Sr. Director, Security Governance, Risk and Compliance
$244k - $390.58kDocuSign
Senior Director, Security Governance, Risk, and Compliance (GRC)
Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people's lives. With intelligent agreement management, Docusign unleashes business-critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity. Using Docusign's Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e-signature and contract lifecycle management (CLM).
As the most trusted brand in our industry, Docusign recognizes the profound importance of maintaining and enhancing customer trust in our products. Docusign's security program is vital to that trust, and this role is a critical leadership position driving our success. The Senior Director, Security Governance, Risk, and Compliance (GRC) will be a technically proficient, business savvy leader who manages all aspects of the GRC program and multiple facets of product and enterprise security. Security GRC will embed within Product, Technology, Digital Technology, and Sales teams to proactively identify and reduce security risks - transforming legacy GRC practices into a more contemporary, productized capability and replacing document-centric compliance with scalable security controls built directly into engineering and business workflows. The Senior Director, GRC will tailor and implement Docusign's security controls framework to protect the platform, company, and customers through a risk-based approach to security. They will enhance engineering and development capabilities within the GRC team; implement contemporary, cost-effective tools and practices to automate historically manual activities; and leverage AI and ML where appropriate to optimize efficiencies while delivering at scale and with speed while managing emerging risk and supporting product and business innovation. This position will leverage leading security frameworks like NIST, ISO, and BSIMM as foundations for the overall security program while driving continuous improvement. The role will ensure that security governance mechanisms and documentation are implemented and effective. The Senior Director will also be responsible for driving revenue growth through direct support to Sales teams, managing customer security assurance, ensuring audit readiness in preparation for certification and global regulatory and customer requirements. Ultimately, the Senior Director will be responsible for managing GRC product innovation, development, engineering, and delivery. The role will deepen security within the platform and across the enterprise, while enhancing customer trust. They will be charged with optimizing the GRC user experience - serving as the product owner for the security controls framework and security risk mitigation; ensuring policies, standards, procedures, and controls are designed for adoption, automated by default, and measured through real-time data; and driving revenue growth through GRC support to the business.
This position is a people manager role reporting to the Group Vice President, Chief Information Security Officer.
Responsibility
- Lead and manage the global GRC team and program, including core components: GRC engineering, governance, risk, compliance, and customer security assurance
- Manage a high-performing, product-driven team focused on measurable outcomes and continuous improvement. Implement tailored program goals, objectives, milestones, key results, and key performance indicators to drive consistent progress and outcomes
- Define and drive a multi-year product vision and roadmap for security governance, risk, and compliance (including GRC engineering and development) focused on adoption and measurable risk reduction
- Establish the architectural blueprint that transforms GRC into a scalable product platform and service
- Set vision, strategy, and leadership for how governance, risk, and compliance are engineered and automated across the company, translating requirements into a technology-driven automation strategy
- Manage architecting of scalable platforms for GRC automation and evidence production, while growing the team's technical skills sets and ensuring engineering and development best practices
- Manage delivery and prioritization while ensuring timely delivery of GRC product, engineering, and risk reduction capabilities
- Maintain expertise in components and capabilities of the product ecosystem as well as company infrastructure, environments, data, and security controls
- Maintain expertise in security threats, trends, technologies, and industry best practices (existing and emerging)
