Security and Compliance Manager
Sierra
About us Sierra is the leading platform for customer-facing AI agents, working with many of the world's biggest brands - including The GAP, Rocket Mortgage, SoFi, Sutter Health, and SoftBank - to transform how they serve customers and grow their businesses. We are primarily an in-person company based in San Francisco, with growing offices across North America, Europe, and Asia. We are guided by a set of values that are at the core of our actions and define our culture: Trust, Customer Obsession, Craftsmanship, Intensity, and a commitment to balancing Family along the way. These values are the foundation of our work, and we are committed to upholding them in everything we do. Our co-founders are Bret Taylor and Clay Bavor. Bret currently serves as Board Chair of OpenAI. Previously, he was co-CEO of Salesforce (which had acquired the company he founded, Quip) and CTO of Facebook. Bret was also one of Google's earliest product managers and co-creator of Google Maps. Before founding Sierra, Clay spent 18 years at Google, where he most recently led Google Labs. Earlier, he started and led Google's AR/VR effort, Project Starline, and Google Lens. Before that, Clay led the product and design teams for Google Workspace.
What you'll do
Our values
These benefits are further detailed in Sierra's policies, may vary by region, and are subject to change at any time, consistent with the terms of any applicable compensation or benefits plans. Eligible full-time employees can participate in Sierra's equity plans subject to the terms of the applicable plans and policies.
Be you, with us We're working to bring the transformative power of AI to every organization in the world. To do so, it is important to us that the diversity of our employees represents the diversity of our customers. We believe that our work and culture are better when we encourage, support, and respect different skills and experiences represented within our team. We encourage you to apply even if your experience doesn't precisely match the job description. We strive to evaluate all applicants consistently without regard to race, color, religion, gender, national origin, age, disability, veteran status, pregnancy, gender expression or identity, sexual orientation, citizenship, or any other legally protected class.
What you'll do
- Own independent audits and regulatory programs including ISO 42001, PCI DSS, NIST 800-53, FedRAMP, HIPAA, and related frameworks.
- Drive scope definition, readiness assessments, auditor engagement, remediation planning, and executive level reporting.
- Develop a strong working understanding of Sierra's Conversational AI Platform, model providers, and cloud architecture. Partner with Platform and Agent Engineering to design and operationalize controls across multi cloud environments, infrastructure, inference and data platforms.
- Build a centralized and evolving security controls library mapped to compliance, regulatory and customer requirements. Continuously assess control effectiveness, identify gaps, prioritize risk, and drive remediation that strengthens Sierra's security and compliance posture.
- Define and enforce security baselines for cloud infrastructure, containerized workloads, Kubernetes, identity, encryption, logging, and network security controls. Partner with engineering teams to integrate security requirements into configuration and change management.
- Design and operate automated compliance workflows using AI, infrastructure as code, and security tooling to reduce manual effort, improve control assurance, and scale with platform evolution.
- 8+ years of experience in security compliance or GRC or security adjacent roles within fast growing technology companies.
- Deep expertise in security compliance frameworks including ISO 42001, PCI DSS, NIST 800-53, FedRAMP, and similar regulatory environments.
- A systems oriented and engineering focused GRC mindset, with the ability to reason about cloud architecture, data flows, and control effectiveness alongside engineers.
- Experience owning complex audits and driving risk based remediation across distributed teams.
- Hands-on experience with multi-cloud infrastructure (AWS, Azure, GCP).
- Strong experience implementing and automating security controls across cloud infrastructure, configuration management, container security, Kubernetes, encryption, identity, and authentication systems.
- Ability to clearly communicate compliance requirements internally to engineering teams and externally to customers in a technically credible way.
- Relevant certifications such as CISSP, CISA, PCI ISA, ISO 27001 Lead Auditor, or equivalent experience.
- Experience supporting AI platforms, fintech, healthcare, or other highly regulated environments.
- Familiarity with global regulatory environments including GDPR, DORA, the EU AI Act, and emerging security and AI governance requirements across APAC regions.
- Experience supporting public sector or FedRAMP aligned environments.
Our values
- Trust: We build trust with our customers with our accountability, empathy, quality, and responsiveness. We build trust in AI by making it more accessible, safe, and useful. We build trust with each other by showing up for each other professionally and personally, creating an environment that enables all of us to do our best work.
- Customer Obsession: We deeply understand our customers' business goals and relentlessly focus on driving outcomes, not just technical milestones. Everyone at the company knows and spends time with our customers. When our customer is having an issue, we drop everything and fix it.
- Craftsmanship: We get the details right, from the words on the page to the system architecture. We have good taste. When we notice something isn't right, we take the time to fix it. We are proud of the products we produce. We continuously self-reflect to continuously self-improve.
- Intensity: We know we don't have the luxury of patience. We play to win. We care about our product being the best, and when it isn't, we fix it. When we fail, we talk about it openly and without blame so we succeed the next time.
