GRC (Governance Risk & Compliance) Manager
- Hiring from
- Malaysia, Pakistan
- Work type
- Remote
- Posted
- Sep 24, 2026
Axipro is seeking an experienced, high-impact GRC (Governance, Risk, and Compliance) Manager to lead the successful delivery of complex GRC projects for our international clientele across the globe. This role is a critical leadership position requiring strategic vision, deep subject matter expertise, and proven project ownership. The GRC Manager will own end-to-end client engagements, manage multi-framework compliance efforts, and serve as the primary strategic interface to senior client stakeholders.
Key Responsibilities:
Project Leadership & Delivery Ownership:
Lead, plan, and drive the successful execution of multiple, concurrent GRC certification projects (e.g., SOC 2, ISO 27001).
Own project scoping, resource allocation, and budget adherence, ensuring all projects are delivered on time, within scope, and meet Axipro's world-class quality standards.
Manage and mentor junior team members and GRC Assistants, delegating tasks and providing strategic direction.
Risk Management & Strategic Guidance:
Develop, implement, and maintain the client's GRC risk register and internal control framework tailored to required standards (e.g., ISO, NIST).
Proactively identify and assess high-impact project risks, developing comprehensive mitigation strategies and communicating their implications to clients and internal leadership.
Provide expert consultative advice to clients on compliance roadmap strategy and risk remediation.
Compliance Program Management & Auditing:
Design and manage the continuous compliance program within the Drata platform, ensuring readiness for audit cycles.
Serve as the primary lead during external audits, coordinating evidence presentation, managing auditor requests, and defending the client's control implementation.
Establish and enforce quality assurance protocols for all project documentation and deliverables.
Strategic Communication & Stakeholder Management:
Serve as the strategic liaison between Axipro's technical teams, external auditors, and client executive leadership (CTO, CISO).
Conduct formal, data-backed presentations to project Steering Committees and client senior management, clearly articulating risk status, compliance health, and progress toward certification.
Negotiate timelines, scope changes, and resource requirements directly with key international stakeholders.
Required Skills & Qualifications:
Education: Bachelor's degree in Information Technology, Cybersecurity, Project Management, or a related technical field is required.
Experience: Minimum of 5+ years of progressive experience working in Governance, Risk, and Compliance, with at least 2 years in a management or lead consulting role.
Deep Subject Matter Expertise: Proven success leading end-to-end certification projects for at least two major frameworks (e.g., SOC 2, ISO 27001, HIPAA).
Certifications (Highly Desirable): Professional certifications such as CISA, CISM, CISSP, or PMP are strongly preferred.
Technical Proficiency: Expert-level familiarity with GRC automation platforms (Drata experience is a significant advantage) and project management platforms (Notion, Microsoft Teams).
Leadership & Communication: Exceptional written and verbal communication, presentation, and negotiation skills, capable of leading executive-level client discussions.
Desired Attributes:
A proactive, results-oriented leader who takes full ownership of client outcomes.
Highly strategic and analytical, with the ability to translate complex regulations into clear, actionable business strategies.
Adaptable and resilient, with a strong ability to manage high-pressure situations and maintain focus on the client's ultimate success.
About
Axipro is a fast growing global compliance automation and cybersecurity consultancy operating across the globe. Recognized as a premier trusted advisor, we serve as the ultimate trusted advisor for organizations securing their digital frontiers guiding international companies through the complexities of 20+ regulatory frameworks including SOC 2, ISO 27001, ISO 42001, ISO 9001, HIPAA, and CMMC while providing elite Penetration Testing services to secure their tech stacks. We specialize in Quality Management Systems, Health Safety Environment Management Systems and Information Security Management Systems.
At Axipro, we leverage top-tier automation platforms combined with human expertise to deliver seamless, end-to-end compliance architectures. We are dynamic, results-driven, and scaling fast. If you are passionate about cybersecurity, tech-driven consulting, and making a tangible impact on a global scale, we want to hear from you.
Why Join Axipro:
Full-Time Remote: This is a fully remote position, offering you the flexibility to work from anywhere.
Work-Life Balance: We offer a flexible Friday schedule and a dedicated weekend with Saturday and Sunday off.
Generous Leave: 21 Days of Paid Time Off (PTO) per year.
End-of-Year Break: The entire team is OFF at the end of the year to recharge.
Wellness: Our team members have access to a wellness app to support their physical and mental well-being.
Global Exposure: The opportunity to work with diverse international clients in the EMEA, APAC and US, providing valuable experience in a global business environment.
Working Hours: We operate on a timezone from 10am UK time onwards to accommodate our international clientele, with some flexibility for team meetings.