Mintlify

Mintlify

Security & Compliance Operations Manager

San Francisco

Sponsorship not specifiedDetected 8 days ago
CybersecuritySOC OperationsComplianceSalesforceLeadership

About the role

  • The program exists and is well-documented - audits are mid-flight, the vCISO and auditors are engaged, the platform (Drata) is deployed.
  • What it needs is a single accountable operator.

Responsibilities

  • Run five compliance programs end-to-end - own the audit calendar, evidence collection, remediation tracking, and auditor relationships (Sensiba for SOC 2/ISO
  • Administer Drata - keep monitors green, assign and validate evidence, manage policies and the trust center
  • Own the vendor bench - drive the weekly Rhymetec vCISO engagement, manage renewals and contracts across the security/compliance vendor portfolio
  • Run five compliance programs end-to-end - own the audit calendar, evidence collection, remediation tracking, and auditor relationships (Sensiba for SOC 2/ISO; A-LIGN for Microsoft SSPA)

Requirements

  • 3+ years in GRC / compliance program management / security operations with direct audit ownership

Nice to have

  • ISO 42001 / AI governance exposure.
  • GDPR operations (DSARs, RoPA, consent tooling).
  • Early-stage startup experience as a sole compliance owner.

Compensation

  • Annual team offsite (previously went to Alaska, Hawaii)

Benefits

  • Competitive compensation and equity
  • 20 days paid time off every year
  • $420/month wellness stipend
  • 100% coverage for Health, dental, vision
  • Bonus Points: ISO 42001 / AI governance exposure.

Company info

  • Culture of slope over y-intercept https://mattrickard.com/hire-slope-not-intercept: We value learning velocity, grit, and unapologetically unique personalities.

This listing is sourced directly from Mintlify's careers page and normalized into a canonical job model.