Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. Director, Security Governance, Risk and Compliance

$244k - $390.58k

DocuSign Inc

Company Overview Docusign brings agreements to life. Over 1.5 million customers and more than a billion people in over 180 countries use Docusign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docusign unleashes business‑critical data that is trapped inside of documents. Until now, these were disconnected from business systems of record, costing businesses time, money, and opportunity. Using Docusign’s Intelligent Agreement Management platform, companies can create, commit, and manage agreements with solutions created by the #1 company in e‑signature and contract lifecycle management (CLM). What you’ll do As the most trusted brand in our industry, Docusign recognizes the profound importance of maintaining and enhancing customer trust in our products. Docusign’s security program is vital to that trust, and this role is a critical leadership position driving our success. The Senior Director, Security Governance, Risk, and Compliance (GRC) will be a technically proficient, business savvy leader who manages all aspects of the GRC program and multiple facets of product and enterprise security. Security GRC will embed within Product, Technology, Digital Technology, and Sales teams to proactively identify and reduce security risks—transforming legacy GRC practices into a more contemporary, productized capability and replacing document‑centric compliance with scalable security controls built directly into engineering and business workflows. The Senior Director, GRC will tailor and implement Docusign’s security controls framework to protect the platform, company, and customers through a risk‑based approach to security. They will enhance engineering and development capabilities within the GRC team; implement contemporary, cost‑effective tools and practices to automate historically manual activities; and leverage AI and ML where appropriate to optimize efficiencies while delivering at scale and with speed while managing emerging risk and supporting product and business innovation. This position will leverage leading security frameworks like NIST, ISO, and BSIMM as foundations for the overall security program while driving continuous improvement. The role will ensure that security governance mechanisms and documentation are implemented and effective. The Senior Director will also be responsible for driving revenue growth through direct support to Sales teams, managing customer security assurance, ensuring audit readiness in preparation for certification and global regulatory and customer requirements. Ultimately, the Senior Director will be responsible for managing GRC product innovation, development, engineering, and delivery. The role will deepen security within the platform and across the enterprise, while enhancing customer trust. They will be charged with optimizing the GRC user experience—serving as the product owner for the security controls framework and security risk mitigation; ensuring policies, standards, procedures, and controls are designed for adoption, automated by default, and measured through real‑time data; and driving revenue growth through GRC support to the business. This position is a people manager role reporting to the Group Vice President, Chief Information Security Officer. Responsibility Lead and manage the global GRC team and program, including core components: GRC engineering, governance, risk, compliance, and customer security assurance Manage a high‑performing, product‑driven team focused on measurable outcomes and continuous improvement. Implement tailored program goals, objectives, milestones, key results, and key performance indicators to drive consistent progress and outcomes Define and drive a multi‑year product vision and roadmap for security governance, risk, and compliance (including GRC engineering and development) focused on adoption and measurable risk reduction Establish the architectural blueprint that transforms GRC into a scalable product platform and service Set vision, strategy, and leadership for how governance, risk, and compliance are engineered and automated across the company, translating requirements into a technology‑driven automation strategy Manage architecting of scalable platforms for GRC automation and evidence production, while growing the team's technical skills sets and ensuring engineering and development best practices Manage delivery and prioritization while ensuring timely delivery of GRC product, engineering, and risk reduction capabilities Maintain expertise in components and capabilities of the product ecosystem as well as company infrastructure, environments, data, and security controls Maintain expertise in security threats, trends, technologies, and industry best practices (existing and emerging) Serve as a trusted leader/advisor to the CISO, other executives, and teams—translating technical risk into business impact, providing clear updates, trade‑offs, and advice Manage collaboration and effective relationships with cross‑functional teams to ensure frictionless security and paved path approaches with leadership across the business Manage the GRC budget and resourcing Ensure security practices and controls meet internal security policy and standards, industry frameworks, and regulatory and customer requirements Implement contemporary tooling and automation to optimize insights, efficiency, and efficacy while enhancing technical security rigor Contribute to technical requirements, architectural design and modification documents, and educational resources Serve as a senior escalation point for complex or high risk security issues; drive architectural, process, and implementation improvements from lessons learned Implement the GRC strategy for using AI across GRC teams and responsibilities; maintain a high level of individual proficiency in using AI to perform daily and longer term tasks Manage and continuously improve the company‑wide Docusign security controls framework, ensuring controls are appropriately tailored and effective across all domains Manage compliance requirements relevant to modern software development, enterprise security, and trust and safety protections against platform abuse Serve as Security’s primary liaison between technical teams and regulatory/audit bodies Work closely with third‑parties on assessments, audits, attestations, and in shaping security programs, roadmaps, and deliverables Job Designation Hybrid: Employee divides their time between in‑office and remote work. Access to an office location is required. (Frequency: Minimum 2 days per week; may vary by team but will be weekly in‑office