Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Governance, Risk & Compliance (GRC) Manager

$190k - $215k

Sigma Computing

Governance, Risk & Compliance (GRC) Manager

Sigma is seeking an experienced GRC Manager to lead and scale our governance, risk, and compliance programs. This role is based in our San Francisco office or upcoming New York office and reports to the General Counsel. You'll have the opportunity to build a strategic, enterprise-wide GRC function that enables business growth while managing organizational risk.

As our GRC Manager, you'll partner with Legal, Engineering, Product, Sales, Operations, and leadership to develop a comprehensive GRC framework that protects Sigma's interests, supports our strategic objectives, and builds stakeholder trust. You'll mature our governance structures, implement scalable risk management processes, and ensure compliance with applicable regulatory requirements-all while enabling the business to move quickly and confidently.

What You'll Do

Governance
  • Design and implement governance frameworks, including reporting, policy governance, and control oversight
  • Establish and maintain enterprise policies, standards, and procedures across technology, security, privacy, and operational functions
  • Build and lead a governance committee structure that provides appropriate oversight and decision-making
  • Create governance dashboards and metrics to provide visibility into program maturity and effectiveness
  • Partner with leadership to align governance activities with business strategy and risk appetite
Risk Management
  • Develop and operate a comprehensive Enterprise Risk Management (ERM) program
  • Conduct regular enterprise-wide risk assessments and maintain a dynamic risk register
  • Build and maintain business continuity and disaster recovery programs, including regular testing and tabletop exercises
  • Implement third-party risk management processes, including vendor risk assessments, contract reviews, and ongoing monitoring
  • Create risk treatment plans and track remediation activities across the organization
  • Facilitate risk-informed decision-making at all levels of the organization
  • Coordinate with functional leaders to ensure risks across all business areas are identified and managed appropriately
Compliance
  • Own audit and certification programs including SOC 2, ISO 27001, HIPAA, and other relevant standards
  • Develop and maintain compliance monitoring programs to track regulatory changes and work with the legal team to assess impact
  • Partner with HR and Legal to support labor & employment compliance programs, including workplace safety, anti-discrimination, wage and hour requirements, and multi-jurisdictional employment regulations
  • Monitor and ensure adherence to industry-specific regulatory requirements relevant to Sigma's business operations
  • Manage security awareness training programs enterprise-wide
  • Conduct internal audits and assessments to validate control effectiveness
  • Coordinate external audits and assessments with third-party auditors
Business Enablement
  • Support sales and customer success teams with compliance documentation and security inquiries
  • Develop customer-facing materials that articulate Sigma's risk management and compliance posture
  • Complete and manage responses to customer security questionnaires and assessments (VSAs, SIGs, custom questionnaires)
  • Enable efficient deal cycles by maintaining ready-to-use compliance artifacts, trust center content, and documentation
  • Partner with Sales Engineering and Solutions teams to address prospect security and compliance requirements
What You Bring

Required
  • 4+ years of experience in governance, risk management, and/or compliance roles, preferably in SaaS or technology companies
  • Demonstrated experience building or significantly maturing a GRC program from the ground up
  • Track record of successfully leading certification audits (SOC 2, ISO 27001, HIPAA, or similar)
  • Experience implementing risk management frameworks (COSO, ISO 31000, NIST RMF, or similar)
  • Strong knowledge of data privacy regulations and their practical application (GDPR, CCPA, etc.)
  • Experience developing and maintaining information security and privacy policies, procedures, and control frameworks
  • Strong business acumen with ability to translate risk and compliance requirements into business value
  • Excellent communication skills with ability to influence stakeholders at all levels, including leadership
  • Proven ability to manage multiple priorities and stakeholders in a fast-paced, high-growth environment
  • Collaborative mindset and commitment to enabling business success while managing risk
Preferred
  • Experience with GRC platforms (ServiceNow GRC, Archer, LogicGate, or similar)
  • Hands-on experience with cloud environments (GCP, AWS, Azure) from a compliance and security perspective
  • Experience with labor & employment compliance or cross-functional collaboration with HR on regulatory matters
  • Familiarity with multi-state or international employment regulations
  • Experience with continuous compliance automation tools (Vanta, Drata, Secureframe, Tugboat, or similar)
  • Professional certifications such as CRISC, CISA, CISM, CGEIT, CISSP, or CIPP
  • Experience in high-growth SaaS or technology companies
  • Background in both technical and operational risk management
  • Experience working in organizations with distributed or remote teams
  • Familiarity with security frameworks such as NIST CSF, CIS Controls, or OWASP
Why Join Sigma

This is an opportunity to build a world-class GRC program that doesn't just check boxes but genuinely enables the business to pursue opportunities with confidence. You'll work across the entire organization, have direct access to the General Counsel, and make a tangible impact on how Sigma manages risk and creates value for customers.

