Director, Security Compliance and Trust

Gomotive

Northern (KY)

Hybrid

USD 225,000 - 305,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health, pharmacy, optical and dental
Paid time off
Sick time off
Short-term and long-term disability
Life insurance
401k contribution

Job summary

Motive seeks a Director, Security Compliance and Trust to lead governance, risk, privacy, and audit programs across ISO 27001/27701, SOC 1/2, PCI DSS and FedRAMP. You will own the control environment, privacy operations, and AI governance, partnering with Legal, Engineering, Product, IT, and Sales globally.

You will build a scalable, AI-first compliance function, manage a distributed team, and drive regulatory readiness for new markets while ensuring customer trust and program efficiency.

Qualifications

  • 8+ years in security compliance, GRC, privacy, audit or risk management with leadership experience.
  • Hands-on: wrote policies, designed controls, led fieldwork, answered tough customer questions.
  • Proven ownership of multi-framework programs in cloud-native SaaS (ISO 27001, SOC 1/2, PCI DSS).
  • Deep privacy experience incl. GDPR/CCPA, DSAR, DPIAs, cross-border transfer mechanics.

Responsibilities

  • Own the compliance, privacy and trust function end-to-end — org design, hiring, global team development.
  • Build a single integrated control framework mapping to ISO 27001/27701, SOC 1/2, PCI DSS, FedRAMP, GDPR/CCPA.
  • Own the annual audit calendar end-to-end and lead FedRAMP path for public sector opportunities.
  • Architect AI-first operating model for evidence automation, control monitoring and responses.
  • Be the face of Motive's security posture to customers and partners.

Skills

Security leadership
GRC program management
ISO 27001/27701
SOC 1/2
FedRAMP
AI governance
Privacy by design

Job description

Motive empowers the people who run physical operations with tools to make their work safer, more productive, and more profitable. For the first time ever, safety, operations and finance teams can manage their drivers, vehicles, equipment, and fleet related spend in a single system. Combined with industry leading AI, the Motive platform gives you complete visibility and control, and significantly reduces manual workloads by automating and simplifying tasks.

Motive serves nearly 100,000 customers – from Fortune 500 enterprises to small businesses – across a wide range of industries, including transportation and logistics, construction, energy, field service, manufacturing, agriculture, food and beverage, retail, and the public sector.

As Director, Security Compliance and Trust, you will build and lead the function that earns and sustains customer, regulator, and partner confidence in Motive. Reporting to the CISO, you will own governance, risk and compliance; audit and certification across ISO 27001/27701, SOC 1 and SOC 2, PCI DSS and the path to FedRAMP; privacy and data protection; customer trust; security policy; training and human risk; and AI governance. You will partner closely with Legal, Engineering, Product, IT, Finance, Sales and Customer Success to make compliance a business enabler rather than a tax.

This is a hands-on leadership role. You will lead a small, senior, globally distributed team — and you will also write policy, design controls, sit in audit fieldwork, and answer the hardest customer questions yourself. We expect this function to be built AI-first, with automation designed into the operating model from day one rather than added to a traditional GRC team later. Global expansion is central to the role: Motive is growing into Canada, the EU, Mexico and South America, and you will be the person who makes those markets enterable — mapping obligations before Sales arrives and building controls that satisfy multiple jurisdictions at once.