- Serve as a trusted leader/advisor to the CISO, other executives, and teams – translating technical risk into business impact, providing clear updates, trade-offs, and advice
- Manage collaboration and effective relationships with cross-functional teams to ensure frictionless security and paved path approaches with leadership across the business
- Manage the GRC budget and resourcing
- Ensure security practices and controls meet internal security policy and standards, industry frameworks, and regulatory and customer requirements
- Implement contemporary tooling and automation to optimize insights, efficiency, and efficacy while enhancing technical security rigor
- Contribute to technical requirements, architectural design and modification documents, and educational resources
- Serve as a senior escalation point for complex or high risk security issues; drive architectural, process, and implementation improvements from lessons learned
- Implement the GRC strategy for using AI across GRC teams and responsibilities; maintain a high level of individual proficiency in using AI to perform daily and longer term tasks
- Manage and continuously improve the company-wide Docusign security controls framework, ensuring controls are appropriately tailored and effective across all domains
- Manage compliance requirements relevant to modern software development, enterprise security, and trust and safety protections against platform abuse
- Serve as Security's primary liaison between technical teams and regulatory/audit bodies
- Work closely with third-parties on assessments, audits, attestations, and in shaping security programs, roadmaps, and deliverables
What You Bring
Basic
- 15+ years' working experience in Security GRC, Product Security, Application Security, Engineering, Trust and Safety or closely related security and engineering disciplines, with 8+ years in technical leadership roles
- Bachelor's degree in computer science, data science, artificial intelligence, machine learning, cybersecurity, risk management, or a related technical field
- Experience designing and leading security programs, including but not limited to security risk management, governance (especially under NIST, ISO, and FedRAMP frameworks), compliance, engineering/secure development, customer security assurance, product security, enterprise security, and trust and safety
- Experience with NIST CSF, NIST SDF, NIST AI RMF, ISO 27001, SOC, BSIMM, IL5, FedRAMP High, and other, more narrowly tailored or geographically focused security frameworks
- Experience driving automation strategies, predictive analytics, and data-driven insights
- Experience in implementing or improving security tools where they previously did not exist, did not perform to expectations, and/or better options emerged (e.g., workflow tools, case management systems, agents developed and trained to meet mission)
- Experience designing and embedding security controls across the business, plus validating efficacy
- Experience defining security KPIs, metrics pipelines, and executive reporting frameworks
- Experience with cross-functional collaboration and stakeholder engagement across technical and business relationships, especially with Product, Technology, Digital Technology, Sales, Security, and executive teams
Preferred
- Master's degree or higher
- Deeply technical with strong strategic vision, tactical acumen, excellence in execution
- Forward looking and acting with the ability to understand and address current and future threats and business requirements exceedingly well and manage products and their team to suit
- Growth and product mindset; oriented to action and delivery; professional teammate
- Excellent leadership, communications, and presentation skills
- Certifications: CISSP, CCISO, CISM, CRISC, CGRC, CCSP, CSSLP, GSLC, GSEC, or equivalent
- Substantial experience in implementing best practices and compliance obligations for AI product security and AI enterprise security
- Demonstrated experience with modern security frameworks applied to cloud-native environments and SaaS products
- Experience embedding GRC requirements into CI/CD pipelines (shift-left security)
- Extensive technical knowledge, including network infrastructure, automated workflows, secure coding practices, cryptography basics, threat modeling, and data systems architecture
- Strong experience with project management that includes a track record of success
Wage Transparency
Pay for this position is based on a number of factors including geographic location and may vary depending on job-related knowledge, skills, and experience.