Additional Job details

The base salary range for this position is $190k - $215k annually.

Compensation may vary outside of this range depending on a number of factors, including a candidate's qualifications, skills, competencies and experience. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work at Sigma Computing. This role is eligible for stock options, as well as a comprehensive benefits package.

About us:

Sigma is the AI Apps and agentic analytics platform built on the cloud data warehouse. Business and technical teams use Sigma to explore live data, build intelligent applications, and automate critical workflows all without moving data or breaking governance. Sigma supports a spreadsheet interface, SQL, Python, and native AI in a single governed workspace, giving every team the speed to act and IT the control to scale. Sigma is trusted by more than 2,000 customers, including AMD, Duolingo, Colgate-Palmolive, and JPMorgan Chase.


Sigma announced its $80M in Series E financing in May 2026. The round was led by Princeville Capital, with new strategic investors Databricks Ventures, ServiceNow Ventures, and Workday Ventures participating alongside returning investors Altimeter Capital, Avenir Growth Capital, D1 Capital Partners, K5 Global, NewView Capital, Spark Capital, Sutter Hill Ventures, and XN. This milestone follows Sigma reaching $200M in annual recurring revenue in April 2026, with more than 100% year-over-year growth and 1.1 million new active users added in the latest fiscal year.

Come join us!
Benefits For Our Full-Time Employees:
  • Equity
  • Generous health benefits
  • Flexible time off policy. Take the time off you need!
  • Paid bonding time for all new parents
  • Traditional and Roth 401k
  • Commuter and FSA benefits
  • Lunch Program
  • Dog friendly office

Sigma is an equal opportunity employer. We are committed to building a smart and strong team regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, veteran, or any other protected status. We look forward to learning how your experience can enable all of us to grow.

Note: We have an in-office work environment in all our offices in SF, NYC, London and Sydney.

Our Privacy Practices

When you submit a job application on this site, Sigma processes your personal data for the purposes of evaluating your candidacy for employment at Sigma and as otherwise needed throughout the recruitment and hiring process. Please review Sigma's Candidate Privacy Notice for more details. Please note that your personal data may be transferred to a country other than the one in which it was provided (including to the USA, the UK, and Canada, Australia).


Sigma's use of AI

This hiring process utilizes artificial intelligence tools to assist in candidate screening and assessment. Our AI tools are designed to complement, not replace, human decision-making.
Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Governance, Risk & Compliance (GRC) Manager in San Francisco, CA vacancy
  • $300k - $360k

    Ripple is seeking a Senior Director of Governance, Risk and Compliance in San Francisco. This leadership role involves defining the GRC strategy, leading a diverse team, and ensuring compliance with various regulations. Candidates should have over 15 years of experience... 
    Suggested

    Ripple

    San Francisco, CA
    2 days ago
  • $135k - $165k

     ...company transforming how organizations review, negotiate, and manage contracts. Security, privacy, and trust are foundational...  ...continue to scale, we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security compliance... 
    Suggested
    Contract work
    Flexible hours

    IVO Inc

    San Francisco, CA
    1 day ago
  •  ...Francisco, CA. This hands-on role focuses on automating compliance workflows, data governance, and AI-driven automation. Key responsibilities include designing GRC workflows, building dashboards, and supporting data management. Required skills include 5 years in GRC... 
    Suggested

    Spectraforce Technologies

    San Francisco, CA
    3 days ago
  • $159k

     ...Business Operations / Strategy; Compliance / Risk / Quality Assurance  Job Level: Senior Manager Business Unit: Strategy &...  ...Compliance organization provides governance, oversight, and strategic direction...  ...and analytics platforms (e.g., GRC, SAP, Power BI) to support... 
    Suggested
    Work experience placement
    Work at office
    Flexible hours

    PG&E Corporation

    Brisbane, CA
    7 days ago
  • $190k - $275k

     ...Role Join Decagon as a Compliance Manager and play a critical role in...  ...repeatable processes to scale our GRC operations to hundreds of...  ...Establish vendor risk management programs to assess...  ...CCPA, GDPR, and emerging AI governance frameworks ~ Strong project... 
    Suggested
    Full time
    For contractors
    Work at office
    Local area

    Decagon

    San Francisco, CA
    1 day ago
  • $130k - $150k

     .... About This Role We’re seeking a GRC Analyst to support the day-to-day execution of our Governance, Risk, and Compliance program. Reporting to the Head of GRC, this...  ..., customer trust support, and vendor risk management. You’ll play a key role in maintaining... 
    Temporary work

    Crusoe

    San Francisco, CA
    27 days ago
  •  ...GRC Analyst Location: San Francisco, CA (4 days onsite) Duration: 6+ months Key Responsibilities...  ...: Conduct technical vendor risk assessments (security, privacy,...  ...reject with clear rationale Track and manage vendor risk findings, remediation plans, and... 

