Full-Time

Director – GRC

Subject Matter Expert

Confirmed live in the last 24 hours

Vanta

Vanta

501-1,000 employees

Automates SOC 2 compliance for businesses

Enterprise Software
Cybersecurity

Compensation Overview

$246k - $289kAnnually

+ Commission + Bonus + Equity

Expert

Remote in USA

Category
Risk & Compliance
Legal & Compliance
Requirements
  • 10+ years of experience working in the Governance, Risk, and Compliance industry
  • Strong leadership experience and an ability to lead a team from a foundation of transparency and trust
  • Experience working with security and privacy frameworks, including SOC2, ISO 27001, ISO 27701, FedRAMP, HIPAA, GDPR, CCPA
  • Demonstrable expertise in SOC 2 or ISO 27001 at minimum
  • Experience managing a large team of people (10+)
  • Experience working and interfacing with C-level customer contacts
  • Technical expertise to understand and explain security and GRC concepts
  • Familiarity with Cloud Infrastructure, Risk Management, Vendor Risk Management, Vulnerabilities Management, and their related security processes
  • Experience in building productive relationships and driving collaboration with both technical and non-technical teams
  • Knowledge of the cybersecurity audit process
  • Public accounting experience preferred, but not required
  • Security compliance management experience within a SaaS environment preferred, but not required
  • Professional customer facing experience preferred, but not required
  • Security certifications (e.g. CISA, CISSP) and/or formal education strongly preferred, but not required
Responsibilities
  • Oversee the work of two primary teams. One customer facing GRC Subject Matter Expert team and one internal facing GRC Subject Matter Expert team.
  • Lead and grow a team of the best security professionals in the world, with a view of security that is forward thinking, human-centric, and trust-based.
  • Help define the strategy for future offerings to Vanta customers from subject matter expert teams.
  • Provide, both individually and through your teams, expert feedback to Vanta’s Engineering, Product and Design teams on our product offerings and serve as a strong customer voice in product development.
  • Represent Vanta’s products, vision, and voice as a trusted security thought leader in public security forums.
  • Participate within the CISO leadership team and collaborate extensively with other leaders within the Security and Enterprise Engineering teams.
  • Track the team’s performance and report goals and objectives to leaders outside of the security team
  • Partner with the Vanta's Sales and Customer Success teams to represent Vanta’s Trust Management Platform to prospects and customers
  • Engage with executives at prospect and customer organizations to establish relationships with customers’ Security and Compliance points of contact
  • Become an expert on the security features available for customers to deploy within Vanta, including best practices for implementation
  • Use your expert knowledge of compliance frameworks like SOC 2 and ISO 27001 to advise customers regarding questions about scoping, policy creation, detailed control requirements and security best practices
  • Leverage your knowledge of running Governance, Risk, and Compliance programs to help our customers navigate this function and meet their compliance goals
  • Coordinate with cross-functional teams to provide customers with meaningful updates on features and programs

Vanta simplifies the process of obtaining and maintaining SOC 2 certification, which is essential for organizations handling sensitive customer data. The company offers a software-as-a-service (SaaS) platform that automates hundreds of checks to ensure security controls are effective and compliant with industry standards. This automation helps small to medium-sized enterprises (SMEs) and tech companies monitor risks and vulnerabilities continuously, significantly reducing the time and cost associated with the certification process. Vanta's subscription-based model provides clients with a more efficient and cost-effective way to achieve and maintain compliance compared to traditional methods. The goal of Vanta is to transform how organizations approach SOC 2 certification, enhancing security while allowing clients to focus on their core business operations.

Company Stage

Series C

Total Funding

$343.4M

Headquarters

San Francisco, California

Founded

2018

Growth & Insights
Headcount

6 month growth

0%

1 year growth

-1%

2 year growth

-2%
Simplify Jobs

Simplify's Take

What believers are saying

  • Vanta secured $150M in Series C funding, boosting its growth potential.
  • The HITRUST e1 partnership positions Vanta as a leader in healthcare data protection.
  • AI-driven automation in compliance processes enhances Vanta's competitive edge.

What critics are saying

  • Emerging competitors like ComplyCube may challenge Vanta's market position.
  • Healthcare data breaches increase scrutiny on Vanta's security measures.
  • Reliance on partnerships like HITRUST poses risks if standards change.

What makes Vanta unique

  • Vanta automates SOC 2 certification, reducing time and cost for SMEs.
  • The platform offers continuous control monitoring, enhancing risk management for tech companies.
  • Vanta's HITRUST e1 partnership automates 80% of compliance requirements, leading the industry.

Help us improve and share your feedback! Did you find this helpful?

Benefits

100% Benefits Coverage

Flexible & Remote Work

Paid Parental Leave

Unlimited PTO

Health & Wellness

401(k)