Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Compliance Manager, Tech GRC image - Rise Careers
Job details

Compliance Manager, Tech GRC

About us

  • At Sierra, we’re building a platform to enable every company in the world to build their own autonomous AI agents for everything from customer service to commerce. We are primarily an in-person company based in San Francisco, with growing offices in Atlanta and London.

  • We are guided by a set of values that are at the core of our actions and define our culture: Trust, Customer Obsession, Craftsmanship, Intensity, and Family. These values are the foundation of our work, and we are committed to upholding them in everything we do.

  • Our co-founders are Bret Taylor and Clay Bavor. Bret was most recently co-CEO of Salesforce, which had previously acquired the company he founded, Quip. Before founding Quip, Bret was the CTO of Facebook. Bret was one of Google's earliest product managers and one of the co-creators of Google Maps. Bret currently serves as Board Chair of OpenAI. Before founding Sierra, Clay spent 18 years at Google, where he most recently led Google Labs. Earlier, he started and led Google’s AR/VR effort, Project Starline, and Google Lens. Before that, Clay led the product and design teams for Google Workspace. 

What You’ll Do:

  • Operate at the intersection of technology, compliance, and AI innovation, helping to shape security standards in a rapidly evolving field.

  • Collaborate with Product, Platform, Legal, Agent Engineering, Operations, Finance, Sales and GTM, ensuring compliance is embedded seamlessly while maintaining agility.

  • Lead audits such as SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR, DORA including readiness, auditor engagement and reporting.

  • Deeply understand the AI tech stack and partner with engineering and product teams to integrate controls into the architecture, CI/CD, and roadmaps. 

  • Automate and optimize workflows, reduce complexity, and enhance efficiency through AI, automation and scalable GRC processes.

  • Maintain a scalable security controls library, assess gaps, and drive remediation to strengthen compliance posture.

  • Drive security awareness programs and policy management that foster a strong security culture and enable innovation.

What You’ll Bring:

  • Deep expertise in security and privacy frameworks (SOC 2, ISO 27001, PCI DSS, HIPAA, GDPR, CCPA, etc.).

  • 5-9+ years in security, compliance, or risk management in fast-moving, high-growth tech environments.

  • A tech-forward, adaptable GRC approach that prioritizes security and business impact.

  • Ability to own audits, assess risk, and implement scalable, pragmatic security solutions that support business objectives.

  • Strong communicator who educates rather than enforces, making security approachable.

  • Relevant certifications (CISSP, CISA, PCI ISA, ISO 27001 Lead Auditor, etc.) demonstrating technology compliance and security expertise.

Even Better...

  • You thrive in fast-moving environments, are solution-oriented, and believe that compliance should be an enabler.

  • Experience in tech, fintech, healthcare, AI or other regulated industries.

  • Hands-on cloud security expertise (AWS, Azure, GCP) and experience automating compliance with GRC tools.

  • Knowledge of Identity & Access Management, Data Security, and Infrastructure Security.

  • Familiarity with GDPR, DORA, EU AI Act, and evolving global security and privacy regulations.

Our values

  • Trust: We build trust with our customers with our accountability, empathy, quality, and responsiveness. We build trust in AI by making it more accessible, safe, and useful. We build trust with each other by showing up for each other professionally and personally, creating an environment that enables all of us to do our best work.

  • Customer Obsession: We deeply understand our customers’ business goals and relentlessly focus on driving outcomes, not just technical milestones. Everyone at the company knows and spends time with our customers. When our customer is having an issue, we drop everything and fix it.

  • Craftsmanship: We get the details right, from the words on the page to the system architecture. We have good taste. When we notice something isn’t right, we take the time to fix it. We are proud of the products we produce. We continuously self-reflect to continuously self-improve.

  • Intensity: We know we don’t have the luxury of patience. We play to win. We care about our product being the best, and when it isn’t, we fix it. When we fail, we talk about it openly and without blame so we succeed the next time.

  • Family: We know that balance and intensity are compatible, and we model it in our actions and processes. We are the best technology company for parents. We support and respect each other and celebrate each other’s personal and professional achievements.