What You'll Do:
  • Own the compliance, privacy and trust function end-to-end — org design, hiring, and global team development — and act as Motive's senior authority on the control environment, deciding which frameworks we adopt and where we accept versus remediate risk
  • Build a single integrated control framework that maps once to many across ISO 27001/27701, SOC 1 and SOC 2, PCI DSS, FedRAMP, GDPR and CCPA/CPRA, so evidence is collected once rather than once per framework or once per country
  • Own the annual audit calendar end-to-end, manage auditor and assessor relationships directly, and lead Motive's path to FedRAMP from the ground up as public sector opportunity matures
  • Own privacy compliance operations — data subject rights, DPIAs, ROPA and cross-border transfer mechanics — treating driver data as the sensitive category it is, including location history, in-cab video, telematics behavior and biometric-adjacent processing
  • Own regulatory readiness for new markets ahead of go-to-market, partnering with Engineering and Platform on data residency and regional architecture rather than solving localization with policy language
  • Be the face of Motive's security and privacy posture to customers — owning trust.gomotive.com, scaling security questionnaire and review response, and serving as the senior escalation point in enterprise deals
  • Architect the AI-first operating model for the function, personally building and iterating on evidence automation, continuous control monitoring and AI-assisted questionnaire response rather than delegating it to a tooling vendor
  • Own the security policy and standards library and its exceptions process, along with company-wide security training, phishing simulation and human risk measurement
  • Establish Motive's AI governance program across both product and internal AI use, building against ISO/IEC 42001, the NIST AI Risk Management Framework and the EU AI Act
What We're Looking For:
  • 8+ years in security compliance, GRC, privacy, audit or risk management, including 5+ years in leadership roles managing both people managers and senior individual contributors
  • Demonstrably hands-on. You have personally written the policies, designed the controls, built the control mappings, sat through fieldwork and answered the hardest customer questions yourself — recently, not a decade ago. Be prepared to walk through work you did with your own hands
  • Proven ownership of multi-framework compliance programs at scale in a cloud-native SaaS environment — ISO 27001, SOC 1 and SOC 2, and PCI DSS as core, with the judgment to run them as one program rather than three
  • Deep, operational privacy experience across GDPR and CCPA/CPRA, with hands-on ownership of DSAR operations, DPIAs, ROPA and cross-border transfer mechanics. CIPP/E, CIPP/US or CIPM is a plus, but demonstrated operational ownership matters more
  • Experience standing up compliance and privacy in new international markets, ideally including Canada, the EU, Mexico or Latin America. Familiarity with PIPEDA/Law 25, LGPD or the Mexican LFPDPPP is a strong advantage
  • Experience with FedRAMP, ideally having led an organization through authorization or Moderate/High readiness, with the appetite to build Motive's path from the ground up
  • Concrete, demonstrated use of AI to run compliance work — evidence collection, questionnaire response, control monitoring, policy drafting, audit preparation or regulatory gap analysis. We will ask what you built, what it replaced, and what it measurably changed. General enthusiasm for AI is not what we're looking for
  • Demonstrated ownership of customer-facing trust functions — security reviews, questionnaires, trust portals and enterprise escalation — and experience leading globally distributed teams across multiple timezones
  • Working fluency in AI governance frameworks and a clear point of view on governing AI without blocking its adoption
  • Experience supporting IPO readiness, SOX or equivalent regulated-environment scrutiny, and experience with sensitive personal data at scale, are both strongly preferred

Pay Transparency
Your compensation may be based on several factors, including education, work experience, and certifications. For certain roles, total compensation may include restricted stock units. Motive offers benefits including health, pharmacy, optical and dental care benefits, paid time off, sick time off, short term and long term disability coverage, life insurance as well as 401k contribution (all benefits are subject to eligibility requirements). Learn more about our benefits by visiting Motive Perks & Benefits .
The compensation range for this position will depend on where you reside. For this role, the compensation range is:

United States

$225,000 - $305,000 USD

Creating a diverse and inclusive workplace is one of Motive's core values. We are an equal opportunity employer and welcome people of different backgrounds, experiences, abilities and perspectives.

Please review our Candidate Privacy Notice here .

The applicant must be authorized to receive and access those commodities and technologies controlled under U.S. Export Administration Regulations. It is Motive's policy to require that employees be authorized to receive access to Motive products and technology.

All job postings are for existing vacancies. Please note; some interviews or new-hire training sessions may be held in person at one of our global offices.

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey.Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiringprocess or thereafter. Any information that you do provide will be recorded and maintained in aconfidential file.

As set forth in Motive's Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection.As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measurethe effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categoriesis as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service‑connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Manager, Security Operations
Senior Manager, Security Operations

Gomotive • Northern (KY)

Hybrid
USD 140,000 - 200,000
Health benefits
Paid time off
401k plan
Director, Security Compliance and Trust
Director, Security Compliance and Trust

Socket.dev • United States

On-site
USD 225,000 - 305,000
Health, dental, vision benefits
Paid time off & sick leave
Disability & life insurance
+1
Account Executive, Enterprise - Texas
Account Executive, Enterprise - Texas

Gomotive • Town of Texas (WI)

Hybrid
USD 230,000 - 300,000
Health, dental, vision benefits
401k contribution
Paid time off
Regional Vice President, Strategic East Sales New United States - Remote
Regional Vice President, Strategic East Sales New United States - Remote

Gomotive • Northern (KY)

Hybrid
USD 220,000 - 320,000
GTM AI Engineer -Deal Desk New United States - Remote
GTM AI Engineer -Deal Desk New United States - Remote

Gomotive • Northern (KY)

Hybrid
USD 140,000 - 160,000
Director, Security Compliance and Trust
Director, Security Compliance and Trust

Motive • United States

On-site
USD 225,000 - 305,000
Health benefits
401k plan
Paid time off
+1
Senior Manager, Security Operations
Senior Manager, Security Operations

Socket.dev • United States

On-site
USD 140,000 - 200,000
Health benefits
Dental & vision benefits
401k contribution
+1
Regional Vice President, Strategic Sales (Central/Mountain)
Regional Vice President, Strategic Sales (Central/Mountain)

Gomotive • Northern (KY)

Remote
USD 180,000 - 240,000
Director, Developer Platform & Experience
Director, Developer Platform & Experience

ProducePay • California (MO)

On-site
USD 229,000 - 285,000
Director, Customer Success
Director, Customer Success

Human Interest • Lindon (UT)

Hybrid
USD 130,000 - 165,000
401(k) plan with employer match up to
Health insurance
Parental leave
+1