Mintlify
Security & Compliance Operations Manager
San Francisco
Sponsorship not specifiedDetected 8 days ago
CybersecuritySOC OperationsComplianceSalesforceLeadership
About the role
- The program exists and is well-documented - audits are mid-flight, the vCISO and auditors are engaged, the platform (Drata) is deployed.
- What it needs is a single accountable operator.
Responsibilities
- Run five compliance programs end-to-end - own the audit calendar, evidence collection, remediation tracking, and auditor relationships (Sensiba for SOC 2/ISO
- Administer Drata - keep monitors green, assign and validate evidence, manage policies and the trust center
- Own the vendor bench - drive the weekly Rhymetec vCISO engagement, manage renewals and contracts across the security/compliance vendor portfolio
- Run five compliance programs end-to-end - own the audit calendar, evidence collection, remediation tracking, and auditor relationships (Sensiba for SOC 2/ISO; A-LIGN for Microsoft SSPA)
Requirements
- 3+ years in GRC / compliance program management / security operations with direct audit ownership
Nice to have
- ISO 42001 / AI governance exposure.
- GDPR operations (DSARs, RoPA, consent tooling).
- Early-stage startup experience as a sole compliance owner.
Compensation
- Annual team offsite (previously went to Alaska, Hawaii)
Benefits
- Competitive compensation and equity
- 20 days paid time off every year
- $420/month wellness stipend
- 100% coverage for Health, dental, vision
- Bonus Points: ISO 42001 / AI governance exposure.
Company info
- Culture of slope over y-intercept https://mattrickard.com/hire-slope-not-intercept: We value learning velocity, grit, and unapologetically unique personalities.
Apply directly at Mintlify →Create a free account for alerts like thisView Mintlify immigration profile
This listing is sourced directly from Mintlify's careers page and normalized into a canonical job model.