Based on applicable legislation, the below details pay ranges in the following locations:
California: $244,000.00 - $390,575.00 base salary
Washington, Maryland, New Jersey and New York (including NYC metro area
$122.6k - $263.7k
...Opportunity: Lead Adobe's Security Risk and Governance program by advancing the security risk strategy through qualitative and quantitative... ...framework, ensuring accurate risk capture, prioritization, and compliance with regulatory changes. * Lead the Security Governance...SeniorTemporary workLocal areaWorldwide- Sierra Forest Products is seeking a Credit Manager to provide strategic credit risk support across U.S. operations. This role focuses on ensuring strong credit governance and compliance while enabling profitable growth through disciplined credit decision-making. The ideal...Senior
- ...Senior Vice President, Legal and Chief Compliance Officer (CCO) About the Company Nationally recognized healthcare services... ...-level role that directly impacts organizational strategy, governance, and risk posture. The successful candidate will be a trusted advisor...Senior
$153.6k - $192k
Brex is seeking a Senior GRC Engineer in Seattle to drive critical Governance, Risk, and Compliance processes. This role involves automating security controls and building integrations to maintain compliance as Brex expands. Candidates should have over 5 years of experience...Senior$185k - $277k
...The Senior Manager of Enterprise Security is a technical people leader responsible... ...AI-augmented SecDevOps and continuous compliance programs, and leads a living, learning... ...partnership with Engineering, IT, Legal, and Governance, Risk, and Compliance, this leader...SeniorWork at officeRemote work$130k - $175k
...sensitive technologies, and risks associated with potential exploitation... ...data, demand for national security-focused risk analysis and... ...data analytics, automated compliance monitoring, and advanced security... ...serves as fiduciary to U.S. government agencies as either third-...Full timePart timeFlexible hours$166k - $195k
...rewards. The AI Platform team builds the secure foundation that enables responsible,... ...mission is to provide the infrastructure, governance controls, and reusable services that... ...partner closely with Security, Privacy, Risk, Compliance, Engineering, and Data Science to ensure...SeniorWork at officeShift work3 days per week$137.6k - $165.04k
Senior Manager, Information Security & Compliance What you’ll do The Senior Manager... ...information security, risk management, and compliance programs... ...Responsibilities Strategy, Governance & Leadership Provide... ...Eligible for a discretionary Sr Manager bonus based on company...SeniorTemporary workWork at officeWork from homeFlexible hours$197.5k - $265k
Executive Director, Info Security Job ID 10152675 Location Seattle, Washington, United States / Glendale, California, United States... ...innovation and imagination fuel everything we do. The InfoSec Governance, Risk & Compliance (GRC) team is not just a guardian of standards - we...Work experience placementLocal areaWorldwideShift work- ...Principal Software Engineer to spearhead the technical vision for its foundational platform, which supports accounts, billing, and governance across products. This strategic role requires blending technical expertise with business acumen to drive innovations that impact...SeniorRemote work
$168k - $220.5k
...to empower the business while navigating risk and playing in possibility. We are a... ...terms and vendor contracts, advising on compliance requirements, developing policies relating... ...obligations relating to data disclosures and governance, platform/system safety and integrity,...SeniorPermanent employmentPart timeWork at office- ...Jobright.ai is seeking a visionary Technical Director – Application Security to lead a new product security team at Wizards of the Coast in Renton, WA. The role involves creating a robust application security program to ensure secure experiences for players. The ideal...Senior
$276k - $414k
...services; and its AR glasses, Spectacles. Snap Security teams protect the trust and safety of... ...Identify systemic product security risks and assume direct ownership of high-impact... ...towards our environmental, social, and governance (ESG) goals, and we lay out our plans looking...SeniorFull timeLive inWork at officeLocal area$140.1k - $206.78k
...The Information System Security Officer (ISSO) or Security... ...You will report to the Sr. Director of Public Sector and Insider Risk, managing projects, customer... ...and implement effective compliance solutions and rigorous... ...the evolving needs of government agencies. This position...SeniorContract workWork experience placementWork at officeLocal areaRemote work2 days per week$141k - $187k
...Sr. Manager, Event Security & Safety Bellevue, Washington, United States The Sr. Manager, Event Security & Safety is a senior event leader... ...0k-50k+ attendees) providing direction to internal team, government agencies, vendors, and supporting cross functional...SeniorTemporary workWork at officeRelocation package- ...small, highly skilled team of security professionals, the Blue... ...security operations for multiple government programs. This role has... ...deliverables, milestones, and compliance obligations are met on time... ...to the Government Security Director. **Key Responsibilities:**Guide...SeniorTemporary workFor contractorsImmediate start
