Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
Hightouch, a San Francisco-based marketing data platform, seeks a GRC Lead to own customer security reviews and our compliance program. You’ll drive audits, risk decisions, and automation with engineering and legal teams.
You’ll initially handle questionnaires and customer conversations, expanding the program as the function grows. You’ll own SOC 2 and ISO 27001 programs, ensure timely evidence, and define controls across products.
Hightouch is an Agentic Marketing Platform powered by the industry-leading Composable CDP. With complete brand context, customer data, and performance history in one place, every marketer finally has the power to build and ship end-to-end campaigns themselves. Teams move faster, stay on brand, and get AI marketing that actually works.
Founded in 2019 and headquartered in San Francisco, Hightouch enables marketing teams to analyze performance, brainstorm ideas, and generate creative at a speed and quality that wasn’t previously possible.
Named a Leader in the 2026 Gartner® Magic Quadrant™ for Customer Data Platforms, Hightouch is trusted by leading enterprises like Domino’s, Spotify, Aritzia, Cars.com, Ramp, and PetSmart.
At Hightouch, our mission is to help our customers leverage data and AI to grow their businesses. The team is ambitious, impact-driven, efficient — and we believe humility, kindness, and compassion are essential to our success. If you’re energized by velocity, obsessed with raising the bar, and want to build alongside people who care deeply about each other and our customers, we’d love to meet you.
We’re hiring our first dedicated GRC Lead to own customer security assurance and our compliance program. Your first priority will be making customer security reviews fast and accurate, alongside ownership of audits, compliance obligations, and risk follow-through.
We build quickly, and this role requires someone who can keep pace. You’ll understand the risks behind customer requirements, make practical recommendations, and drive decisions through to completion. You’ll have substantial autonomy and work directly with engineering, security, IT, legal, and our customer-facing teams.
We’re open to experienced individual contributors, managers who enjoy hands‑on work, and people looking to grow into management. You’ll initially handle questionnaires, customer conversations, and audits directly, using AI and automation to increase what a small team can accomplish. As the function grows you’ll be able to grow with it.
You’ve personally owned a compliance program or major audit cycle, and have hands‑on experience with customer security reviews.