What we offer

We want our benefits to reflect our values and offer the following to full-time employees in the United States:

  • Flexible (Unlimited) Paid Time Off

  • Medical, Dental, and Vision benefits for you and your family

  • Life Insurance and Disability Benefits

  • 401(k) Plan with Sierra match

  • Parental Leave

  • Fertility and Family Building Benefits through Carrot

  • Lunch, as well as delicious snacks and coffee to keep you energized 

  • Discretionary Benefit Stipend giving people the ability to spend where it matters most

  • Free alphorn lessons

These benefits are further detailed in Sierra's policies and are subject to change at any time, consistent with the terms of any applicable compensation or benefits plans. Eligible full-time employees can participate in Sierra's equity plans subject to the terms of the applicable plans and policies.

Be you, with us

We're working to bring the transformative power of AI to every organization in the world. To do so, it is important to us that the diversity of our employees represents the diversity of our customers. We believe that our work and culture are better when we encourage, support, and respect different skills and experiences represented within our team. We encourage you to apply even if your experience doesn't precisely match the job description. We strive to evaluate all applicants consistently without regard to race, color, religion, gender, national origin, age, disability, veteran status, pregnancy, gender expression or identity, sexual orientation, citizenship, or any other legally protected class.

Sierra Glassdoor Company Review
3.3 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Sierra DE&I Review
No rating Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon
CEO of Sierra
Sierra CEO photo
Ernie Herrman
Approve of CEO

Average salary estimate

$115000 / YEARLY (est.)
min
max
$100000K
$130000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Compliance Manager, Tech GRC, Sierra

At Sierra, we’re on a mission to enable companies across the globe to harness the power of autonomous AI agents, transforming areas from customer service to commerce. We are seeking a passionate Compliance Manager to join our team in San Francisco. In this pivotal role, you will operate at the exciting intersection of technology and compliance, ensuring that security standards adapt to the rapidly evolving field of AI. Your responsibilities will include collaborating with various teams - from Product to Legal - to seamlessly integrate compliance into our dynamic workflow while keeping agility at the forefront. You’ll lead essential audits such as SOC 2 and GDPR, utilize your deep understanding of security and privacy frameworks, and drive remediation efforts to fortify our compliance posture. If you thrive in fast-moving tech environments and believe that compliance enables innovation rather than hinders it, this is your chance to shine at Sierra. With your expertise, you'll help us develop efficient processes and foster a strong security culture while enjoying a flexible work environment, diverse team, and ample benefits. Join us in making AI safer and more accessible!

Frequently Asked Questions (FAQs) for Compliance Manager, Tech GRC Role at Sierra
What are the primary responsibilities of a Compliance Manager at Sierra?

The Compliance Manager at Sierra plays a critical role in aligning security frameworks with our innovative AI initiatives. This includes leading audits like SOC 2 and GDPR, collaborating with cross-functional teams, and integrating compliance controls within our tech stack. The position demands both tech-savvy compliance knowledge and a knack for enhancing security culture across the company.

Join Rise to see the full answer
What qualifications are needed to become a Compliance Manager at Sierra?

To be a successful Compliance Manager at Sierra, candidates should possess a deep understanding of security and privacy frameworks such as SOC 2, ISO 27001, and HIPAA. With 5-9 years of experience in a fast-paced tech environment, strong communication skills, and relevant certifications like CISSP or CISA, you’ll be well-prepared to thrive in this role.

Join Rise to see the full answer
How does Sierra integrate compliance within its tech-driven culture?

Sierra prioritizes security while maintaining agility by embedding compliance seamlessly into our product development and operational processes. The Compliance Manager will work closely with engineering and product teams, ensuring that compliance measures evolve alongside technological advancements, embodying our value of craftsmanship.

Join Rise to see the full answer
What makes Sierra an attractive place for compliance professionals?

Sierra offers a unique opportunity for compliance professionals to operate at the forefront of AI innovation. The company fosters a culture built on trust and family, provides flexible work arrangements, and benefits such as unlimited PTO and industry-leading support. It's a place where compliance isn't just a requirement but a key to facilitating growth.

