Security Compliance Analyst, Privacy
$175k - $220kLangChain
About Us At LangChain, our mission is to make intelligent agents ubiquitous. We build the foundation for agent engineering in the real world, helping developers move from prototypes to production-ready AI agents that teams can rely on. We began as widely adopted open-source tools and have grown to also offer a platform for building, evaluating, deploying, and operating agents at scale. With $125M raised at Series B from IVP, Sequoia, Benchmark, CapitalG, and Sapphire Ventures, we’re at a stage where we’re continuing to develop new products, growth is accelerating, and all team members have meaningful impact on what we build and how we work together. LangChain is a place where your contributions can shape how this technology shows up in the real world. Today, our platform includes LangSmith (Observability, Evaluation, Deployment, Fleet, and Sandboxes), our open source frameworks (LangChain, LangGraph, and Deep Agents), and the newly launched LangSmith Engine for autonomous agent improvement. We have 100M+ monthly open source downloads, 6,000+ active LangSmith customers, and 5 of the Fortune 10 use LangSmith in production (+ 35% of the Fortune 500 overall), including teams at Klarna, Clay, Coinbase, Workday, Lyft, Cloudflare, Harvey, Rippling, Vanta, LinkedIn, Monday.com, Nvidia, and Bridgewater. About the Team The Security team at LangChain treats compliance as a business enabler, not a checkbox. We move fast, build customer trust across regulated industries, and are actively rethinking what modern security compliance looks like at an AI-native company. We are a small team that operates nothing like a traditional compliance function, still deep in the work of building controls, implementing frameworks, and pushing the business forward on security. About the role You’ll play a central role in building and scaling LangChain’s privacy compliance program, developing the processes, technical controls, and automation that back our commitments to customers, partners, and regulators. You’ll maintain and grow our SOC 2, ISO 27001, and privacy programs while taking primary ownership of our privacy framework across multiple cloud environments, deployment models, and geographies. We are looking to hire in-person in SF or NY. What you’ll do Build and automate our compliance operations layer, including evidence pipelines, control monitoring, and agentic systems for always‑on visibility into our compliance posture. Work directly with Engineering to embed security and privacy controls into our products, including deletion pipelines, PII detection, access audit logging, and fine‑grained data access controls. Maintain and scale our certification and audit programs across SOC 2, ISO 27001, ISO 27701, ISO 42001, HIPAA, GDPR, CCPA, EU‑US Data Privacy Framework, and others. Drive audit readiness, identify overlapping requirements, and reuse evidence across frameworks to continuously strengthen our security story. Partner with Legal on security and privacy contract execution, covering DPAs, BAAs, security addenda, and vendor terms. Build the templates, playbooks, and review processes that enable fast, reliable execution in regulated verticals and unblock enterprise sales. Monitor adherence to security and privacy contractual obligations across all signed agreements, building the operational workflows and tracking mechanisms to stay on top of commitments as our customer base grows. Contribute to LangChain's customer trust program — security questionnaire responses, due‑diligence reviews, and the trust documentation and whitepapers that give regulated‑industry customers confidence in our security posture. Support vendor privacy risk assessments during onboarding and renewals. What you’ll bring 5+ years in privacy, GRC, or security compliance, ideally with time at a Big 4 or advisory firm, or in‑house at a high‑growth tech company. Hands‑on operational experience with privacy regulations and compliance frameworks (GDPR, HIPAA, CCPA, ISO 27001, ISO 27701, SOC 2), including controls mapping, audit support, and day‑to‑day program operations. Experience with DPAs and BAAs: reviewing, negotiating, or operationalizing them in a commercial context. Technical fluency: comfortable reading code, understanding data flows, validating that controls work as described, and collaborating directly with engineering teams. Exceptional writer. You’ll draft policies, respond to security questionnaires, and translate complex requirements into clear guidance for audiences ranging from engineers to executives. Nice to have Background in a regulated industry (healthcare, finance, government) or working directly with regulated‑industry customers. Experience working across multi‑cloud deployment environments. Ability to write scripts or code (Python is a strong plus) to automate compliance checks, privacy workflows, or build integrations between security and compliance tooling. Relevant certifications such as CIPM, CIPP/E, CIPP/US, CISA, CISSP, ISO 27001 Lead Implementer, or ISO 27701 Lead Implementer. Annual salary range: $175,000- $220,000 USD Compensation Philosophy: We offer competitive compensation that includes base salary, variable compensation for relevant roles, meaningful equity, benefits, and perks. Actual compensation and offerings will vary based on role, level, and location. Team members in the EU, UK, and APAC receive locally competitive benefits aligned with regional norms and regulations. Benefits Benefits include medical, dental, and vision coverage, flexible vacation, a 401(k) plan, meals on in‑office days in the US and more. #J-18808-Ljbffr LangChain