expectation) Positions at Docusign are assigned a job designation of either In Office, Hybrid or Remote and are specific to the role/job. Preferred job designations are not guaranteed when changing positions within Docusign. Docusign reserves the right to change a position’s job designation depending on business needs and as permitted by local law. What you bring Basic 15+ years’ working experience in Security GRC, Product Security, Application Security, Engineering, Trust and Safety or closely related security and engineering disciplines, with 8+ years in technical leadership roles Bachelor’s degree in computer science, data science, artificial intelligence, machine learning, cybersecurity, risk management, or a related technical field Experience designing and leading security programs, including but not limited to security risk management, governance (especially under NIST, ISO, and FedRAMP frameworks), compliance, engineering/secure development, customer security assurance, product security, enterprise security, and trust and safety Experience with NIST CSF, NIST SDF, NIST AI RMF, ISO 27001, SOC, BSIMM, IL5, FedRAMP High, and other, more narrowly tailored or geographically focused security frameworks Experience driving automation strategies, predictive analytics, and data‑driven insights Experience in implementing or improving security tools where they previously did not exist, did not perform to expectations, and/or better options emerged (e.g., workflow tools, case management systems, agents developed and trained to meet mission) Experience designing and embedding security controls across the business, plus validating efficacy Experience defining security KPIs, metrics pipelines, and executive reporting frameworks Experience with cross‑functional collaboration and stakeholder engagement across technical and business relationships, especially with Product, Technology, Digital Technology, Sales, Security, and executive teams Preferred Master’s degree or higher Deeply technical with strong strategic vision, tactical acumen, excellence in execution Forward looking and acting with the ability to understand and address current and future threats and business requirements exceedingly well and manage products and their team to suit Growth and product mindset; oriented to action and delivery; professional teammate Excellent leadership, communications, and presentation skills Certifications: CISSP, CCISO, CISM, CRISC, CGRC, CCSP, CSSLP, GSLC, GSEC, or equivalent Substantial experience in implementing best practices and compliance obligations for AI product security and AI enterprise security Demonstrated experience with modern security frameworks applied to cloud‑native environments and SaaS products Experience embedding GRC requirements into CI/CD pipelines (shift‑left security) Extensive technical knowledge, including network infrastructure, automated workflows, secure coding practices, cryptography basics, threat modeling, and data systems architecture Strong experience with project management that includes a track record of success Wage Transparency Pay for this position is based on a number of factors including geographic location and may vary depending on job‑related knowledge, skills, and experience. Based on applicable legislation, the below details pay ranges in the following locations: California: $244,000.00 - $390,575.00 base salary Washington, Maryland, New Jersey and New York (including NYC metro area): $228,400.00 - $344,575.00 base salary This role is also eligible for the following: Bonus: Sales personnel are eligible for variable incentive pay dependent on their achievement of pre‑established sales goals. Non‑Sales roles are eligible for a company bonus plan, which is calculated as a percentage of eligible wages and dependent on company performance. Stock: This role is eligible to receive Restricted Stock Units (RSUs). Global benefits provide options for the following: Paid Time Off: earned time off, as well as paid company holidays based on region Paid Parental Leave: take up to six months off with your child after birth, adoption or foster care placement Full Health Benefits Plans: options for 100% employer paid and minimum employee contribution health plans from day one of employment Retirement Plans: select retirement and pension programs with potential for employer contributions Learning and Development: options for coaching, online courses and education reimbursements Compassionate Care Leave: paid time off following the loss of a loved one and other life‑changing events Life at Docusign Working here Docusign is committed to building trust and making the world more agreeable for our employees, customers and the communities in which we live and work. You can count on us to listen, be honest, and try our best to do what’s right, every day. At Docusign, everything is equal. We each have a responsibility to ensure every team member has an equal opportunity to succeed, to be heard, to exchange ideas openly, and to build lasting relationships, and to do the work of their life. Best of all, you will be able to feel deep pride in the work you do, because your contribution helps us make the world better than we found it. Accommodation Docusign is committed to providing reasonable accommodations for qualified individuals with disabilities in our job application procedures. If you need such an accommodation, or a religious accommodation, during the application process please contact us at View email address on click.appcast.io. If you experience any issues, concerns, or technical difficulties during the application process please get in touch with our Talent organization at View email address on click.appcast.io for assistance. Applicant and Candidate Privacy Notice States Not Eligible for Employment This position is not eligible for employment in the following states: Alaska, Hawaii, Maine, Mississippi, North Dakota, South Dakota, Vermont, West Virginia and Wyoming. Equal Opportunity Employer It’s important to us that we build a talented team that is as diverse as our customers and where all employees feel a deep sense of belonging and thrive. We encourage great talent who bring a range of perspectives to apply for our open positions. Docusign is an Equal Opportunity Employer and makes hiring decisions based on experience, skill, aptitude and a can‑do approach. We will not discriminate based on race, ethnicity, color, age, sex, religion, national origin, ancestry, pregnancy, sexual orientation, gender identity, gender expression, genetic information, physical or mental disability, registered domestic partner status, caregiver status, marital status, veteran or military status, or any other legally protected category.

