Talent.com
Security Compliance Lead (GRC)
Security Compliance Lead (GRC)Faire • San Francisco, CA, United States
Security Compliance Lead (GRC)

Security Compliance Lead (GRC)

Faire • San Francisco, CA, United States
[job_card.variable_days_ago]
[job_preview.job_type]
  • [job_card.full_time]
[job_card.job_description]

About Faire

Faire is an online wholesale marketplace built on the belief that the future is local — independent retailers around the globe are doing more revenue than Walmart and Amazon combined, but individually, they are small compared to these massive entities. At Faire, we’re using the power of tech, data, and machine learning to connect this thriving community of entrepreneurs across the globe. Picture your favorite boutique in town — we help them discover the best products from around the world to sell in their stores. With the right tools and insights, we believe that we can level the playing field so that small businesses everywhere can compete with these big box and e-commerce giants.

About The Role

As Faire’s inaugural GRC Lead, you will be responsible for designing, implementing, and scaling our governance, risk, and compliance program from the ground up. This role blends strategic planning with hands‑on execution to establish the frameworks, processes, and controls that strengthen our security, privacy, and compliance posture. You will work closely with teams across engineering, IT, legal, and finance to integrate risk management into everyday operations, ensure alignment with regulatory and industry standards, and support Faire’s evolving business and product needs. In addition to building the core GRC program, you will lead our preparation for SOX ITGC readiness by collaborating with internal partners and external auditors to define scope, document controls, and enhance our audit processes. This role is ideal for someone who enjoys building programs from the ground up, can navigate both technical and compliance challenges, and is eager to shape how Faire manages risk at scale.

What You’ll Do

  • Formulate and drive GRC roadmap, policies, vendor security reviews, and employee awareness training.
  • Opportunity to expand into the SOX ITGC program.
  • Develop and maintain a robust governance framework to support Faire’s strategic objectives and ensure alignment with industry best practices.
  • Ensure adherence to applicable laws, regulations, and standards (e.g., CCPA / GDPR).
  • Develop and deliver GRC training programs for employees to promote a culture of accountability and awareness.
  • Partner with external auditors to achieve security compliance certifications and reports.
  • Regularly report on status, operational metrics, and KPIs, providing transparency to company leadership and internal stakeholder teams.
  • Drive compliance certifications including ISO 27001, CCPA, GDPR, and SOC 2 Type II.

What It Takes

  • 8+ years in Security & IT Governance, Risk, and Compliance.
  • Big 4 experience with security risk and compliance audits, or equivalent experience leading security compliance teams in financial services, technology firms, or other regulated industries.
  • Hungry to expand outside typical GRC scope, assisting with SOX ITGCs.
  • Experience building policies and processes, and completing audits within ISO 27001 and SOC 2 Type II frameworks.
  • Proficiency with GRC tools and technologies used to manage risk and compliance programs.
  • Ability to collaborate cross‑functionally with engineering, sales, legal, finance, and other teams.
  • Strong oral and written communication skills.
  • Strong analytical and result‑driven mindset.
  • Salary Range

    California : the pay range for this role is $178,000 to $245,000 per year. This role will also be eligible for equity and benefits. Actual base pay will be determined based on permissible factors such as transferable skills, work experience, market demands, and primary work location. The base pay range provided is subject to change and may be modified in the future.

    Work Location & Flexibility

    Hybrid Faire employees currently go into the office 2 days per week on Tuesdays and Thursdays. Effective starting in January 2026, employees will be expected to go into the office on a third flex day of their choosing (Monday, Wednesday, or Friday). Additionally, hybrid in‑office roles will have the flexibility to work remotely up to 4 weeks per year. Specific Workplace and Information Technology positions may require onsite attendance 5 days per week as will be indicated in the job posting. Applications for this position will be accepted for a minimum of 30 days from the posting date.

