We’re looking for a Director of Governance, Risk & Compliance (GRC) to lead our GRC strategy and execution across Inkit. This person will own our Vanta compliance program, define and operationalize the frameworks that keep us compliant (both commercially and with government security standards), and partner with internal and external stakeholders to embed best‑in‑class risk and compliance practices. You’ll be a strategic driver and tactical executor — shaping where we’re going next and ensuring we stay audit‑ready every day.
What You’ll Do
Define and maintain a unified GRC strategy aligned with Inkit’s business goals and growth trajectory.
Evaluate, select, and operationalize compliance frameworks and controls for both commercial and government requirements (e.g., SOC 2, ISO, FedRAMP, NIST, DoD IL standards).
Own and operate our Vanta compliance platform — including controls implementation, automated evidence collection, gap closure, and audit readiness.
Continuously improve our GRC tooling and evidence pipeline to support internal needs and external assurance requests.
Lead enterprise risk assessments and mitigation planning.
Establish, document, and maintain governance policies, risk registers, control matrices, and associated procedures.
Partner with engineering, product, legal, security operations, and business teams to ensure consistent control execution and risk visibility.
Serve as the primary GRC liaison for internal executives and external auditors, assessors, and partners.
Translate complex compliance topics into clear insights for technical and non‑technical audiences alike.
Deliver regular risk and compliance reporting to leadership and key stakeholders.
Prepare for internal and external audits, readiness reviews, and certification assessments.
Coordinate evidence requests, remediation activities, and audit responses.
What We’re Looking For
Required
Proven experience leading GRC functions in a B2B SaaS or secure software environment.
Hands‑on experience with compliance platforms (e.g., Vanta) and a strong understanding of relevant frameworks.
Strong communicator who can collaborate effectively across teams and with external parties.
Demonstrated ability to build repeatable risk and compliance processes at scale.
Bonus
Experience with government compliance frameworks (FedRAMP, NIST 800‑53, DoD IL standards).
Prior experience in regulated environments (government contracts, defense, financial services).
Why This Role Matters
As Inkit continues to grow its footprint with enterprise and government customers, we need a GRC leader who can both think strategically and execute operationally. You’ll define how we build trust with customers, stay aligned with evolving regulatory expectations, and make confident compliance decisions — all while supporting our teams with the tools and processes they need to succeed.
Job Location
Puerto Rico
Numbers & Facts
Location
San Juan
Skills
Business Growthunmatched
Business-to-Business (B2B)unmatched
Communication Skillsunmatched
Continuous Improvementunmatched
External Auditunmatched
Financial Servicesunmatched
Gap Closureunmatched
Governmentunmatched
Government Contractsunmatched
Government Requirementsunmatched
Government Standardsunmatched
ISO (International Organization for Standardization)unmatched
Internal Auditunmatched
Leadershipunmatched
Legalunmatched
Machine Toolunmatched
Military/DoD Standardsunmatched
Regulationsunmatched
Riskunmatched
Risk Analysisunmatched
Risk Control Matrixunmatched
Risk Managementunmatched
Software as a Service (SaaS)unmatched
Team Buildingunmatched
Truck Driverunmatched
U.S. National Institute of Standards and Technology (NIST)unmatched
🎯
Be found by employers
5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.
Level up your application
Professional resume templates
Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.