Governance, Risk and Compliance Lead
$225k - $350kThinking Machines Lab Inc.
The mission of Thinking Machines is to build AI that extends human will and judgment. About the Role We're looking for a GRC Lead who personally drives our certifications (SOC 2, ISO 27001, FedRAMP and others as we grow) from scoping through audit close, and runs our compliance processes day to day. You'll collect the evidence, write the control documentation, and sit across from the auditor yourself. You'll work closely with security, legal, safety, and engineering to answer compliance and risk questions directly, using your own technical understanding of how our systems work. Day to day, you'll be managing audits, controls, and risk assessments. Alongside that, you'll be building the roadmap for what this function needs to look like in a year. What You'll Do Own our certification roadmap end to end: scope each certification, build the control set, collect and organize evidence, and represent TML directly to auditors through to close. Manage recurring compliance processes on a set cadence: control testing, audit prep and response, risk register maintenance, and policy attestations. Answer compliance and risk questions from engineering, security, and product teams directly, by building enough technical fluency across our infrastructure, model deployment, and data handling to do so without escalating every question. Track regulatory and framework requirements relevant to an AI company (GDPR, EU AI Act, and similar) and translate them into specific, actionable controls. Identify gaps in current compliance coverage as the company adds new products, infrastructure, or jurisdictions, and propose what needs to change before it becomes a blocker. Build and maintain the tooling and documentation that make the next audit cycle faster than the last one. Plan a multi-quarter roadmap for the GRC function itself, while continuing to personally run the certifications and audits already on the books. Skills and Qualifications Minimum qualifications: 7+ years related experience across technology and cybersecurity Governance, Risk, and Compliance (GRC), with demonstrated breadth across all three disciplines. Experience leading a SOC 2, ISO 27001, FedRAMP or comparable certification from scoping through audit close. Hands-on experience collecting audit evidence and writing control documentation. Experience managing a recurring compliance process, such as control testing, risk register maintenance, or policy attestations. Experience learning new technical domains quickly and translating them for non-technical stakeholders. Preferred qualifications: Background as a software engineer or in a technical engineering role, now applied to GRC, evidenced by scripts, tools, or automations you've personally built for evidence collection, control testing, or audit workflows. Experience translating complex compliance requirements into scalable automation using AI agents and custom built tooling. Experience growing a GRC function's capability (new certifications, tooling, or processes) as a company scaled. You’ll Thrive in This Role if You want to run the certification yourself, end to end. You're the one in the room with the auditor, walking through evidence. You can hold this week's deadlines and next year's roadmap at the same time. Logistics Location: This role is based in San Francisco, California. Compensation: Depending on background, skills and experience, the expected annual salary range for this position is $225,000 - $350,000. Visa sponsorship: We sponsor visas. While we can't guarantee success for every candidate or role, if you're the right fit, we're committed to working through the visa process together. Benefits: Thinking Machines offers generous health, dental, and vision benefits, unlimited PTO, paid parental leave, and relocation support as needed. As set forth in Thinking Machines' Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law. #J-18808-Ljbffr Thinking Machines Lab Inc.
- Perplexity is seeking a highly experienced Governance, Risk & Compliance Analyst to join our world‑class team. You will help shape our compliance... ...search and interact online. What You’ll Do Implement and lead frameworks such as SOC2, ISO 27001 and HIPAA. Ensuring compliance...Suggested
- Runway is seeking a seasoned GRC professional to lead governance, risk, and compliance across the US, with remote options. You will shape frameworks that balance security and responsible AI, working closely with product, engineering, and legal teams. Responsibilities include...SuggestedRemote job
- Gusto is seeking a Security, Governance, Risk & Compliance professional to advance governance, risk, and compliance initiatives across the company. You will guide maturity from foundational to steady-state operations while embedding security-minded practices. The role collaborates...Suggested
- Perplexity is seeking a Governance, Risk & Compliance Analyst to shape and run our compliance and risk management program. You will lead the implementation of frameworks, oversee data privacy regulations, and build scalable audit systems in a fast‑growing startup environment...Suggested
$112k
Sr Manager, InfoSec Governance Risk and Compliance (GRC) Sr Manager, InfoSec Governance Risk and Compliance (GRC) Founded in 2000, Ivalua is a leading global provider of cloud-based procurement solutions. COMPANY OVERVIEW At Ivalua we are a global community of exceptional...SuggestedPermanent employmentContract workFor contractorsFor subcontractorWork at officeWorldwide3 days per week- Gusto seeks aSecurity, Governance, Risk & Compliance professional to guide governance and compliance programs across the company, leveraging AI to automate controls and evidence collection for SOC 2 Type 2 and related frameworks. The role is cross-functional and touches...
- Early Warning Services LLC is seeking an Enterprise PDLC Owner to define the PDLC strategy, governance, and maturity across product, technology, risk, and compliance. You will ensure scalable, audit-ready delivery capabilities and partner with executive stakeholders to...
