← Back to job listings
BA
GRC Manager
Baseten · United States
About The Role
Join Baseten, a fast-growing startup in the AI/ML space, as a GRC Manager. In this role, you will establish, lead, and enhance our security governance and compliance programs. You will work cross-functionally with various teams to develop policies, manage audits, and implement controls aligned with industry standards. This is a remote-first position with a range of benefits, including unlimited PTO, full healthcare coverage, and a learning and development budget.
- Establish, lead, and continuously enhance Baseten’s security governance and compliance programs.
- Work cross-functionally with engineering, operations, legal, and leadership teams to develop policies, manage audits, and implement controls aligned with frameworks such as SOC 2, ISO 27001, and GDPR.
- Build and manage the company-wide risk assessment program, identifying, tracking, and mitigating key security and compliance risks.
- 5+ years of experience in GRC, Security Compliance, or Information Security roles, ideally in a SaaS or cloud-native environment
- Excellent organizational, documentation, and communication skills with attention to detail
- Ability to thrive in a fast-paced, high-growth startup environment while maintaining structure and process discipline
- Familiarity with risk management methodologies, control design, and governance frameworks
- Proven track record managing compliance audits and certification programs end-to-end
- Experience working cross-functionally with technical and non-technical stakeholders to implement compliance controls
- Strong understanding of security frameworks and standards such as SOC 2, ISO 27001, NIST, and GDPR
- Experience with cloud security compliance in AWS or GCP environments
- Hands-on experience using GRC tools (e.g., Vanta, Drata, Tugboat Logic, Secureframe)
- Understanding of AI/ML security considerations, data privacy, and model governance
- Previous experience scaling compliance programs in an early-stage or rapidly growing startup
- Relevant certifications (e.g., CISA, CISSP, CISM, ISO 27001 Lead Implementer)
This is an external listing. JobSpring does not represent or verify the employer. Report this listing
JobSpring