    Why You’ll Love Working at Faire

  • We are entrepreneurs : Faire is being built for entrepreneurs, by entrepreneurs.
  • We use technology and data to level the playing field.
  • We build products our customers love.
  • We are curious and resourceful, exploring every possibility and developing creative solutions.
  • Seniority level

  • Mid‑Senior level
  • Employment type

  • Full‑time
  • Job function

  • Other, Information Technology, and Management
  • Software Development
  • EEO & Accessibility

    Faire provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, sex, national origin, age, disability, genetics, sexual orientation, gender identity or gender expression. Faire is committed to providing access, equal opportunity and reasonable accommodation for individuals with disabilities in employment, its services, programs, and activities. Accommodations are available throughout the recruitment process and applicants with a disability may request to be accommodated throughout the recruitment process. To request reasonable accommodation, please fill out our Accommodation Request Form (https : / / bit.ly / faire-form).

    Privacy

    For information about the type of personal data Faire collects from applicants, as well as your choices regarding the data collected about you, please visit Faire’s Privacy Notice (https : / / www.faire.com / privacy).

    #J-18808-Ljbffr

    [job_alerts.create_a_job]

    Security Compliance Grc Lead • San Francisco, CA, United States

    [internal_linking.similar_jobs]
    Security and Compliance Lead

    Security and Compliance Lead

    Black Forest Labs • San Francisco, CA, United States
    [job_card.full_time]
    Black Forest Labs is a cutting‑edge startup pioneering generative image and video models.Our team, which invented Stable Diffusion, Stable Video Diffusion, and FLUX. Own and evolve the company‑wide ...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Compliance Manager

    Security Compliance Manager

    Hive • San Francisco, CA, United States
    [job_card.full_time]
    Hive is the leading provider of cloud-based AI solutions to understand, search, and generate content, and is trusted by hundreds of the world's largest and most innovative organizations.The company...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Lead Specialist, Governance, Risk, & Compliance

    Lead Specialist, Governance, Risk, & Compliance

    KPMG US • San Francisco, CA, United States
    [job_card.full_time]
    Lead Specialist, Governance, Risk, & Compliance.Apply for the Lead Specialist, Governance, Risk, & Compliance role at KPMG US. KPMG Advisory practice is currently our fastest growing practice.We are...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior GRC Engineer : Governance, Risk & Compliance Leader

    Senior GRC Engineer : Governance, Risk & Compliance Leader

    Amplitude • San Francisco, CA, United States
    [job_card.full_time]
    A leading digital analytics platform in San Francisco seeks a Senior Staff GRC Engineer to lead Governance, Risk & Compliance efforts. You will design effective governance, support customer deals, a...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Enterprise Security Lead

    Enterprise Security Lead

    OpenAI • San Francisco, CA, United States
    [job_card.full_time]
    Get AI-powered advice on this job and more exclusive features.OpenAI’s Security organization supports the mission of deploying AGI for the benefit of all by ensuring the confidentiality, availabili...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Risk & Compliance - Senior Consultant

    Risk & Compliance - Senior Consultant

    SIA • San Francisco, CA, US
    [job_card.full_time]
    Sia is a next-generation, global management consulting group.Founded in 1999, we were born digital.Today our strategy and management capabilities are augmented by data science, enhanced by creativi...[show_more]
    [last_updated.last_updated_30] • [promoted]
    GRC Security compliance leader

    GRC Security compliance leader

    Avant Digital Inc. • San Francisco, CA, United States
    [job_card.full_time]
    GRC Security compliance leader.Job Title : GRC Security Compliance Leader.Duration : 12+ Months (Contract).Support implementing and managing Information -Security Management Systems by ISO27001 stand...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Security & Compliance Team Lead

    Security & Compliance Team Lead

    Mvp VC • San Francisco, CA, United States
    [job_card.full_time]
    With the company expanding into defense for both the US and EU, Loft Orbital is seeking an experienced.Security & Compliance Team Lead. This role balances hands‑on technical leadership (75%) with st...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Founding Security Engineer – Governance, Risk & Compliance (GRC)

