Smarsh is seeking a Governance, Risk & Compliance (GRC) Lead to embed security as a business enabler. This role is crucial for integrating, scaling, and proactively managing security governance, risk, and compliance efforts. The GRC Lead will support the Senior Manager, GRC, and oversee key programs including ISMS, controls assurance, risk management, third-party oversight, and regulatory compliance. Responsibilities include maintaining the ISO 27001 ISMS, managing control assurance and audits (SOC 2, ISO 27001, FedRAMP), driving risk assessment lifecycles, enhancing risk methodologies, managing regulatory monitoring (DORA, SEC, UK AI Act), coordinating client security assessments, leading third-party security reviews, maintaining the InfoSec policy lifecycle, and developing security governance metrics. The role also involves delivering security awareness campaigns and refining GRC workflows and tooling. The ideal candidate will collaborate across InfoSec, Legal, Product, Engineering, and Customer teams in a dynamic, global environment.