The board
- Hours
- Full-time
- Where
- New York, NY
- Posted
- Jul 20
As a GRC Program Manager, you are the engine behind Palantir's Governance, Risk, and Compliance programs. You partner with compliance engineers, security teams, and developers to design and scale the processes that keep our Commercial, International, and US Government businesses operating at the highest regulatory standards. You track and stabilize projects, remove roadblocks, and anticipate stakeholder needs to free up our specialists to focus on the problems they are best equipped to solve.
What you'd do
- Design, document, and continuously improve compliance processes and frameworks to scale GRC operations across Commercial, IG, and USG environments.
- Serve as connective tissue across teams, translating regulatory requirements into actionable workflows and ensuring accountability at every stage of the compliance lifecycle.
- Coordinate across internal and external audit cycles (FedRAMP, SOC 2, ISO 27001, etc.), ensuring evidence collection, remediation tracking, and stakeholder communication stay on schedule.
- Keep broad and complete state of everything involving or related to your projects, including audit timelines, control implementation status, and continuous monitoring obligations.
- Pre-empt and resolve any issues that may steer projects off-course.
- Enhance cross-team collaboration across engineering, legal, and customer-facing teams to drive key GRC deliverables through the entire software development and compliance lifecycle.
- Synthesize concrete compliance goals from product and regulatory vision, mapping global strategy to granular team tasks and issues.
- This means triaging requests from the field to create maximum focus for the team, while escalating items that need immediate attention.
- Work with customer-facing engineering teams on adoption, roll out, and support of compliance-related product features and certifications.
- Demonstrated success managing compliance programs for an enterprise software company, startup or other company.
- Experience with multiple GRC frameworks and standards, such as SOC 2, ISO 27001, IRAP or ENS. Experience in USG-specific frameworks is particularly valuable: FedRAMP, NIST 800-53, DoD CC SRG, FISMA, or CMMC.
- Excellent judgment and composure in high-pressure situations, including during active audits or compliance incidents.
What they want
- This role requires that you work from the country listed on this job posting and that you are based within a commutable distance of your local Palantir office.
- Willingness and eligibility to obtain a U.S. security clearance preferred.
What you get
- Employees (and their eligible dependents) can enroll in medical, dental, and vision insurance as well as voluntary life insurance
- Employees are automatically covered by Palantir’s basic life, AD&D and disability insurance
- Commuter benefits
- Take what you need paid time off, not accrual based
- 2 weeks paid time off built into the end of each year (subject to team and business needs)
- 10 paid holidays throughout the calendar year
- Supportive leave of absence program including time off for military service and medical events
- Paid leave for new parents and subsidized back-up care for all parents
- Fertility and family building benefits including but not limited to adoption, surrogacy, and preservation
- Stipend to help with expenses that come with a new child