- Family: We know that balance and intensity are compatible, and we model it in our actions and processes. We are the best technology company for parents. We support and respect each other and celebrate each other's personal and professional achievements.
- Flexible (unlimited) paid time off
- Medical, dental, and vision benefits for you and your family
- Life insurance and disability benefits
- Retirement plan dependent on country of employment
- Parental leave
- Fertility and family building benefits through Carrot
- Lunch, as well as delicious snacks and coffee to keep you energized
- Discretionary benefit stipend giving people the ability to spend where it matters most
- Free alphorn lessons
These benefits are further detailed in Sierra's policies, may vary by region, and are subject to change at any time, consistent with the terms of any applicable compensation or benefits plans. Eligible full-time employees can participate in Sierra's equity plans subject to the terms of the applicable plans and policies.
Be you, with us We're working to bring the transformative power of AI to every organization in the world. To do so, it is important to us that the diversity of our employees represents the diversity of our customers. We believe that our work and culture are better when we encourage, support, and respect different skills and experiences represented within our team. We encourage you to apply even if your experience doesn't precisely match the job description. We strive to evaluate all applicants consistently without regard to race, color, religion, gender, national origin, age, disability, veteran status, pregnancy, gender expression or identity, sexual orientation, citizenship, or any other legally protected class.
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Security and Compliance Manager in San Francisco, CA vacancy
$140k - $180k
...Security Compliance Manager We are looking for a highly motivated Security Compliance Manager with a deep security and compliance background to lead system development and process improvement. As part of Hive's Security Team, you will collaborate with engineers and...Suggested$153k - $245k
...future of design and collaboration, join us!As the Federal Compliance Manager, you will collaborate with internal stakeholders and product... ...control requirements, ensuring adherence to Figma's FedRAMP cloud security standards. Responsibilities include supporting the analysis...SuggestedMinimum wageFull timeLocal areaRemote workFlexible hours- ...foundation upon which the growth is built. At Mercury, we believe compliance is the infrastructure of trust—a way to engineer safety,... ...risk and regulation. We’re hiring a Senior Compliance Risk Manager, Securities to help us continue this tradition: someone who can...Suggested
$134k - $202k
...builders move from idea to production with speed, security, and exceptional developer experience. Now,... ...for a GRC Analyst to join our Governance, Risk & Compliance (GRC) team. You will have the opportunity to manage and maintain ongoing compliance with security and...SuggestedWork at officeRemote workWorldwideMonday to Friday$175k - $210k
...Position: Compliance Manager About Us Singular Builders is a San Francisco-based construction company focused on delivering complex, design-forward, and technically demanding projects. Our work includes seismic retrofits, ground-up construction, urban infrastructure...SuggestedContract workFor contractorsFor subcontractorWork at officeLocal area- ...are backed by a $13.5 million seed round led by a16z, Menlo Ventures, and Anthropic. About The Role We’re hiring a hands-on Security & Compliance Lead to build and scale Phylo’s security, privacy, and compliance program. You’ll own our compliance roadmap, lead audits...Work at office
$135k - $165k
...company transforming how organizations review, negotiate, and manage contracts. Security, privacy, and trust are foundational to our platform and... ...we are looking for a highly motivated Governance, Risk & Compliance (GRC) Analyst to support and mature Ivo's security...Contract workFlexible hours- ...with $250+ million raised to date. About the Role Anyscale's security and compliance needs are growing as we work with larger and more... ...customers require. Own the risk register and mature risk management from a security-team activity into a recorded, enterprise-...Contract work
$65 - $77 per hour
...Solutions On a mission to assist candidates in securing their next dream job! Duration - 6... ...and drive projects and the license compliance program to ensure software and hardware... ...implementation, working with Sales and Marketing management teams to strengthen and promote...Contract workWorldwide$40 per hour
...Program Manager, Senior - Compliance Location: Oakland, CA (Onsite only) Job Type : Project-based - W2 Duration: 5 Months TOP THINGS LOOKING FOR: (1) Proven ability to design and lead implementation of compliance governance models that drive operational...Contract work2 days per week1 day per week$165k - $253k
...the value of the Tanium platform to decision makers and expertly manage the complex sales cycle Nurture and develop relationships... ...time endpoint intelligence, Tanium Autonomous IT empowers IT and security teams to make their organizations unstoppable. Many of the...Full timeLive inWorldwideFlexible hours$130k - $190k
...Strategy & Operations Manager Picogrid is a leading venture-backed defense technology... ...technology and the critical demands of national security. Today, we're building the essential... ...runs on (CRM, project management, BI, compliance platforms), right-sized for our stage...Permanent employmentWork at officeRelocation package- ...our recruiting process here . Pinterest’s Security team (Pinfosec) is seeking an IC14... ...Engineer - Security Governance, Risk & Compliance (GRC Senior Analyst) to support and strengthen... ...processes that help the business manage risk effectively. Reporting to the Interim...Full timeInterim role
$162k - $180k
About The Team At OpenAI, our Compliance team is dedicated to fostering a culture of integrity... .... We collaborate closely with Legal, Security, People, Finance, and operational teams... ...About The Role The Compliance Program Manager will play a key role in building and scaling...Work at officeRelocation package$163k - $203.8k
...foundation upon which the growth is built.At Mercury, we believe compliance is the infrastructure of trust—a way to engineer safety,... ...risk and regulation.We’re hiring a Senior Compliance Risk Manager, Securities to help us continue this tradition: someone who can...- Jones Lang LaSalle Incorporated seeks a Director, Health, Safety, Security & Environment to oversee its HSSE operations in South San Francisco. The role involves implementing compliance programs, managing training, and leading HSSE initiatives across sites. With a focus...