$110k - $140k
...Security Compliance Analyst We are looking for a highly motivated individual with information security governance and compliance experience... ...handling as it relates to your role Manage security and privacy training programs Adhere to and champion policies, guidelines...Suggested$134.16k - $213.6k
...Washington D.C., London and Amsterdam.About the Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization,... ...at ****@*****.*** review our Candidate Privacy Notice here.Additional compensation in the form(s) of equity...SuggestedContract workWork experience placementWork at officeLocal area- ...addresses.About the RoleJoin Rippling's Security Assurance team and help demonstrate the... ...security assurance programmes and supporting compliance with technology and security regulatory... ..., how it is used, their security and privacy controls, independent certifications (e....SuggestedWork at office3 days per week
$117.2k - $176.7k
...ExperienceLocation: San Francisco, CAThe Senior Security GRC Analyst role is part of our Assurance team,... ...auditors alike, you will help ensure compliance programs run smoothly and... ...hiring decisions. Please see our Candidate Privacy Statement for more information about how...SuggestedFull timeWork at office$118.68k - $175.8k
...New York, Washington D.C., London and Amsterdam.Team:The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization,... ...inheriting a vendor’s security gaps and give Procurement, Privacy, and Legal a clear risk signal before contracts are...SuggestedWork experience placementWork at officeLocal area$144k - $162k
...What you'll be doing Run the customer security questionnaire program end-to-end, from intake... ...you should have 4+ years in security compliance, GRC, or a closely related field (... ...Please see our Applicant and Candidate Privacy Policy for details regarding Discord’s collection...Full timeWork at officeRelocationRelocation package2 days per week- DoorDash is seeking a security-focused Third-Party Risk Management (TPRM) Sr. Analyst to mature our program and lead risk assessments across the vendor ecosystem.... ...partner with security engineering, procurement, privacy, and legal, and champion scalable governance and...
- Job43 - EITS Security Risk Analyst B (Engagement) Location: 100% Remote Max Submissions: 5 Proposed... ...information security and regulatory compliance. Key Responsibilities Security & Risk... ...Joint Commission DSRIP COBIT State privacy laws Conduct and support internal and...Remote jobImmediate startFlexible hours
- VRC (Valuation Research Corporation) is seeking an analyst for its complex securities valuation practice in San Francisco. You will value derivatives and other illiquid securities for financial reporting, tax, and regulatory needs, using rigorous modeling and client data...
$75k - $100k
Senior Security Analyst - Heartflow Join to apply for the Senior Security Analyst - Heartflow role at ISC2 East Bay Chapter . Full Time San Francisco, CA Posted 1 day ago Heartflow is a medical technology company advancing the diagnosis and management of coronary artery...Full timeLocal areaWorldwideRelocation$121.76k
A leading scientific institution in San Francisco is seeking a Senior Security Analyst to manage information security controls, focusing on cybersecurity and operational integration. The ideal candidate will have over 5 years of IT experience with extensive knowledge in...Full time$1,750 - $2,150 per month
...AI labs to engage experienced cybersecurity professionals — security analysts, penetration testers, incident responders, threat intelligence... ...detection and response, cloud security, and security compliance frameworks to evaluate and enhance AI performance on cybersecurity...Remote jobHourly pay- California Academy of Sciences in San Francisco is seeking a Senior Security Analyst to configure, maintain, and monitor internal security controls across the academy’s IT environment. You will integrate security tools into daily operations, mature security architecture...
- Upwind is a next-generation Cloud Security Platform that leverages runtime context to identify and prioritize critical risks, providing... ...meaningful impact on our growth. We are looking for a Security Analyst to join our MDR team. In this role, you will be part of our security...