$200k - $300k
...billion and backed by world-leading investors including T. Rowe Price... ...About the teamThe Commercial Risk Control team sits in the... ...Operations and other Legal, Risk and Compliance teams across Airwallex. Our... ...frameworks that govern which customers and use cases...Temporary workLocal areaWorldwide- ...data. Spotter turned that into an AI analyst that can reason over governed enterprise data. Now with AgentSpot we're taking the next step... ...and quality.Hands-on experience to leverage AI tools (industry-leading LLMs) to increase productivity, automate routine tasks, and...Work at officeLocal area3 days per week
$172.5k - $225k
Circle (NYSE: CRCL) is one of the world’s leading internet financial platform companies, building the foundation of a more open, global... .... This individual will help Circle shape the economic model, governance framework, and feature design of a potential native token on...Flexible hours$164.7k - $266k
...management (CLM).What you'll doWe are seeking a Lead AI Architect to turn enterprise data,... ...patterns, reusable templates, and governance standardsIntegrate enterprise platforms... ...architectures with enterprise governance, privacy, compliance, and responsible AI standardsPartner...Contract workWork at officeLocal areaRemote work2 days per week$270k - $310k
...content and the systems behind it, curating what lives in our partner portal and learning platforms, establishing review and refresh governance so nothing goes stale, and creating enablement assets that hold up in front of technical and commercial audiences alike. You will...Work at officeVisa sponsorshipFlexible hours$121.41k - $127.8k
...team within Finance, you\'ll execute risk-based operational and compliance audits end-to-end, covering planning... ...s control environment by evaluating governance, compliance, and risk management... ...that drive measurable improvement Lead audit reporting by drafting result summaries...Local area- Anyscale is seeking a seasoned Governance, Risk, and Compliance leader to own SOC 2 Type II and ISO 27001 programs, manage evidence, and coordinate external audits across engineering, IT, legal, and sales. This program-ownership role requires autonomy and accountability...
$186.1k - $300.55k
...management (CLM).What you'll doWe are hiring a Lead Product Manager to lead Finance data and... ...and evolve the metrics and governance (ACV, ARR, Bookings, Revenue, pipeline, retention... ...products; communicate progress, trade-offs, risks, and decisions to executive...Contract workWork at officeLocal areaRemote work2 days per week- ...labor-intensive work in internal audit and governance: testing whether a company's financial,... ...Opportunity We’re hiring a Security Lead to build and own the security function... ...cloud and app-security practices, an early compliance program from a team with roots at Retool...
- ...You will partner with legal, engineering, product, and compliance to build frameworks ensuring responsible AI innovation and regulatory risk management across AI products and services. You will develop governance docs, monitor model deployments, and drive legally compliant...
- ...senior leader to design and own compensation strategy for a public productivity company. You will lead the compensation committee relationship, define philosophy and governance that underpins equity, benefits, and mobility. Responsibilities include shaping pay structures,...
$133k
...grounded in integrity. Our Financial Risk Management (FRM) Advisory team... ...processes, the need to govern it rigorously has never been greater. As an AI Governance Lead on this team, you will help build... ...-to-shoulder with engineers, compliance technology teams, and senior...Full timeWork experience placementWork at officeRemote work$150k - $210k
...process for new applicants. This role requires 5-10 years of experience in fraud strategy and strong expertise in managing identity risks, including first-party fraud vectors. The selected candidate will own the decision-making framework and report on the effectiveness...- Mercury is seeking a Knowledge & Enablement Lead to own the frameworks and governance for risk operations and the BPO partners who deliver them, as we scale toward bank readiness. This role spans knowledge management and training, defining requirements, standards, and...
- Safetytalent in San Francisco is seeking a team manager for AI regulations and safety policy research. In this role, you will build critical relationships with policymakers and AI companies to influence outcomes by ensuring that research findings are effectively communicated...
- ...named to Notable Capital's Rising in Cyber 2026 list by 150 leading CISOs. Our leadership brings deep security pedigree: CEO... ...person will be responsible for our security operations, compliance posture, vendor risk, incident response, and security tooling. This is a hands...Work at office
- ...Group is seeking a highly skilled Oracle Fusion Specialist to lead end-to-end configuration and lifecycle management of Oracle... ...apps in a fully remote role. You will drive integration, governance, and compliance across finance and procurement to deliver reliable,...Remote job
- Evolve Talent Partners seeks a Legal & Compliance Manager for a San Francisco-based private markets investment manager. You will oversee fund governance, regulatory compliance, and related legal activities, coordinating across investment, investor relations, finance, and...Contract work
- tl;dr: We’re automating compliance for banks and fintechs with AI agents that work on existing systems like human analysts. We’re looking... ...bring real compliance experience: You’ve spent 3-5 years in AML, risk, or compliance roles at a bank, fintech, or regtech - and you...Temporary workWork at officeRelocation package
- Coinbase is seeking a Compliance, Threat & Risk Assessment Manager to spearhead enterprise-wide risk assessments, identifying inherent risks,... ...coordinated, locally relevant risk outcomes, and develop governance materials for regulatory audiences. A focus on AML/CFT, sanctions...
- Turner & Townsend is seeking a Governance & Publications Lead to establish the operational framework, digital workspace architecture, and governance standards across EV charging construction projects. This role drives end-to-end lifecycle governance, document control,...
- Anthropic is seeking a Discovery Operations Lead to build and run our discovery program within Litigation & Regulatory. You will manage... ...across matters, partner with Security and IT, and drive data governance maturity as the company scales. You will own the legal hold...
$112k
Chime is seeking a Senior Analyst in AML Governance & Advisory within Financial Crimes & Identity. You will own governance for BSA/AML and OFAC, partnering with Compliance, Risk, Legal, and Engineering to drive oversight, document controls, and continuous program maturity...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Governance, Risk and Compliance Lead. Be the first to apply!
- risk adjustment San Francisco, CA
- risk San Francisco, CA
- at risk youth San Francisco, CA
- risk underwriter San Francisco, CA
- antepartum high risk ob nurse San Francisco, CA
- high risk San Francisco, CA
- risk intern San Francisco, CA
- risk assurance San Francisco, CA
- geopolitical risk San Francisco, CA
- technology risk San Francisco, CA


