cybersecurity, or a related field. An Associate’s degree may be considered based on relevant experience and certifications.

  • 5+ years of experience in Information Technology, Information Security, Governance, Risk, and/or Compliance.

  • Strong experience building, maintaining, or maturing Security Governance, Risk, and Compliance programs.

  • Solid understanding of information security risk management and compliance methodologies.

  • Experience facilitating and leading risk discussions using both qualitative and quantitative information.

  • Knowledge of common information security and IT frameworks, including ISO/IEC 27001, NIST Cybersecurity Framework, NIST 800-53, COBIT, and ITIL.

  • Experience supporting or coordinating security audits, assessments, certifications, and client assurance activities.

  • Experience with third-party/vendor security risk management.

  • Understanding of solution lifecycle management and associated information security and compliance requirements.

  • Experience developing and implementing Standard Operating Procedures (SOPs), policies, and processes.

  • Strong ability to influence and collaborate with stakeholders at different levels, including situations where formal authority is not present.

  • Demonstrated ability to establish and leverage internal and external cross-functional relationships.

  • Strong business acumen and the ability to understand business needs and translate them into practical security and compliance solutions.

  • Excellent written and verbal communication skills, with the ability to communicate security risks, findings, recommendations, and requirements to both technical and non-technical audiences.

  • Experience working with globally distributed teams and stakeholders.

  • Strong learning agility and ability to adapt to evolving security risks, regulations, technologies, and business requirements.

  • Relevant security certifications are preferred, such as CISSP, CRISC, CISM, CISA, or FAIR.

EEO Statement

Clario is an equal opportunity employer. Clario evaluates qualified applicants without regard to race, color, religion, gender, national origin, age, sexual orientation, gender identity or expression, protected veteran status, disability/handicap status, or any other legally protected characteristic.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
520,299 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
United States
$130k – $175k per year • Remote • 4+ years exp • Bachelor's Degree
AI/ML
ISO 42001
DevOps
GCP
Cybersecurity
ISO 27001
NIST 800-53
Apply
$71k – $167k per year (Estimated) • In office • 4+ years exp • London
AI/ML
AI Agents
Cybersecurity
ISO 27001
GDPR
Apply
$34k – $89k per year (Estimated) • In office • Full-Time • Brazil
Cybersecurity
ISO 27001
PCI DSS
Apply
$136k – $170k per year • In office • Full-Time • 10+ years exp • Bachelor's Degree • White Plains
Cybersecurity
ISO 27001
HIPAA
Least Privilege
Apply
$170k – $210k per year • Remote • Full-Time • 4+ years exp
AI/ML
Model Context Protocol
AI Agents
Cybersecurity
SOC 2
GDPR
FedRAMP
Management
Stripe
Apply
Financial Analyst 4 hours ago
$62k – $179k per year (Estimated) • Remote • Full-Time • Bachelor's Degree • Costa Rica
Analytics
Microsoft Excel
Apply
$136k – $264k per year (Estimated) • Remote/Hybrid • Full-Time • 10+ years exp • Bachelor's Degree • United States
Apply
$40k – $73k per year (Estimated) • Remote/Hybrid • Full-Time • 1+ year exp • High School Diploma • Philadelphia
Apply
$24k – $61k per year (Estimated) • Remote/Hybrid • Full-Time • 3+ years exp • Bachelor's Degree • Budapest
Analytics
Microsoft Excel
Apply
$31k – $74k per year (Estimated) • In office • Full-Time • 5+ years exp • Bachelor's Degree • Bengaluru
Python
JavaScript
SQL
Python
Flask
Django
Databases
PostgreSQL
Snowflake
MS SQL
AI/ML
Copilot
LangChain
Airflow
AWS Bedrock
NumPy
LLM
RAG
Frontend
AG Grid
DevOps
CI/CD
Git
AWS
AWS Lambda
Amazon EC2
Amazon S3
Analytics
Power BI
Plotly
ETL/ELT
Management
Confluence
Jira
Microsoft Teams
Apply
$109k – $181k per year • Remote/Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • United States
Apply
Automation Technician 6 hours ago
$36k – $67k per year (Estimated) • In office • Full-Time • 2+ years exp • Associate's Degree • United States
Apply
$91k – $152k per year • Remote • Full-Time • 10+ years exp • High School Diploma • United States
Analytics
Power BI
Apply
$91k – $152k per year • Remote • Full-Time • 10+ years exp • High School Diploma • United States
Analytics
Power BI
Apply
$91k – $152k per year • Remote • Full-Time • 10+ years exp • High School Diploma • United States
Analytics
Power BI
Apply
See all jobs
This is one of many
520,299 more open roles from verified company boards, updated every day.