    WinMax

    San Francisco, CA
    1 day ago
  • $150k

    Crusoe Energy Systems LLC is looking for a GRC Analyst in San Francisco, CA to support their Governance, Risk, and Compliance program. The role includes managing user access reviews, supporting audits, and leveraging AI tools for process improvements. Ideal candidates... 

    Crusoe Energy Systems LLC

    San Francisco, CA
    4 days ago
  • $193.8k - $228k

    Senior GRC Analyst II job at Carta. San Francisco, CA. The Problems...  ...establish and maintain governance and risk frameworks. You will build and run security compliance programs to measure and reduce...  ...compliance metrics, and build and manage policies and standards. Here... 
    Full time

    Itlearn360

    San Francisco, CA
    1 day ago
  • $159k

     ...Business Operations / Strategy  Job Level: Senior Manager Business Unit: Strategy & Growth Work Type: Hybrid...  ...Yuba City    Department Overview: The Electric Risk & Compliance organization provides governance, oversight, and strategic direction on risk and... 
    Contract work
    Work experience placement
    Work at office
    Flexible hours
    2 days per week
    3 days per week

    PG&E Corporation

    Daly City, CA
    8 days ago
  • $193k - $220k

     ...information security function, and this is a critical hire for the program's next phase of maturity. The Senior Manager, Governance Risk & Compliance (GRC) will report directly to the Chief Information Security Officer (CISO) and own the build-out of the firm's governance... 
    Full time
    H1b
    Local area
    Immediate start
    Work visa

    Andersen Tax

    San Francisco, CA
    1 day ago
  •  ...and maintenance of Lambda's IT Risk Register across the full risk...  ...risk and controls management topics and program-specific reporting...  ...information security control maturity, compliance status, risks, performance...  ...with at least one enterprise GRC or TPRM platform: AuditBoard,... 
    Work at office
    Local area
    Work from home
    Flexible hours

    Lambda Corporation

    San Francisco, CA
    12 days ago
  •  ...solutions is looking for a Security GRC Analyst Details:...  ...understanding of security controls and compliance Experience GRC in Risk Management (identify, assess, monitor, and report...  ...reporting to data security and access governance program Respond to and follow... 

    Nava Software Solutions

    San Francisco, CA
    5 days ago
  • $300k - $360k

    Senior Director of Governance, Risk and Compliance As the Senior Director of GRC, you will define and lead Ripple's Governance, Risk & Compliance strategy. This...  ...collection to AI‑assisted risk assessments and policy management, reducing manual overhead, accelerating audit... 
    Full time
    Local area
    Worldwide
    Shift work

    Ripple

    San Francisco, CA
    2 days ago
  • $95k - $130k

    Overview Security GRC Analyst job at LiveRamp. San...  ...of rapidly evolving compliance and privacy requirements...  ...is designed to reduce risk in alignment with...  ...Director of Global Security Governance, Risk and Compliance...  ...security risk management, security maturity assessments... 
    Work at office
    Remote work
    Work from home
    Flexible hours
    Night shift

    Itlearn360

    San Francisco, CA
    3 days ago
  • $95k - $130k

    LiveRamp is seeking a Security GRC Analyst in San Francisco to support security risk management, compliance, and reporting efforts. You will collaborate closely with various teams to address and mitigate risks while maintaining high compliance standards. The ideal candidate... 
    Remote job

    Itlearn360

    San Francisco, CA
    3 days ago
  • $135k - $165k

    Ivo AI, Inc. is looking for a Governance, Risk & Compliance (GRC) Analyst based in San Francisco. This role involves supporting compliance programs, conducting risk assessments, and maintaining security policies. The ideal candidate has 3-5 years of related experience... 
    Flexible hours

    Ivo AI, Inc.

    San Francisco, CA
    1 day ago
  •  ...Senior Vice President, Legal and Chief Compliance Officer (CCO) About the Company Nationally recognized healthcare services...  ...-level role that directly impacts organizational strategy, governance, and risk posture. The successful candidate will be a trusted advisor... 

