Skip to content
← Back to job listings

Director of Trust & Assurance

Sigma Computing · San Francisco, United States

External listingfull-time7 days ago

About The Role

Join Sigma, a fast-growing technology company, as a Governance, Risk & Compliance Manager. In this role, you will lead and scale our GRC programs, develop a comprehensive GRC framework, and ensure compliance with regulatory requirements. You will work closely with various departments and have direct access to the General Counsel. This is an opportunity to make a tangible impact on how Sigma manages risk and creates value for customers.

  • Lead and scale governance, risk, and compliance programs, building a strategic, enterprise-wide GRC function.
  • Partner with various departments to develop a comprehensive GRC framework that protects the organization's interests and supports strategic objectives.
  • Design and implement governance frameworks, establish and maintain enterprise policies, and build and lead a governance committee structure.
  • Collaborative mindset and commitment to enabling business success while managing risk
  • 4+ years of experience in governance, risk management, and/or compliance roles, preferably in SaaS or technology companies
  • Excellent communication skills with ability to influence stakeholders at all levels, including leadership
  • Experience developing and maintaining information security and privacy policies, procedures, and control frameworks
  • Demonstrated experience building or significantly maturing a GRC program from the ground up
  • Strong business acumen with ability to translate risk and compliance requirements into business value
  • Experience implementing risk management frameworks (COSO, ISO 31000, NIST RMF, or similar)
  • Track record of successfully leading certification audits (SOC 2, ISO 27001, HIPAA, or similar)
  • Strong knowledge of data privacy regulations and their practical application (GDPR, CCPA, etc.)
  • Proven ability to manage multiple priorities and stakeholders in a fast-paced, high-growth environment
  • Experience with GRC platforms (ServiceNow GRC, Archer, LogicGate, or similar)
  • Hands-on experience with cloud environments (GCP, AWS, Azure) from a compliance and security perspective
  • Experience with labor & employment compliance or cross-functional collaboration with HR on regulatory matters
  • Familiarity with multi-state or international employment regulations
  • Experience with continuous compliance automation tools (Vanta, Drata, Secureframe, Tugboat, or similar)
  • Experience in high-growth SaaS or technology companies
  • Professional certifications such as CRISC, CISA, CISM, CGEIT, CISSP, or CIPP
  • Background in both technical and operational risk management
  • Familiarity with security frameworks such as NIST CSF, CIS Controls, or OWASP
  • Experience working in organizations with distributed or remote teams

This is an external listing. JobSpring does not represent or verify the employer. Report this listing