  • LI-Hybrid
  • J-18808-Ljbffr DocuSign, Inc.

Vacancy posted 19 hours ago
Similar jobs that could be interesting for youBased on the Sr. Director, Security Governance, Risk and Compliance in San Francisco, CA vacancy
  • DocuSign, Inc. is seeking a Senior Director, Security Governance, Risk, and Compliance (GRC) to lead their global GRC team. This role requires over 15 years of experience in security leadership, focusing on innovative risk management strategies. The ideal candidate will... 
    Senior

    DocuSign, Inc.

    San Francisco, CA
    19 hours ago
  • $112k

    Manager, InfoSec Governance Risk and Compliance (GRC) Manager, InfoSec Governance Risk and Compliance (GRC) Founded in 2000, Ivalua is a leading...  ...compliance efforts, and serve as a subject matter expert on security frameworks and standards. What You Will Do Lead and own... 
    Senior
    Worldwide

    Ivalua

    San Francisco, CA
    4 days ago
  • A leading technology company is seeking a GRC Manager to build and scale their governance, risk, and compliance programs. This role will focus on developing a comprehensive GRC framework, ensuring compliance with regulations, and enabling business growth. The ideal candidate... 
    Senior

    Sigma Computing

    San Francisco, CA
    9 hours ago
  •  ...Manager Every enterprise spends millions of dollars on Governance, Risk, and Compliance (GRC). It's one of the most critical, yet universally...  ...Team: Zania is hiring the best. Our team includes AI and security leaders from Airbnb, Microsoft, Deloitte, PwC, Brex, and... 
    Suggested
    Work at office
    Visa sponsorship
    Flexible hours

    Zania, Inc

    San Francisco, CA
    19 hours ago
  •  ...Senior Vice President, Legal and Chief Compliance Officer (CCO) About the Company Nationally recognized healthcare services organization...  ...-level role that directly impacts organizational strategy, governance, and risk posture. The successful candidate will be a trusted advisor... 
    Senior

    Confidential

    San Francisco, CA
    19 hours ago
  • Iris Energy is seeking a Regulatory Compliance Manager to oversee compliance frameworks, manage regulatory obligations, and partner with...  ...stakeholders. Candidates must possess over 10 years of experience in risk and compliance roles, preferably within large environments. The... 
    Senior

    Iris Energy

    San Francisco, CA
    3 days ago
  • Alterion in San Francisco seeks a Senior Product Manager to lead the development of security and governance products for AI agents. You will be responsible for translating user needs into actionable product features and engaging with enterprise leaders to structure pilot... 
    Senior