$112k - $142.5k
..., and it’s what we show up for everyday. We are looking for a Sr. Risk and Renewals Operations Manager to develop and manage a world-... ...decision. Responses are aggregated for program improvement and compliance purposes. For details, see Smartsheet’s EEOC and OFCCP-related...SeniorFull timeContract workTemporary workLocal area- Find Your Next Career AEG is dedicated to both the letter and the spirit of the equal employment opportunity laws. It is AEG's policy to prohibit unlawful discrimination against any employee or applicant for employment based on race, color, religion, religious dress...SeniorTemporary work
$244k - $390.58k
...our products. The Senior Director, Product Security leads all aspects of the DocuSign... ...and broader risks. The role will oversee developer... ...automated scanning, testing, and compliance checks at every stage and... ...) Knowledge of AI governance frameworks (e.g., AI RMF,...SeniorContract workWork at officeLocal areaRemote work2 days per week$115k - $168k
CoreWeave in Bellevue, Washington, seeks a Business Operations Manager to support the Office of the COO. This role involves coordinating team communications, planning cycles, and organizational priorities. The ideal candidate has 4-6 years of experience in business operations...SeniorWork at office- ...and staffing to businesses and governments in Canada. With revenues over... ...& Network Services Risk Management & Compliance Business Continuity & Disaster Recovery Security & Privacy Specialties Contract... ...Services is searching for a Sr. Scrum Manager for a contract...SeniorPermanent employmentContract workFor contractorsImmediate start
$117k - $175k
Senior Lead Health Actuarial Consultant We are seeking an experienced Health Actuary to join our Actuarial and Financial Consulting teams at Mercer. This hybrid role (minimum of 3 days in the office) can be located in any of our office locations across the United States...SeniorMinimum wageWork at office$130k - $175k
...role. The position involves leading project teams on national security reviews, implementing Zero Trust architecture, and conducting... ...assessments. Candidates should possess 8+ years of experience in tech governance, proficiency in programming, and relevant certifications. The...Remote work- ...Insights Delivery team, leading AI-first metric definition, data governance, and data quality programs. You will partner with data... ...dependencies, and delivery across governance initiatives, surfacing risks and trade-offs early. Partner with product, engineering, data platform...Senior
$164k - $200k
...Engineer About us Hyperproof is on a mission to transform the Governance, Risk, and Compliance (GRC) world with a powerful new software platform. With... ...a passion for ensuring the reliability, scalability, and security of cloud-based infrastructure. You thrive in dynamic...SeniorFull timeFor contractorsLocal areaImmediate startHome office$200k - $300k
...the VP Procurement, Corporate Functions, the Senior Director, Procurement Governance, Risk & Compliance leads the enterprise procurement governance and third... ...with Legal, Compliance, Finance, Operations, IT/Security, and Sustainability to ensure supplier risk is identified...SeniorFull timeContract workWork at office- ...through technical configuration of the Risk & Resilience products Be the technical expert... ...Implementation Specialist in Risk and Compliance (CIS‑RC) 10-12 years of ServiceNow... ...to obtain export control approval from government authorities for certain individuals. All...Senior
- ...Manager of Program Management will lead a multi-year transformation of store fulfillment operations, owning portfolio strategy, governance, and scaled deployment of new capabilities across approximately 400 store locations. This leader partners with Product & Technology...Senior
$141.7k - $202.7k
Job Summary The Sr. Business Information Security Officer (Sr. BISO) - Consumer and Wealth... ...to conduct specialized, risk‑based information security... ...’s risk management and compliance programs. Monitor internal... ...compliance with policies and laws governing information security....SeniorShift workDay shift$90k - $130k
Overview DPR Construction is seeking a Sr. Lead EHS Specialist - Core Market. This individual will create, consult... ...at various levels. This role will help shape complex risk management strategies, support compliance efforts, and develop solutions for specific projects, incidents...SeniorWork at office
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. Director, Security Governance, Risk and Compliance. Be the first to apply!
- surveillance manager Seattle, WA
- security operations manager Seattle, WA
- physical security manager Seattle, WA
- security engineering manager Seattle, WA
- program manager with security clearance Seattle, WA
- corporate security manager Seattle, WA
- senior director information security Seattle, WA
- director information security Seattle, WA
- security manager Seattle, WA
- senior security manager Seattle, WA