Join Rise to see the full answer
What is Sierra's approach to security awareness and policy management?

At Sierra, we believe that security awareness is vital to our culture. The Compliance Manager will initiate programs that educate employees about security policies and practices, ensuring that everyone is empowered to make sound decisions regarding compliance. This proactive approach reinforces our commitment to creating a secure and innovative work environment.

Join Rise to see the full answer
Common Interview Questions for Compliance Manager, Tech GRC
Can you describe your experience with SOC 2 audits?

During an interview, highlight specific audits you've led, your approach to preparing for them, and how you've engaged with auditors. Emphasize your ability to impact the audit process positively by ensuring that all stakeholders are aligned and that documentation is robust.

Join Rise to see the full answer
What strategies would you use to educate employees about compliance at Sierra?

You could mention developing personalized training programs, conducting workshops, and using real-life case studies to illustrate compliance importance. Discuss how creating a collaborative environment can make compliance less intimidating.

Join Rise to see the full answer
How do you assess risks within compliance frameworks?

In your response, outline a systematic approach to risk assessment. Discuss identifying potential vulnerabilities, evaluating their impact on business objectives, and implementing scalable solutions to mitigate risks effectively.

Join Rise to see the full answer
Why is IT compliance particularly crucial in the AI industry?

Focus on how compliance ensures not only regulatory adherence but also fosters trust in AI technologies. Explain the nuances of AI-related legislation and the implications of data privacy concerns.

Join Rise to see the full answer
How would you balance compliance with innovation at Sierra?

Discuss the importance of having compliance metrics integrated into the innovation process. Suggest maintaining open lines of communication between compliance and product teams to ensure both innovation and regulatory adherence can thrive.

Join Rise to see the full answer
What experience do you have with GDPR and other international regulations?

Share your past experiences with GDPR's principles, how you have guided organizations in adapting to these regulations, and any international compliance certifications you hold that demonstrate this knowledge.

Join Rise to see the full answer
Describe a time when you faced a significant compliance challenge.

Prepare a detailed example that outlines the situation, your role in addressing the challenge, and the outcome. Highlight your problem-solving and adaptability during the process.

Join Rise to see the full answer
What tools do you find effective for automating compliance processes?

Mention specific tools or platforms you’ve utilized in prior roles, emphasizing their benefits in streamlining compliance workflows. Discuss any instances where automation led to measurable improvements.

Join Rise to see the full answer
How do you handle conflicts between compliance needs and business objectives?

Tactfully explain your philosophy on viewing compliance as a framework to support business goals. Discuss your communication strategies for resolving conflicts through collaboration and negotiation.

Join Rise to see the full answer
What do you think is the future of compliance in high-growth tech companies?

Offer insights into trends you see emerging, like the evolution of regulations related to AI technologies. Discuss the importance of adaptability, continual learning, and integration of compliance practices into everyday business strategies.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Posted 12 days ago
Photo of the Rise User
Posted 12 days ago
Photo of the Rise User
Okta Remote Columbus, OH; Cincinnati, OH; Cleveland, OH; Silicon Slopes, UT; Nashville, TN; Knoxville, TN; Madison, WI; Milwaukee, WI; Kansas City, MI; St. Louis, MI; Indianapolis, IN
Posted 6 days ago
Rise from Within
Mission Driven
Diversity of Opinions
Work/Life Harmony
Maternity Leave
Paternity Leave
401K Matching
Paid Holidays
Paid Sick Days
Paid Time-Off
Paid Volunteer Time
Health Savings Account (HSA)
Flexible Spending Account (FSA)
Family Coverage (Insurance)
Medical Insurance
Mental Health Resources
Photo of the Rise User
iCapital Remote Toronto, Canada
Posted 3 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Posted 3 days ago
Posted 2 days ago
Photo of the Rise User
Posted yesterday
Fortune Brands Hybrid 520 Lake Cook Rd, Deerfield, IL 60015, USA
Posted 5 days ago

Explore a wide selection of brand name and other high-quality outdoor gear, family apparel, footwear, sporting goods, and home fashions for active families, at great value.

42 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 20, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!