    Alterion

    San Francisco, CA
    1 day ago
  • $198k - $368k

     ...future as we are, join our team. KPMG is currently seeking a Director, Security Compliance to join our Digital Security team. Responsibilities: Apply a comprehensive specialist-level knowledge of risk, compliance, and information security controls to develop and... 
    Temporary work
    H1b
    Local area

    KPMG

    San Francisco, CA
    1 day ago
  • $152k - $189.75k

    Transformcap is seeking a Security Risk Program Manager to elevate their security risk program. This hybrid role involves working onsite...  ...management framework, influence AI tooling adoption, and ensure compliance with external certifications. Candidates should have deep... 
    Senior
    Flexible hours

    Transformcap

    San Francisco, CA
    3 days ago
  • $130k - $175k

     ...sensitive technologies, and risks associated with potential exploitation...  ...data, demand for national security-focused risk analysis and...  ...data analytics, automated compliance monitoring, and advanced security...  ...serves as fiduciary to U.S. government agencies as either third-... 
    Full time
    Part time
    Flexible hours

    Alvarez & Marsal Deutschland GmbH

    San Francisco, CA
    2 days ago
  • $130k - $175k

    Alvarez & Marsal Deutschland GmbH in San Francisco is seeking an experienced professional to lead national security-focused risk analysis. The role involves executing complex advisory projects and implementing security frameworks like Zero Trust. You will collaborate with... 

    Alvarez & Marsal Deutschland GmbH

    San Francisco, CA
    1 day ago
  • Salesforce, Inc. is seeking a Director of Product Management to lead the Partner Security, Governance, and Guardrails Platform in San Francisco. The role involves defining the strategy for ensuring partner-deployed technology remains secure and compliant. You will manage... 

    Salesforce, Inc.

    San Francisco, CA
    4 days ago
  • Centaur Labs is searching for a Director of Product Management in San Francisco, California...  ...strategies for the innovative Partner Security, Governance, and Guardrails Platform. In this role...  ...products to ensure safety and compliance. The ideal candidate will have over 10... 

    Centaur Labs

    San Francisco, CA
    2 days ago
  •  ...Senior Compliance Engineer, AI Governance True Anomaly seeks those with the talent and...  ...build the technology that secures space. True Anomaly delivers...  ...disciplines: an experienced Sr. Compliance Engineer with...  ...background to join our Governance, Risk, and Compliance (GRC) team.... 
    Senior
    Permanent employment

    True Anomaly

    San Francisco, CA
    4 days ago
  • $161.6k - $202k

     ...patients — and that responsibility demands a security and compliance program that scales with the business....  ..., SOC 2, PCI-DSS, HIPAA), third-party risk management, security awareness...  ...This role reports to Blake Atkinson, Director of Security, and partners closely with... 
    Senior
    Work from home
    Flexible hours

    Headway - Design & Development

    San Francisco, CA
    7 hours ago
  • $168.3k - $296.7k

     ...personal information, such as your social security number. What to know: Commvault...  ...have relied on Commvault to reduce risks, improve governance, and do more with data. The...  ...with a unified lens for visibility, compliance, and resilience, ensuring that as data... 
    Remote work
    Shift work

    Commvault

    San Francisco, CA
    2 days ago
  •  ...Level) Every enterprise spends millions of dollars on Governance, Risk, and Compliance (GRC). It's one of the most critical, yet universally painful...  ...Team: Zania is hiring the best. Our team includes AI and Security leaders from Airbnb, Microsoft, Bain & Company, Deloitte,... 
    Senior
    Work at office
    Relocation package
    Flexible hours

    Zania, Inc

    San Francisco, CA
    4 days ago
  • $228.4k - $344.58k

    DocuSign, Inc. is seeking a Senior Director, Product Security to lead the Product Security program. This hybrid role involves managing product security from design through to release, overseeing development processes, and implementing security best practices. Candidates... 
    Senior

    DocuSign, Inc.