$121.76k
...world and empower them to protect it. About the Opportunity Reporting to the Director of Information Technology, the Senior Security Analyst is responsible for configuring, maintaining, and monitoring internal security controls to prevent, detect, and respond to cyber...Full timeContract work$75k - $100k
A leading medical technology firm in San Francisco is seeking a Senior Security Analyst to join their Information Security team. This role will focus on analyzing security events and implementing enhancements to detection capabilities, ensuring the safety of patient data...- Discord is seeking a Security Analyst to lead and scale its Security GRC program. You will own the day-to-day workflows—from questionnaires... ...with Security, Engineering, IT, and Legal to make compliance friction-free. The role emphasizes automation, documentation...
- Discord is seeking a Security Compliance professional to drive the customer questionnaire program end-to-end, building a reusable answer library to enable self-service responses. You will manage risk and control workflows, triaging issues and escalating as needed. You will...
- Mercury is seeking an Information Security GRC Analyst to mature security, risk, and compliance programs and build guardrails for business continuity and resilience. You will lead risk assessments, partner with cross‑functional teams, and drive audit readiness across SOC...
- Discord Inc. is growing its Security GRC function and seeks a Security Analyst to own the day-to-day program, including questionnaires, risk tracking, analyses... ...with Security, Engineering, IT, and Legal to make compliance friction-free and scalable. The role emphasizes...
$96.3k - $145.2k
...AI, driving innovation, and keeping Salesforce's core values at the heart of it all. Experience The Security GRC Analyst role is part of our Security and Compliance team, sitting at the intersection of internal operations and external audit relationships. We are looking...Work at office$128.1k - $239.6k
...250,000 people in more than 140 countries, all of whom rely on secure technology to be able to do their job every single day. Everything... ...of security controls. We are seeking an Active Defense Analyst with a strong information security background and a passion for...Summer holidayLocal areaRemote workFlexible hoursNight shiftWeekend work- Information Security Analyst Location: San Francisco, CA; Los Angeles, CA; Salt Lake City, Utah Duration: 12+ Months, 5 days onsite Must Have: SPL that Splunk uses Actual incident tickets - resolve actual security incident tickets Qualifications: Bachelor's degree...Contract workWork at office
$130k - $155k
Cox Worldwide Funds plc is looking for a Trade Operations & Data Analyst to join the Investment Operations department in San Francisco. This role is pivotal for maintaining the integrity of security reference data and overall asset data quality. Successful candidates will...Work at officeWorldwide- DELTASOFT SOLUTIONS LLC seeks a remote EITS Security Risk Analyst B to bridge CISO initiatives and IT teams. The role involves developing risk metrics, conducting risk analyses, and ensuring compliance with healthcare regulations such as HIPAA. Candidates should possess...Remote jobImmediate start
- Salesforce, Inc. is seeking a Security GRC Analyst to lead the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. The role partners... ...control owners and external auditors to ensure continuous compliance and audit readiness. The ideal candidate has 2-4 years in...
- Salesforce is seeking a Security GRC Analyst to own the Unified Audit program across SOC 2, HIPAA, ISO 27001, and GxP. You will coordinate... ...maintain dashboards, SOPs, and documentation to support ongoing compliance. This role requires 2-4 years in GRC and familiarity with...
- Upwind Security is seeking a Security Analyst to join our MDR team, focusing on proactive reviews and advanced guidance for customers. You will work closely with analysts, researchers, and engineers to strengthen cloud posture and detections. The role emphasizes improving...
- University of California, Berkeley is seeking a seasoned IT Security Analyst to join the Security Engineering team within the Information Security Office. You will administer security systems, implement controls, and support broad-scale security initiatives across campus...Work at office
- The University of California, Berkeley is hiring an Information Security Operations Analyst to enhance the protection of its information systems. Candidates must have at least 5 years in IT and 3 years in security operations, focusing on incident response and log analysis...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Compliance Analyst, Privacy. Be the first to apply!
- application security analyst San Francisco, CA
- entry level information security analyst San Francisco, CA
- entry level security analyst San Francisco, CA
- information security analyst San Francisco, CA
- senior security analyst San Francisco, CA
- rate analyst San Francisco, CA
- IT security analyst San Francisco, CA
- work from home security analyst San Francisco, CA
- bond analyst San Francisco, CA
- information security compliance analyst San Francisco, CA