    Founding Security Engineer – Governance, Risk & Compliance (GRC)

    Sift Stack, Inc. • San Francisco, CA, United States
    [job_card.full_time]
    At Sift, we’re redefining how modern machines are built, tested, and operated.Our platform provides engineers with real-time observability over high-frequency telemetry, eliminating bottlenecks and...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Senior GRC Security Lead — ISO / NIST, Risk & Audits

    Senior GRC Security Lead — ISO / NIST, Risk & Audits

    Lambda • San Francisco, CA, United States
    [job_card.full_time]
    A leading AI infrastructure company is seeking a Cybersecurity Risk Manager to enhance their compliance framework.Responsibilities include managing audits, communicating with stakeholders, and ensu...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Security Compliance Lead

    Security Compliance Lead

    Fal • San Francisco, CA, United States
    [job_card.full_time]
    We're looking for a Security Compliance Lead to join our team and build scalable, efficient, and practical security and compliance foundations that align with our fast pace.In this role, you'll hav...[show_more]
    [last_updated.last_updated_30] • [promoted]
    Compliance Program Lead

    Compliance Program Lead

    Freelancer.com • San Francisco, CA, United States
    [job_card.full_time]
    We are seeking a highly skilled Compliance Program Lead to oversee and enhance our regulatory compliance initiatives.This role is responsible for ensuring adherence to regulatory requirements relat...[show_more]
    [last_updated.last_updated_30] • [promoted]
    AI Security & Compliance Leader

    AI Security & Compliance Leader

    Plaud • San Francisco, CA, United States
    [job_card.full_time]
    A leading AI technology company in San Francisco seeks a professional to lead security and compliance strategies for its innovative product. The ideal candidate will have a Bachelor's degree in a re...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Strategic GRC Lead — Privacy, Security & Compliance

    Strategic GRC Lead — Privacy, Security & Compliance

    Pantera Capital • San Francisco, CA, United States
    [job_card.full_time]
    A leading investment firm in San Francisco is seeking an experienced Governance, Risk & Compliance Analyst to shape its compliance and risk management program. This role requires over 6 years of exp...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Senior Security GRC Product Leader (Hybrid)

    Senior Security GRC Product Leader (Hybrid)

    DocuSign, Inc. • San Francisco, CA, United States
    [job_card.full_time]
    A leading digital agreement firm is looking for a Senior Security GRC Product Manager to oversee the strategy and delivery of governance, risk, and compliance platforms. The ideal candidate will hav...[show_more]
    [last_updated.last_updated_1_day] • [promoted]
    Senior TPM : Risk, Compliance & Governance Leader

    Senior TPM : Risk, Compliance & Governance Leader

    WEX, Inc. • San Francisco, CA, United States
    [job_card.full_time]
    A leading financial services provider is seeking a Senior Technical Program Manager in San Francisco to lead risk and compliance initiatives. This role requires managing multi-faceted programs and e...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    PeopleSoft HCM Systems Lead — Security & Compliance

    PeopleSoft HCM Systems Lead — Security & Compliance

    City and County of San Francisco • San Francisco, CA, United States
    [job_card.full_time]
    A government agency in San Francisco is seeking an Information Systems Manager to oversee the PeopleSoft HCM system and manage IT infrastructure. The role involves ensuring compliance with privacy r...[show_more]
    [last_updated.last_updated_variable_days] • [promoted]
    Director, Security & Compliance

    Director, Security & Compliance

    Instabase • San Francisco, CA, United States
    [job_card.full_time]
    At Instabase, we're passionate about democratizing access to cutting-edge AI innovation to enable any organization to solve previously unsolvable unstructured data problems in their industry.With c...[show_more]
    [last_updated.last_updated_30] • [promoted]