    San Francisco, CA
    19 hours ago
  • $161.9k - $218.6k

     ...solutions into compelling customer value? At AWS, we're seeking a Sr. Product Marketing Manager (PMM) who can shape the future of...  ...strategy across multiple domains - from threat detection and network security to identity and access management. We're looking for a unique... 
    Senior
    Local area
    Flexible hours

    Amazon

    San Francisco, CA
    5 days ago
  •  ...Sr Health Actuarial Consultant We are seeking a talented individual to join our Health Actuarial and Financial Consulting team at Mercer. This is a hybrid role that has a requirement of working at least three days a week in the office. As a Sr Health Actuarial Consultant... 
    Senior
    Work at office
    3 days per week

    Mercer France

    San Francisco, CA
    4 days ago
  • $119k - $299.93k

     ...looking for a Senior Manager to join our AI Governance team at PwC. This full‑time role focuses...  ..., leading teams to evaluate governance, risk, and control frameworks, and building...  ...junior staff to meet quality and compliance standards. Responsibilities Enhance project... 
    Senior
    Full time

    PwC

    San Francisco, CA
    2 days ago
  •  ...Senior Security Operations & DevSecOps Lead Remote 6+ months contract with high...  ...is preferred • Implement and govern GitHub and GitHub Advanced Security within...  ...access controls, prompt safety, model risk management, compliance. If this is a role that interests... 
    Senior
    Contract work
    Remote work

    Experis/Manpower Group

    San Francisco, CA
    1 day ago
  • $140k - $180k

     ...Security Compliance Manager We are looking for a highly motivated Security Compliance Manager...  ...Company personnel screening compliance and risk monitoring. The ideal candidate is...  ...to your role Manage a comprehensive Governance, Risk and Compliance program Adhere... 

    Hive

    San Francisco, CA
    4 days ago
  • $244k - $390.58k

     ...our products. The Senior Director, Product Security leads all aspects of the DocuSign...  ...and broader risks. The role will oversee developer...  ...automated scanning, testing, and compliance checks at every stage and...  ...) Knowledge of AI governance frameworks (e.g., AI RMF,... 
    Senior
    Contract work
    Work at office
    Local area
    Remote work
    2 days per week

    DocuSign, Inc.

    San Francisco, CA
    4 days ago
  • $300k - $360k

     ...there are multiple listed for the job. The Work As the Senior Director of Security Engineering, you will be responsible for building and leading...  ..., including agentic guardrails and AI‑assisted development risk. Serve as a security domain expert, providing guidance and communicating... 
    Senior
    Full time
    Local area

    Ripple

    San Francisco, CA
    4 days ago
  • Vapi is seeking a Principal Product Manager to drive governance and compliance in voice AI. You will map enterprise deal obstacles, improve metrics, and enhance the product for regulated industries. Ideal candidates have 8+ years in product management within a technical... 
    Flexible hours

    Vapi

    San Francisco, CA
    1 day ago
  • $153k - $210.45k

     ...getting started. You will be a Sr Product Manager for Unity...  ...Catalog is the metadata and governance foundation for the Lakehouse,...  ...providing not only fine grained security and governance capabilities,...  ...search, discovery, auditing, and compliance, for our customers' data and... 
    Senior
    Worldwide

    Databricks

    San Francisco, CA
    2 days ago
  • $184k - $230k

     ...strategic Manager, Enterprise Security to lead and mentor a team of...  ...Security, Identity and Access Governance, Security Awareness Training,...  ...SOAR automation), Regulatory Compliance and SaaS Security Posture....  ...assess, and mitigate security risks to protect Turo’s assets.* Establish... 
    Full time
    Work at office
    3 days per week

    Turo Inc

    San Francisco, CA
    2 days ago
  • $151k

     ...Requisition ID # 171517  Job Category: Compliance / Risk / Quality Assurance  Job Level: Senior Manager Business Unit: Strategy &...  ...Reporting Relationship This position reports to the Director, Electric Investigations Job Responsibilities and Expectations... 
    Senior
    Work experience placement
    Work at office
    Remote work
    Flexible hours
    Night shift

    PG&E Corporation

    Brisbane, CA
    6 days ago
  • $217k - $300k

     ...seeking an Associate General Counsel in San Francisco to lead the Privacy & Security team. This role involves managing the privacy program in compliance with laws and advising on AI governance. The individual will work cross-functionally with various teams to ensure privacy... 

    Flourish Ventures

    San Francisco, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. Director, Security Governance, Risk and Compliance. Be the first to apply!