$110.7k - $196.35k
...connected and moves autonomously through a self‑managing urban transportation operating system. We are seeking an experienced Export Compliance Manager to lead and enforce our global... ...to your job qualifications (e.g., Social Security Number, family relations, marital status,...- JLL is seeking a Health, Safety, Security & Environment Director in South San Francisco,... ...across a portfolio, ensuring regulatory compliance, training, and robust incident investigations... ...of HSSE experience, and the ability to manage multi-site operations. Occasional travel...
$330k - $410k
Who are we? Cohere is the leading security‑first enterprise AI company. We build cutting‑edge foundation AI models and end‑to‑end products... ...opportunities. Provide recommendations to executive management based on both financial and strategic implications of investment...Full timeContract workWork at officeLocal areaRemote workHome office- ...Library’s systemwide emergency planning and security program. Operating at a high analytical... ...term governance, documentation, and compliance for SFPL’s emergency preparedness and... ...during City EOC activations. Security Management Conducts security risk assessments...Permanent employmentFull timeWork experience placementSecond job
$55 - $74.97 per hour
...Job Description Job Description License Compliance M anager Responsibilities : Using industry best practices, develop and... ...compliance program implementation, working with Sales and Marketing management teams to strengthen and promotes compliance-related behaviors...Hourly payWorldwide- ...Job Description Job Description LEGAL AND COMPLIANCE MANAGER Private Markets Investment Manager | San Francisco, CA | Hybrid The Opportunity Our client is an established private-markets investment manager focused on venture capital and related strategies,...Work at office
- ...regulatory strategy, guide high-quality submissions, and work with cross-functional partners to enable timely regulatory approvals and life cycle management. This onsite Brisbane, CA role reports to the SVP, Regulatory Affairs. #J-18808-Ljbffr Initial Therapeutics, Inc.
$232k - $274k
...executing compliant, high quality, nonclinical and clinical submissions and interactions in support of registration and life cycle management activities. This position works cross-functionally with regulatory affairs and clinical development organizations to facilitate...For contractorsWorldwide- Nurix Therapeutics, a clinical-stage biopharmaceutical company, seeks a Senior Manager / Associate Director of Regulatory Affairs (Strategy, Hematology Oncology) to lead regulatory strategy for global programs from Brisbane, CA, onsite. You will build and execute regulatory...
$280k - $330k
Checkmarx Overview Checkmarx is the AI-powered application security leader helping the world's most security-conscious enterprises secure... ...by design. The Opportunity We're hiring a Strategic Account Manager to own and grow a book of named enterprise accounts across the...$216k - $241k
...Position This role provides global regulatory leadership and direction to support the development, registration, and life‑cycle management of innovative programs within the Annexon portfolio. The Senior Director serves as the Regulatory Lead for assigned programs and...Work at officeRemote workFlexible hours$230k - $270k
...compliant, and high-quality regulatory submissions and lifecycle management activities. Role and Responsibilities Develop and... ...program timelines Oversee document quality, consistency, and compliance with global regulatory requirements Represent regulatory in...- ...Revolution Medicines is seeking a Director of Regulatory Operations to lead and scale its regulatory information management capabilities. The role focuses on the Veeva Vault RIM platform, governance, and end-to-end data quality across global submissions. You will collaborate...
$127k - $165k
...and modified medical devices in line with business objectives Manage regulatory associates as needed, responsible for team's work... ...approve advertising and promotional materials to ensure regulatory compliance Regulatory strategy and processes for product life cycle...Full timeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security and Compliance Manager. Be the first to apply!
Related searches
- security engineering manager San Francisco, CA
- security operations manager San Francisco, CA
- senior security manager San Francisco, CA
- physical security manager San Francisco, CA
- security manager San Francisco, CA
- program manager with security clearance San Francisco, CA
- director global security San Francisco, CA
- surveillance manager San Francisco, CA
- senior director information security San Francisco, CA
- security systems manager San Francisco, CA



