Vanta

GTM GRC SME, Vanta for Government

United States

$163,000 – $192,000Compensation
Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Cybersecurity, Information Security, ConsultingIndustries

Job Title: Subject Matter Expert, GRC (V4G)

Salary: $163K - $192K Location Type: Remote Employment Type: Full-Time


Position Overview

At Vanta, our mission is to secure the internet and protect consumer data. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. Vanta is growing quickly and we're continually moving upmarket, dealing with sophisticated customers with complex security and compliance environments and needs. Our Security team uses our own Security and Privacy GRC experience to meet customer demand to help grow our market share as the industry leader in compliance and security.

As a Subject Matter Expert, GRC (V4G) at Vanta, you will be a highly visible, customer-facing leader within Vanta’s Security team, responsible for representing Vanta’s Trust Management Platform to prospects and customers interested in public sector frameworks like FedRAMP and CMMC among others, as well as having a role in collaborating with and internal teams to help drive and implement new features in the product.

If this sounds like you, and you're excited to use your Security and GRC experience to help grow and sell our product, we'd love to hear from you.


Responsibilities

  • Use your expert knowledge of compliance frameworks like FedRAMP, CMMC and NIST to advise customers regarding questions about scoping, policy creation, detailed control requirements and security best practices and recommend implementations within Vanta related to these frameworks.
  • Partner with Vanta's Sales and Customer Success teams to represent Vanta’s Trust Management Platform to prospects and customers.
  • Engage with executives and sr. staff at prospect and customer organizations to establish relationships with customer's Security and Compliance points of contact.
  • Become an expert on the security features available for customers to deploy within Vanta, including best practices for implementation.
  • Collaborate with Vanta’s GTM team to improve processes to enable faster and more seamless experiences for our customers.
  • Coordinate with cross-functional teams to provide customers with meaningful updates on features and programs.
  • Identify requirements that would enable additional customer use cases and drive implementation of customer requirements with relevant stakeholders.
  • Provide input and feedback on the development of security and GRC product features for Vanta’s customers.
  • Answer questions for internal stakeholders about security and compliance.

Requirements

  • Deep knowledge of compliance frameworks: FedRAMP, CMMC, NIST 800-53, NIST 800-171, NIST CSF 2.0.
  • Experience with authorization/certification processes: FedRAMP authorization and CMMC certification processes, and experience getting an organization ready for FedRAMP authorization.
  • Framework experience: Experience working with security and privacy frameworks, including SOC 2, ISO 27001, ISO 27701, HIPAA, US Data Privacy Laws, etc.
  • Customer engagement: Experience working and interfacing with C-level customer contacts.
  • Technical expertise: Ability to understand and explain security and GRC concepts.
  • Familiarity with: Cloud Infrastructure, Version Control Systems, Risk Management, Vulnerabilities, and their related security processes.
  • Collaboration skills: Experience in building productive relationships and driving collaboration with both technical and non-technical teams.
  • SaaS environment experience: Security compliance management experience within a SaaS environment is preferred, but not required.
  • Sales Engineering/Technical Support: Sales Engineering or Technical Support experience is preferred, but not required.
  • Certifications/Education: Security certifications (e.g., CISA, CISSP, CISM, CIPP/E) and/or formal education are preferred, but not required.

What you can expect as a Vantan

  • Industry-competitive compensation.
  • 100% covered medical, dental, and vision benefits with dependents coverage.
  • 16 weeks fully-paid parental Leave for all new parents.
  • Health & wellness and remote workplace stipends.
  • Family planning benefits through Carrot Fertility.
  • 401(k) matching.
  • Flexible work arrangements.

Company Information

At Vanta, our mission is to secure the internet and protect consumer data. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. Vanta is growing quickly and we're continually moving upmarket, dealing with sophisticated customers with complex security and compliance environments and needs. Our Security team uses our own Security and Privacy GRC experience to meet customer demand to help grow our market share as the industry leader in compliance and security.

Skills

FedRAMP
CMMC
NIST
Security
GRC
Policy Creation
Control Requirements
Security Best Practices
Customer Engagement
Compliance Frameworks

Vanta

Automates SOC 2 compliance for businesses

About Vanta

Vanta simplifies the process of obtaining and maintaining SOC 2 certification, which is essential for organizations that manage sensitive customer data. The company offers a software-as-a-service (SaaS) platform that automates numerous checks to ensure that security controls are effective and compliant with industry standards. This automation helps small to medium-sized enterprises (SMEs) and tech companies monitor risks and vulnerabilities continuously, significantly reducing the time and cost associated with achieving SOC 2 compliance. Vanta's subscription-based model provides clients with a more efficient and cost-effective way to maintain compliance compared to traditional methods. The goal of Vanta is to transform the compliance process, allowing organizations to focus on their core operations while enhancing their security posture.

San Francisco, CaliforniaHeadquarters
2018Year Founded
$343.4MTotal Funding
SERIES_CCompany Stage
Enterprise Software, CybersecurityIndustries
501-1,000Employees

Benefits

100% Benefits Coverage
Flexible & Remote Work
Paid Parental Leave
Unlimited PTO
Health & Wellness
401(k)

Risks

Emerging competitors like ComplyCube could challenge Vanta's market position.
Healthcare data breaches may increase demand for more robust security measures.
Reliance on partnerships like HITRUST poses risks if standards evolve significantly.

Differentiation

Vanta automates up to 90% of audit preparation, reducing compliance costs significantly.
The platform offers real-time insights, enhancing trust and streamlining security reviews.
Vanta's HITRUST e1 solution automates 80% of requirements, ensuring continuous compliance.

Upsides

Vanta secured $150M in Series C funding, boosting its growth potential.
Partnership with HITRUST enhances Vanta's credibility in the healthcare sector.
Rising demand for automated compliance solutions supports Vanta's market expansion.

Land your dream remote job 3x faster with AI