OpenAI logo

OpenAI

GRC Program Manager, US Government Compliance

Hybrid

Part remote, part office, you need to live within commuting distance of a named location.

Hybrid · Washington, DC

Employer listed it 5 months ago · Added 4 days ago

Been open since 5 months ago. Long-running listings are sometimes left up after the role is filled.

Salary

$162,000–$310,000

Location

Hybrid · Washington, DC

Timezone

Not stated

Contract

Full-time

Experience

Mid

Category

Software

Published by the employer

Remote flexibility

Hybrid

This role is only partly remote, the employer expects time in the office around Washington, DC, Hybrid, so you need to live within commuting distance.

What the employer says

  • Source listing states candidate location: "Washington, DC, Hybrid"
  • Listing mentions "Hybrid"

What Nomaders makes of it

  • Not suitable if you plan to move between countries

The quotes above are the employer's own words; the reading is ours. Always check the original listing and employment terms before working from another country.

About the role

About the Team

Governance, Risk, and Compliance (GRC) is foundational to Security delivering mission outcomes at OpenAI. We’re excited about building creative solutions to ambiguous security requirements and delivering new technologies to mission critical customers. The GRC team provides security and engineering expertise to ensure our customers’ most critical and stringent requirements are met. We are technical in what we build but are operational in how we do our work, and are committed to obtaining, expanding, and maintaining Authorizations to Operate (ATOs) for critical systems while fostering a collaborative and execution-driven culture.

About the Role

Our technologies support some of the most important and impactful work in the world, including our strategic and high-impact customers in the public sector. As a GRC Program Manager, you’ll play a pivotal role in achieving US government (USG) ATOs and compliance frameworks, including but not limited to FedRAMP and Department of War (DoW),for OpenAI products and support agency-specific ATOs for systems deployed in highly regulated and secure environments. You’ll work closely with engineers, internal stakeholders, and external assessors to design, document, and implement security controls that meet stringent compliance requirements. Your creativity and execution-focused approach will be critical in navigating complex challenges while maintaining the trust of our stakeholders.

We’re looking for people who bring:

Proven experience in obtaining and maintaining a FedRAMP ATO and agency specific ATOs in highly restricted environments, within government or regulated sectors.

A deep understanding of USG security frameworks and policies (e.g., NIST, RMF, FedRAMP).

Ability to communicate technical concepts to diverse audiences, including engineers and non-technical stakeholders.

Exceptional technical program management skills, with the ability to multitask and deliver large complex programs under pressure.

This role is based in Washington, DC. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees.

In this role, you will:

Drive the ATO process for FedRAMP and across multiple government clients in restricted environments with minimal oversight.

Collaborate with engineering teams to interpret security requirements and implement controls that balance compliance with operational needs.

Create clear, concise, and technically accurate documentation, including System Security Plans (SSPs), risk assessments, and architecture diagrams.

Act as a subject matter expert during audits and assessments, representing the organization with credibility and expertise.

Continuously refine processes to improve the efficiency and quality of compliance efforts.

You might thrive in this role if you:

An active US security clearance.

5+ years of compliance experience in positions involving information security, data security, or infrastructure or network security.

Familiarity with deployment models, including to cloud platforms (Azure, AWS) and the underlying infrastructure primitives (Kubernetes, Terraform).

Strong familiarity with core security concepts and technologies, such as authentication, encryption, vulnerability management, and audit logging.

The ability to work collaboratively and effectively in a cross-functional team environment.

Thrive in dynamic environments and can navigate ambiguity with ease.

About OpenAI

Requirements

The employer hasn't listed requirements separately, they're described in the role summary above and on the original listing.

Benefits

No benefits package published with this listing. Ask about it at first interview.

How to apply

  1. 1Check the flexibility label above, hybrid, matches where you plan to live and work.
  2. 2Tailor your CV to the role at OpenAI, mentioning your remote working experience.
  3. 3Apply directly on the employer's careers page using the button below. Nomaders never handles your application.

Found 5d ago. Last checked today. Always confirm the details on the original posting, salary and location can change after publication.

Listing sourced from Company boards.

Similar roles

Other open software roles with comparable remote rules.

Browse all open roles

Free to apply, no account needed.

$162,000–$310,000 · You'll be taken to the employer's careers page.