← Back to job listings
SC
Director of Trust & Assurance
Sigma Computing · San Francisco, United States
About The Role
Join Sigma, a fast-growing technology company, as a Governance, Risk & Compliance Manager. In this role, you will lead and scale our GRC programs, develop a comprehensive GRC framework, and ensure compliance with regulatory requirements. You will work closely with various departments and have direct access to the General Counsel. This is an opportunity to make a tangible impact on how Sigma manages risk and creates value for customers.
- Lead and scale governance, risk, and compliance programs, building a strategic, enterprise-wide GRC function.
- Partner with various departments to develop a comprehensive GRC framework that protects the organization's interests and supports strategic objectives.
- Design and implement governance frameworks, establish and maintain enterprise policies, and build and lead a governance committee structure.
- Collaborative mindset and commitment to enabling business success while managing risk
- 4+ years of experience in governance, risk management, and/or compliance roles, preferably in SaaS or technology companies
- Excellent communication skills with ability to influence stakeholders at all levels, including leadership
- Experience developing and maintaining information security and privacy policies, procedures, and control frameworks
- Demonstrated experience building or significantly maturing a GRC program from the ground up
- Strong business acumen with ability to translate risk and compliance requirements into business value
- Experience implementing risk management frameworks (COSO, ISO 31000, NIST RMF, or similar)
- Track record of successfully leading certification audits (SOC 2, ISO 27001, HIPAA, or similar)
- Strong knowledge of data privacy regulations and their practical application (GDPR, CCPA, etc.)
- Proven ability to manage multiple priorities and stakeholders in a fast-paced, high-growth environment
- Experience with GRC platforms (ServiceNow GRC, Archer, LogicGate, or similar)
- Hands-on experience with cloud environments (GCP, AWS, Azure) from a compliance and security perspective
- Experience with labor & employment compliance or cross-functional collaboration with HR on regulatory matters
- Familiarity with multi-state or international employment regulations
- Experience with continuous compliance automation tools (Vanta, Drata, Secureframe, Tugboat, or similar)
- Experience in high-growth SaaS or technology companies
- Professional certifications such as CRISC, CISA, CISM, CGEIT, CISSP, or CIPP
- Background in both technical and operational risk management
- Familiarity with security frameworks such as NIST CSF, CIS Controls, or OWASP
- Experience working in organizations with distributed or remote teams
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring