GRC & Security Compliance Lead

Neura Market

San Francisco (CA)

On-site

USD 140,000 - 190,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Equity
Medical, dental, and vision coverage
Flexible PTO
Parental leave
Fertility stipend
401(k)
Exposure to ML startups

Job summary

Baseten is seeking an experienced GRC Manager to build and enhance security governance, risk, and privacy programs at scale. You will collaborate with engineering, operations, legal, and leadership to implement controls and drive compliance with SOC 2, ISO 27001/27701, HIPAA, FedRAMP, and GDPR.

In this role you will design policies, manage audits, oversee third-party risk, and partner across functions to embed risk management into day-to-day operations, while communicating clearly with customers

Qualifications

  • 5+ years of experience in GRC, Security Compliance, or Information Security roles, ideally in a SaaS or cloud-native environment.
  • Strong understanding of security frameworks and standards such as SOC 2, ISO 27001, NIST, and GDPR.
  • Proven track record managing compliance audits and certification programs end-to-end.
  • Experience with access management concepts, third-party risk.
  • Experience working cross-functionally with technical and non-technical stakeholders to implement compliance and security controls.
  • Excellent organizational, documentation, and communication skills with attention to detail.
  • Ability to thrive in a fast-paced, high-growth startup environment while maintaining structure and process discipline.

Responsibilities

  • Governance & Policy Development: Design, implement, and maintain security governance frameworks, policies, and procedures that align with Baseten’s risk posture and industry best practices.
  • Risk Management: Build and manage the company-wide risk assessment program, identifying, tracking, and mitigating key security and compliance risks.
  • Compliance Operations: Lead efforts to achieve and maintain compliance with SOC 2, ISO 27001/27701, HIPAA, FedRAMP and other applicable standards and regulations.
  • Audit & Certification Management: Coordinate external audits and certification processes, ensuring evidence collection, control validation, and remediation plans are executed efficiently.
  • Third-Party Risk Management: Oversee vendor security assessments and ensure third-party providers meet Baseten’s security and compliance standards.
  • Cross-Functional Collaboration: Partner with Engineering, Product, and Operations teams to embed compliance and risk management into day-to-day operations and technical processes.
  • Customer Trust & Assurance: Support customer security questionnaires, due diligence efforts, and documentation requests from prospective and existing clients.
  • Training & Awareness: Develop and deliver security and compliance training to ensure company-wide understanding of key policies and responsibilities.
  • Continuous Improvement: Stay current on evolving regulatory requirements and lead initiatives to mature our compliance and risk management programs.

Skills

GRC
Security Compliance
Information Security
Audit management

Tools

Vanta
Drata
Secureframe
Anecdotes

Job description

Baseten is seeking an experienced GRC Manager to build and enhance security governance, risk, and privacy programs at scale. You will collaborate with engineering, operations, legal, and leadership to implement controls and drive compliance with SOC 2, ISO 27001/27701, HIPAA, FedRAMP, and GDPR.

In this role you will design policies, manage audits, oversee third-party risk, and partner across functions to embed risk management into day-to-day operations, while communicating clearly with customers

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Manager - SaaS Security & Compliance
GRC Manager - SaaS Security & Compliance

Baseten • San Francisco (CA)

On-site
USD 150,000 - 190,000
Equity
Medical/Dental/Vision
Flexible PTO
+4
Remote GRC & Security Compliance Lead
Remote GRC & Security Compliance Lead

PVH (Tommy Hilfiger/Calvin Klein) • United States

On-site
USD 140,000 - 210,000
Remote-first environment
Annual team summits
Unlimited PTO
+2
GRC Manager — Secure AI SaaS, Risk & Compliance
GRC Manager — Secure AI SaaS, Risk & Compliance

The Consensus • New York (NY)

On-site
USD 130,000 - 180,000
Competitive compensation
Equity
Medical/Dental/Vision insurance
+1
GRC & Compliance Leader for AI Security
GRC & Compliance Leader for AI Security

Baseten • New York (NY)

On-site
USD 150,000 - 250,000
Competitive compensation
Medical, dental, vision insurance
Flexible PTO
+4
GRC Manager
GRC Manager

baseten • United States

On-site
USD 140,000 - 210,000
Remote-first environment
Annual team summits
Unlimited PTO
+2
Senior InfoSec GRC Manager | Risk, Compliance & Governance
Senior InfoSec GRC Manager | Risk, Compliance & Governance

Sutton Bank • Columbus (OH)

On-site
USD 110,000 - 170,000
GRC Engineering Manager: Lead Secure Cloud Compliance
GRC Engineering Manager: Lead Secure Cloud Compliance

Workstreet • Northern (KY)

Hybrid
USD 150,000 - 190,000
Career Development
Role-Related Training
Competitive Compensation
+2
Senior GRC Program Lead - SOC 2, GDPR & Security
Senior GRC Program Lead - SOC 2, GDPR & Security

Tandem Inc. • Draper (UT)

Hybrid
USD 110,000 - 170,000
On-site gym
Flexible PTO
Redo perks: monthly ecommerce credit
+2
GRC Manager
GRC Manager

Synergy Business Consulting, Inc. • Fort Lauderdale (FL)

On-site
USD 110,000 - 160,000
GRC Program Architect: Federal Compliance & Security Controls
GRC Program Architect: Federal Compliance & Security Controls

Onebrief • United States

Hybrid
USD 150,000 - 230,000