Figma

Figma

Governance Risk and Compliance

San Francisco, CA • New York, NY • United States · Full-time

Sponsorship not specified$153k-$296kDetected 5 days ago
CybersecurityComplianceFigmaProcess ImprovementCommunicationCollaborationCISSP

About the role

  • From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world.
  • We're growing our team and looking for security, risk, and compliance professionals across several disciplines.
  • If you're excited about this role but your past experience doesn't align perfectly with the points outlined in the job description, we encourage you to apply anyways.

Responsibilities

  • Lead compliance programs across frameworks such as SOC 2, ISO 27001, FedRAMP, SOX ITGC, GDPR, and NIS2
  • Manage external audits and certification activities while partnering with auditors and assessors
  • Build and maintain risk and controls frameworks, including common control frameworks that support multiple certifications
  • Conduct risk and gap assessments and drive remediation efforts across technical and business stakeholders
  • Implement and optimize GRC platforms that scale evidence collection and program management
  • Maintain security policies and governance processes that align with organizational risk objectives
  • Support customer trust initiatives, including security questionnaires, audits, and customer-facing security communications
  • Figma's platform helps teams bring ideas to life-whether you're brainstorming, creating a prototype, translating designs into code, or iterating with AI.
  • If you're excited to shape the future of design and collaboration, join us!
  • Figma's GRC team helps build and maintain trust with our users, regulators, business partners, and the organizations that rely on Figma every day.

Requirements

  • 4+ years of experience in information security, compliance, risk management, or a related field
  • Experience leading or supporting audits and partnering with external assessors
  • Additionally, if hired you will be required to attend in person onboarding.

Nice to have

  • Supported FedRAMP authorization, SSP development, 3PAO coordination, or continuous monitoring activities
  • Earned security or risk certifications such as CISA, CISSP, CISM, or CRISC
  • Implemented or administered GRC platforms such as Vanta, Drata, or similar tools
  • Scaled security, compliance, or risk programs in a high-growth environment

Skills

  • Compliance Management
  • Improve controls, processes, and evidence management practices across the organization
  • Security Risk Management
  • Assess, prioritize, and communicate security risks across the business
  • Policy & Governance
  • Ensure governance practices align with regulatory requirements and business objectives
  • GRC Platforms & Enablement
  • Scale evidence collection, reporting, and program management capabilities
  • Identify opportunities to automate and streamline GRC operations
  • Customer Trust
  • Respond to customer security inquiries, audits, and questionnaires

Compensation

  • $153,000 - $296,000 USD
  • If based in Figma's San Francisco or New York hub offices, this role has the annual base salary range stated below.
  • Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location.
  • For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range.
  • Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles.
  • Figma's compensation and benefits are subject to change and may be modified in the future.

Benefits

  • These modifications enable an individual with a disability to have an

Company info

  • Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all.

Equal opportunity

  • If you require accommodation, please reach out to accommodations-ext@figma.com.
  • equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities.

Visa & Work Authorization

  • employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status, or any other cha

This listing is sourced directly from Figma's careers page and normalized into a canonical job model.