Jobs
Benefits & Perks
•Equity
•Equity
Required Skills
Security Risk Management
Governance Risk and Compliance
Leadership
Regulatory Knowledge
Strategic Thinking
Cross-functional Collaboration
Communication
Meta is seeking a highly skilled Security GRC Program Lead to join our Risk Organization's Governance, Risk, and Compliance (GRC) pillar. This role is pivotal in providing second-line oversight of Meta's security risk management and compliance across multiple business units, regulatory entities, and governance forums. As a senior individual contributor, you will drive strategic risk initiatives, proactively identify and solve complex, ambiguous problems, and set a compelling vision for the team and organization. You will be expected to influence outcomes at the highest levels, build strong networks, and champion innovation and best practices in risk management.
This role operates within and in support of Meta's unified Security Governance, Risk, and Compliance program. You will align your work with Meta's canonical security framework and three strategic principles: protecting against top security risks, maturing core security capabilities at scale, and enabling the company to move fast securely.
This position offers the opportunity to shape Meta's security risk posture, collaborate with leaders across Security, Product, Engineering, and Legal, and deliver meaningful impact on Meta's ability to meet global regulatory requirements and business objectives. You will operate with significant autonomy, regularly leading cross-functional initiatives and driving company-wide impact through thought leadership and strategic execution.
Director, Security GRC Program Lead Responsibilities:
- Lead and deliver on deeply complex, high-impact projects that shape Meta's risk profile and business trajectory.
- Proactively identify long-term, critical, and ambiguous problems, setting a clear vision and strategy for risk management in alignment with company goals.
- Partner with Central Security teams to analyze, streamline, and consolidate issues and risks from all sources (1LoD, 2LoD, 3LoD, external) into a clear, prioritized list for first-line-of-defense consumption and actioning.
- Integrate security risk management with Meta's Security Prioritization Framework (SPF) and contribute to capability maturity assessments to drive risk-based prioritization across the organization.
- Define and maintain clear interfaces and points of contact with the Security organization and other key partners, ensuring efficient governance and communication.
- Prepare regular updates and compliance documents to ensure Meta meets board and regulatory obligations, adapting processes and strategies to evolving regulatory and business environments.
- Drive cross-org execution, collaborating with Risk, Security, Legal, Product, and Engineering functions to deliver results and maximize impact.
- Champion organizational efforts to build and sustain diversity, culture, recruitment, onboarding, mentoring, and development programs, serving as a role model and mentor for others.
- Integrate learnings and best practices from/to sister 2LoD organizations (e.g., Integrity GRC, Privacy GRC), and partner with Product & Engineering teams on necessary second-line-of-defense tooling within the unified GRC framework.
Minimum Qualifications:
- Significant experience as a leader and contributor in security risk management and compliance, including providing second-line oversight
- Strong track record of operating effectively and influencing outcomes with Engineering, Product, GRC, and Legal partners
- Extensive experience with Governance, Risk, and Compliance (GRC) and Legal functions
- Deep expertise in security, with the ability to holistically understand relevant issues, partners, and products, and go deep on technical details
- Proven ability to identify critical issues, balance competing priorities, translate technical and regulatory concepts for diverse audiences, and personally drive initiatives to completion
- In-depth knowledge of complex global regulatory requirements (e.g., GDPR, SEC, PCI-DSS, NYDFS)
- Demonstrated ability to build strong formal and informal networks with key influencers and decision makers inside and outside the company
- Experience working in integrated privacy-security environments or familiarity with unified GRC frameworks across multiple risk domains
Preferred Qualifications:
- Advanced degree in a relevant field
- Experience integrating best practices from other GRC domains (Integrity, Privacy)
- Recognized as a thought leader in risk management, with experience influencing external stakeholders and policies
- Experience working in a fast-paced tech environment
- Proven ability to operate hands-on across orgs and functions
- Understanding of Meta's canonical security framework and experience with risk-based prioritization methodologies such as Security Prioritization Framework (SPF)
About Meta:
Meta builds technologies that help people connect, find communities, and grow businesses. When Facebook launched in 2004, it changed the way people connect. Apps like Messenger, Instagram and Whats App further empowered billions around the world. Now, Meta is moving beyond 2D screens toward immersive experiences like augmented and virtual reality to help build the next evolution in social technology. People who choose to build their careers by building with us at Meta help shape a future that will take us beyond what digital connection makes possible today-beyond the constraints of screens, the limits of distance, and even the rules of physics.
Individual compensation is determined by skills, qualifications, experience, and location. Compensation details listed in this posting reflect the base hourly rate, monthly rate, or annual salary only, and do not include bonus, equity or sales incentives, if applicable. In addition to base compensation, Meta offers benefits. Learn more about benefits at Meta.
Total Views
0
Apply Clicks
0
Mock Applicants
0
Scraps
0
Similar Jobs

Junior Manager, Fan Engagement
Warner Music · 2 Locations

Transitioning Military Service Member, Area Manager
Chewy · Wilkes-Barre, Pennsylvania, United States of America

Manager, Executive Assistant
MongoDB · United States

Director - M&A Integration
Twilio · Remote - US

VIP Host Team Manager
FanDuel · Toronto
About Meta

Meta
PublicA social technology company that enables people to connect, find communities, and grow businesses.
10,001+
Employees
Menlo Park
Headquarters
$800B
Valuation
Reviews
3.4
26 reviews
Work Life Balance
2.3
Compensation
4.2
Culture
2.8
Career
3.1
Management
2.1
45%
Recommend to a Friend
Pros
Excellent compensation and benefits
Smart and talented colleagues
Fast-paced and challenging work environment
Cons
Frequent layoffs and job insecurity
Poor leadership and management accountability
High stress and competitive work environment
Salary Ranges
40,175 data points
Mid/L4
Mid/L4 · Technical Program Manager
915 reports
$326,766
total / year
Base
$188,428
Stock
$105,343
Bonus
$32,995
$220,456
$506,368
Interview Experience
6 interviews
Difficulty
4.2
/ 5
Duration
21-35 weeks
Offer Rate
17%
Experience
Positive 17%
Neutral 17%
Negative 66%
Interview Process
1
Application Review
2
Recruiter Screen
3
Online Assessment
4
Technical Phone Screen
5
Coding Interviews
6
System Design Interview
7
Behavioral Interview
8
Final Loop/Hiring Manager Round
Common Questions
Coding/Algorithm
System Design
Behavioral/STAR
Technical Knowledge
Live Coding
News & Buzz
Tech Companies Are Still Spending Heavily on AI. Investors Want to See More Than Big Numbers. - Investopedia
Source: Investopedia
News
·
5w ago
Zuckerberg Says AI Is Letting One Employee Do the Work of Entire Teams - Business Insider
Source: Business Insider
News
·
5w ago
After losing $20 billion in 2025 alone in the business that Mark Zuckerberg changed company's name for, M - Times of India
Source: Times of India
News
·
5w ago
Meta and Microsoft both blew their data center budgets last quarter. Wall Street is only mad at one of them. - Business Insider
Source: Business Insider
News
·
5w ago