Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Sr. Director, Security and Compliance image - Rise Careers
Job details

Sr. Director, Security and Compliance

liETtVLaARqgmMEbYzHNNLIzUPcdfPrwhYtVK7Qa.png Fast Facts

Seeking a Sr. Director of Security and Compliance to lead our strategic initiatives in security, compliance, and risk management, while building high-performing teams and ensuring regulatory compliance for enterprise/government customers.

liETtVLaARqgmMEbYzHNNLIzUPcdfPrwhYtVK7Qa.png Responsibilities: Responsibilities include developing security and compliance strategies, leading risk management initiatives, overseeing incident response, and ensuring vendor compliance with regulatory requirements.

liETtVLaARqgmMEbYzHNNLIzUPcdfPrwhYtVK7Qa.png Skills: Required skills include governance, risk management, compliance expertise, technical knowledge of cloud platforms, and strong communication and stakeholder management abilities.

liETtVLaARqgmMEbYzHNNLIzUPcdfPrwhYtVK7Qa.png Qualifications: A preferred candidate will have 12+ years in information security and risk compliance, experience in cloud operations, team leadership, and relevant certifications such as CISSP or CISM.

liETtVLaARqgmMEbYzHNNLIzUPcdfPrwhYtVK7Qa.png Location: The job is located in Santa Clara, CA, USA with potential travel requirements.

liETtVLaARqgmMEbYzHNNLIzUPcdfPrwhYtVK7Qa.png Compensation: Not provided by employer. Typical compensation ranges for this position are between $180,000 - $250,000.




Develop and execute the long-term security and compliance strategy that aligns with our business goals, growth plans, global expansion, and enterprise/government customer requirements. Build, lead, and scale a high-performing security & compliance team (including GRC, security and enterprise risk management, audit readiness, vendor risk, incident response). Define and maintain security policies, standards, procedures, and controls (covering cloud/SaaS, infrastructure, endpoints, data, identity, third-party risk). Partner with Engineering/Product to embed “secure by design” and DevSecOps practices in the software development lifecycle (SDLC) and infrastructure deployment. Lead vendor and third-party risk management, including due diligence, audits, ongoing monitoring. Oversee enterprise-grade incident response, vulnerability management, threat intelligence, business continuity/disaster recovery, and crisis communications. Ensure compliance with relevant regulatory, contractual, and customer frameworks (e.g., SOC 2, ISO 27001, ISO 27701, ISO 42001, NIST CSF 2.0, FedRAMP, IL4, and government/acquisition requirements). Support and engage in sales and customer trust processes: respond to security questionnaires/RFPs, participate in customer audits or security reviews, present to management. 12+ years of progressive experience in information security, risk and compliance, including at least 4 years leading teams at a tech company and preferably with experience working in a fast-growth cloud-based startup. Prior experience in cloud operations, with enterprise and government customer engagements (including audits, security reviews, contractual commitments). Deep technical understanding of cloud platforms (AWS, Azure, GCP), SaaS application architectures, identity and access management, encryption/data protection, endpoint & network security, zero-trust models. Strong track record of leading audit/certification programs (e.g., SOC 2, ISO 27001, FedRAMP or similar) and managing regulatory/compliance risk in enterprise and/or public sector contexts. Excellent communication and stakeholder management skills—comfortable presenting to executives, customers, and technical teams. Ability to translate technical risk into business impact, and to integrate security/compliance into go-to-market and product strategies. Experience managing and building teams, budgeting, vendor selection/oversight, and setting metrics/roadmaps in a lean or scaling environment. Certifications such as CISSP, CISM, CCSP, or cloud security specialty are strongly preferred. Nice to Have: Experience with government acquisition/regulatory environments, global data privacy/regulation (e.g., GDPR, CCPA), and enterprise/government contract vehicles. Due to regulatory requirements and potential access to controlled information, this role requires U.S. Person Status (i.e. U.S. citizen, lawful permanent resident, refugee, or asylee). Experience our comprehensive benefits with family medical, vision and dental coverage, a competitive base salary, and eligibility for equity awards and discretionary bonuses or commissions.

Eightfold Glassdoor Company Review
3.5 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Eightfold DE&I Review
3.5 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
CEO of Eightfold
Eightfold CEO photo
Ashutosh Garg
Approve of CEO

Average salary estimate

$215000 / YEARLY (est.)
min
max
$180000K
$250000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User

Lead product strategy and execution for Talent Management at an Enterprise SaaS company, driving product adoption and measurable customer outcomes across diverse employee personas.

Photo of the Rise User

Senior leader needed to build and scale Red Hat’s global software audit and compliance program, driving audit execution, subscription compliance, and sales alignment across a matrixed organization.

Photo of the Rise User
NBCUniversal Hybrid 30 Rockefeller Plaza, New York, NEW YORK
Posted 9 hours ago

NBCUniversal seeks a Lead IT GRC Analyst to manage and evolve its security governance framework and drive secure configuration standards across enterprise environments.

Photo of the Rise User
PayPal Hybrid San Jose, California, United States of America
Posted 5 hours ago

PayPal is hiring a Senior Legal Counsel to support its Ads business by managing advertising, data, and technology contracts while advising on privacy and commercial risk.

Posted 19 hours ago

Western Alliance Bank is hiring a Risk Analyst in Phoenix to perform control testing, manage remediation issues, facilitate RCSA workshops, and produce risk reporting for senior management.

Photo of the Rise User
Dental Insurance
Flexible Spending Account (FSA)
Health Savings Account (HSA)
Vision Insurance

Lead compliance, regulatory strategy, and litigation management for HopSkipDrive’s education-focused transportation network as the Director of Litigation and Regulatory Affairs.

Posted 1 hour ago

Office Hours is hiring a hands-on Legal & Operations Associate to build and run core legal, compliance, and operational processes for a growing knowledge-sharing marketplace.

Our mission is very clear — the right career for everyone in the world. There are few companies that take on such big goals and even fewer that have the potential to actually do it.

8 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
December 4, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!