Beacon Software

Beacon Software

Director - Governance, Risk, Compliance & Privacy (GRC)

San Francisco, CA · Director

Sponsorship not specifiedDetected 1 day ago
LLMsComplianceAccessibilityM&AHIPAACISSP

About the role

  • Our GRC function is at an early, formative stage.
  • The mandate spans security compliance, data privacy, risk, and AI governance.
  • We expect it to be built AI-first: modern automation platforms and LLM-assisted workflows over manual process.

Responsibilities

  • A strong systems thinker. You design scalable GRC architectures, not one-off fixes for the next audit.
  • Privacy or audit certifications (CIPP, CIPM, CISA, CISSP, or ISO 27001 Lead Auditor or Implementer).
  • We seek to build a generational software company.
  • We manage our expectations and those of our partners to take advantage of the 8th wonder of the world - compounding growth.
  • We use AI to support efficiency and consistency, not to replace human judgment.
  • You design scalable GRC architectures, not one-off fixes for the next audit.
  • Enough technical fluency to scope what the program needs and partner closely with engineering, even without building the tooling yourself.

Requirements

  • You have built or substantially matured a GRC program before and taken an organization through SOC 2 Type 2.
  • Typically several years (5+) in GRC, IT governance, or security compliance, though what you have built matters more to us than the count.
  • Comfortable across both security compliance and data privacy, or able to ramp quickly on regimes you have not personally run.
  • Experience with regimes beyond SOC 2 (ISO 27001, PCI DSS, HIPAA, FedRAMP, StateRAMP) and accessibility conformance (WCAG, VPAT).

Benefits

  • Multi-entity, private-equity, or holding-company experience.

Company info

  • Beacon https://beaconsoftware.com/ is acquiring and operating a portfolio of vertical SaaS companies.
  • Most private equity firms scale by adding people.
  • We are building Beacon to scale by adding software.
  • We are truth seeking in our approach to business problems.
  • Business is a repeat game and we believe that human relationships generate alpha.
  • We understand that trust is earned over a lifetime and can be lost in an instant.
  • We play to win.
  • We hold ourselves to high standards and will not be outworked.
  • We take pride in having a deep sense of responsibility to ourselves, each other, our partners, and our customers.
  • We believe to whom much is given much is expected.
  • Portfolio companies. Taking our portfolio companies through their own audits and certifications (SOC 2, ISO 27001, accessibility conformance, and others as their customers require), delivered hands-on as a repeatable service that scales across the portfolio.
  • We are looking for a GRC leader to build and scale the governance, risk, compliance, and privacy function for a growing portfolio of software companies.
  • We are committed to a fair, thoughtful, and equitable experience for every candidate.

This listing is sourced directly from Beacon Software's careers page and normalized into a canonical job model.