    Confidential

    San Francisco, CA
    16 hours ago
  •  ...leading conversational AI firm in San Francisco is seeking a Compliance Manager to secure customer trust and manage compliance programs. This...  ...ensure security standards. Candidates should have 3-5 years of GRC experience, strong project management skills, and a... 

    Decagon

    San Francisco, CA
    16 hours ago
  • $175k - $210k

     ...while taking immense pride in the work we deliver. Position Summary The Compliance Manager is primarily responsible for key business functions of our commercial construction company, including risk management, regulatory compliance, and contracts administration.... 
    Contract work
    For contractors
    For subcontractor
    Work at office
    Local area

    Singular Builders

    San Francisco, CA
    1 day ago
  •  ...integrated solutions to manage everything from business...  ...Team The Financial Crime Compliance (FCC) team at Airwallex is...  ...program, sanctions framework, risk assessment methodology, and governance infrastructure across all...  ...and Risk Committee (GRC). Provide strategic regulatory... 
    Local area
    Worldwide
    Shift work

    Airwallex Pty Ltd.

    San Francisco, CA
    16 hours ago
  • $130.7k - $177.1k

    Job Overview Compliance Senior Manager Keurig Dr Pepper is seeking to add a dynamic compliance specialist...  ..., and international trade. Conduct risk assessments of existing compliance...  ...Oversee and manage KDP’s corporate policy governance process, from policy design and... 
    Work at office
    Remote work
    Monday to Friday

    Keurig Dr Pepper

    San Francisco, CA
    4 days ago
  • $130k - $160k

    Asana is hiring a Security Risk and Compliance Analyst in San Francisco. This role involves maturing Asana’s compliance programs across various security standards like SOC 2, ISO 27001, and FedRAMP. The successful candidate will support audits, enhance control frameworks... 

    Asana

    San Francisco, CA
    1 day ago
  •  ...Position Summary This position manages regulatory, contractual, and political compliance across AACRE’s 501(c)(3) and 501...  ...requirements, including nonprofit governance, multi-state registrations,...  ...strengthens internal systems, mitigates risk, and builds integrated... 
    Contract work
    Work at office
    Local area

    Asian Americans for Civil Rights and Equality

    San Francisco, CA
    1 day ago
  • $10k

     ...companies: authorizing payments, flagging risk, categorizing spend, and closing books....  ...that directly shape how companies move and manage billions, Ramp is the place to do it....  ...Role Ramp is seeking an experienced Product Compliance Program Manager to join our Regulatory Compliance... 
    Full time
    Work at office
    Home office
    Relocation package
    Flexible hours

    Ramp

    San Francisco, CA
    3 days ago
  • $250k - $300k

     ...Director, Security & Compliance San Francisco, CA At Instabase, we're passionate about democratizing access...  ...Compliance , you'll be responsible for building and managing out our Security and GRC (Governance, Risk, IT and Compliance) program, driving strategy and... 
    Work at office
    Flexible hours

    Instabase

    San Francisco, CA
    1 day ago
  • $85 - $90 per hour

     ...People Data Review Program Manager The People Data Review Program Manager will join the People Risk, Privacy, Compliance (PRPC) team to work across our key partners to lead risk initiatives to scale our global program. Specifically, the People Data Review Program Manager... 
    Hourly pay
    Full time
    Local area
    Flexible hours

    Aditi Consulting LLC

    San Francisco, CA
    3 days ago
  • Senior Privacy & Compliance Risk Program Manager Location: Remote (West Coast/PST Preferred) Duration: 6 Months Contract (Potential Extension...  ...risk assessment, compliance management, assurance, or governance roles. ~ Strong expertise in privacy compliance,... 
    Contract work
    Remote work

    Spectraforce Technologies

    San Francisco, CA
    2 days ago
  • $162k - $180k

     ...within the broader Finance Risk Management (FRM) organization and plays...  ...operations. Our team designs and governs the Internal Controls over...  ...Finance, Legal, and Compliance to ensure processes are well...  ...with ERP/subledger systems and GRC tooling (e.g., Oracle/NetSuite... 
    Work at office
    Relocation package

    OpenAI

    San Francisco, CA
    3 days ago
  • $140k - $180k

     ...Security Compliance Manager We are looking for a highly motivated Security Compliance Manager...  ...Company personnel screening compliance and risk monitoring. The ideal candidate is...  ...to your role Manage a comprehensive Governance, Risk and Compliance program Adhere... 

    Hive

    San Francisco, CA
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Governance, Risk & Compliance (GRC) Manager. Be the first to apply!