Skip to main content
TryApplyNow logo
Velera logo

GRC Program Manager - Remote

Velera
Remote-USARemote$110k – $143kPosted 11 days ago

Role Overview

Velera is hiring a GRC Program Manager - Remote. This is a contract remote role, with the team based in Remote-USA. Part of Velera's Risk hiring, posted last week. The posted range is $110k to $143k; the employer indicates they sponsor work visas. Full responsibilities, required qualifications, and the apply link are listed in the description below.

Salary Context

This role offers $110k-$143k. The median for Manager-level Risk roles is $138k-$180k (based on 105 listings). 20% below median.

Resume Keywords to Include

Make sure these keywords appear in your resume to improve ATS scoring

SaaSAuditingORRisk ManagementCompensationBenefitsKPIsCompliance

Job description

Join the People Helping People

Velera is the nation’s premier payments credit union service organization (CUSO) and an integrated fintech solutions provider. The company serves more than 4,000 financial institutions throughout North America, operating with velocity to help our clients keep pace with the rapid momentum of change and fuel growth in the new era of financial services. Our purpose: We accelerate partners’ success through innovative financial technology solutions and inspired service.

The Opportunity:

The GRC (Governance, Risk, & Compliance) Program Manager plays a critical role in ensuring the company adheres to applicable cyber laws, regulations and information security policies and standards. The individual will design, implement, and govern cyber risk management and technology compliance activities, collectively as a program.The individual will be responsible for the implementation and optimization of a governance, risk and compliance tool with execution of one or more cyber risk management programs, to include user attestations, third-party risk management, cyber contract administration, IT control testing, and audit coordination. Program functions and duties may include: planning, scheduling, and oversight of internal/external system user attestations across the enterprise; assessing and consulting on third-party cyber risks; review and negotiation of cyber contracts; coordination of IT components of onsite and virtual audits/assessments (e.g., SOC1/2, PCI DSS/NIST CSF, NIST AI RMF), NCUA regulatory examinations and client due diligence reviews. The individual must scope and execute program(s) to ensure the organization meets regulatory requirements and industry standards to mitigate cyber risks and achieve company certification and reporting objectives (e.g., PCI DSS, NIST, SOC1/2).This is an individual contributor role reporting to the VP of Technology Compliance and engaging with internal and external stakeholders to mitigate risk, integrate security measures into business operations, and foster a security-conscious culture.

A Day in the Life:

  • Define program goals, measurable objectives and governance framework
  • Design, scope, and execute program(s) to achieve stated objectives in alignment with business strategies and priorities
  • Perform program functions and duties that may include: planning, scheduling, and oversight of   internal/external system user attestations across the enterprise; assessing and consulting on third-party cyber risks; review and negotiation of cyber contracts; coordination of IT components of onsite and virtual audits/assessments (e.g., SOC1/2, PCI DSS/NIST CSF), NCUA regulatory examinations and client due diligence reviews.
  • Implement and execute assigned program(s) through the use of a GRC tool and in accordance with company reporting and certification deadlines (e.g., PCI DSS, NIST CSF, SOC1/2)
  • Gain support and buy-in by educating employees about program objectives, controls, and their responsibilities in mitigating cyber risks
  • Lead and manage cyber risk management and technology compliance initiatives
  • Interpret and translate cybersecurity and compliance requirements into program design
  • Proactively identify and monitor emerging cybersecurity threats and regulatory landscape; adapt program design, scope, and execution to mitigate risks and comply with new regulation
  • Collaborate and partner with cross-functional business and technology stakeholders at all levels to ensure program objectives are met; work with internal/external auditors, vendors, and clients as required
  • Monitor and assess program governance and effectiveness (e.g., QA reviews, control testing)
  • Define and report on KPIs
  • Identify and implement process improvements to drive program efficiencies, minimize impact to business operations, and enhance user experiences; incorporate Inspired Service elements into program design where possible
  • Perform all other duties as assigned.

Qualifications:

  • Eight (8) years of relevant experience in cyber GRC, technology controls consulting, PCI/NIST CSF assessments, IT internal/external auditing, or cyber risk management.
  • At least five (5) years in a GRC program manager or equivalent role identifying, assessing, and mitigating information security, technology compliance, and cyber risks.
  • Implementation of GRC tool (Optro, Vanta, Drata, OneTrust) and control automation required
  • Experience in Financial Services, Fintech, SaaS environments highly preferred.

  

About Velera

At Velera, inclusion isn’t an initiative – it’s how we work. Guided by a people‑helping‑people philosophy, we cultivate a culture where every employee feels valued, respected and empowered to do their best work. We’re committed to building a diverse workforce and fostering meaningful connection across our teams. Through a remote‑first, flexible environment, we prioritize psychological safety, wellbeing and belonging so individuals and teams can collaborate to thrive. Together, we’re shaping a new era of secure, innovative solutions for the clients and communities we serve. Learn more about what it’s like to work at Velera.

Pay Equity

$110,100.00 - $143,100.00

Actual Pay will be adjusted based on experience and other job-related factors permitted by law.

Great Work/Life Benefits!

  • Competitive wages

  • Medical with telemedicine

  • Dental and Vision

  • Basic and Optional Life Insurance

  • Paid Time Off (PTO)

  • Maternity, Parental, Family Care

  • Community Volunteer Time Off

  • 12 Paid Holidays

  • Company Paid Disability Insurance

  • 401k (with employer match)

  • Health Savings Accounts (HSA) with company provided contributions

  • Flexible Spending Accounts (FSA)

  • Supplemental Insurance

  • Mental Health and Well-being: Employee Assistance Program (EAP)

  • Tuition Reimbursement

  • Wellness program

  • Benefits are subject to generally applicable eligibility, waiting period, contribution, and other requirements and conditions

Velera is an Equal Opportunity Employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation, marital status, veteran status, disability, genetic information, citizenship status, or membership in any other group protected by federal, state or local law.

Velera is an Equal Opportunity Employer that complies with the laws and regulations set forth in the following "EEO is the Law" Poster. Velera will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the legal duty to furnish information.

Velera is an E-Verify Employer. Review the E-Verify Poster here.  For information regarding your Right To Work, please click here.

This role is currently not eligible for sponsorship.

As an ongoing commitment to reasonably accommodate individuals with disabilities please contact a recruiter at recruiters@velera.com for assistance.

About Velera

Velera logo

Velera

RiskSponsors visaHires remote

39 other open roles at Velera on TryApplyNow.

Frequently Asked Questions

How do I apply for the GRC Program Manager - Remote position at Velera?

Use the Apply button above to submit your application directly to Velera. Most applications take less than 5 minutes if your resume and contact details are ready, and you'll be routed to the employer's official application system to finish.

Is the GRC Program Manager - Remote role at Velera remote?

Yes. This is a remote role. The team is based in Remote-USA, but the position itself does not require relocating to that office.

How much does the GRC Program Manager - Remote role at Velera pay?

Velera has posted a compensation range of $110k to $143k for this position. Final offers typically vary based on candidate experience, location, and internal salary bands.

When was the GRC Program Manager - Remote role at Velera posted?

This role was posted on July 10, 2026 (11 days ago). It's still listed as actively hiring; we re-confirm openings against the source system multiple times per day and remove closed roles.

Does Velera sponsor work visas for this role?

Yes. Velera has indicated that this position is open to candidates requiring work visa sponsorship. Confirm specifics (H-1B, OPT, country eligibility, etc.) during the recruiter screen.

AI-powered job search

Get every job scored to your resume

Upload your resume and get jobs ranked, your resume tailored, and employee contacts found automatically.

Get started free

No credit card to start