Beacon Software
Director - Governance, Risk, Compliance & Privacy (GRC)
San Francisco, CA · Director
Sponsorship not specifiedDetected 1 day ago
LLMsComplianceAccessibilityM&AHIPAACISSP
About the role
- Our GRC function is at an early, formative stage.
- The mandate spans security compliance, data privacy, risk, and AI governance.
- We expect it to be built AI-first: modern automation platforms and LLM-assisted workflows over manual process.
Responsibilities
- A strong systems thinker. You design scalable GRC architectures, not one-off fixes for the next audit.
- Privacy or audit certifications (CIPP, CIPM, CISA, CISSP, or ISO 27001 Lead Auditor or Implementer).
- We seek to build a generational software company.
- We manage our expectations and those of our partners to take advantage of the 8th wonder of the world - compounding growth.
- We use AI to support efficiency and consistency, not to replace human judgment.
- You design scalable GRC architectures, not one-off fixes for the next audit.
- Enough technical fluency to scope what the program needs and partner closely with engineering, even without building the tooling yourself.
Requirements
- You have built or substantially matured a GRC program before and taken an organization through SOC 2 Type 2.
- Typically several years (5+) in GRC, IT governance, or security compliance, though what you have built matters more to us than the count.
- Comfortable across both security compliance and data privacy, or able to ramp quickly on regimes you have not personally run.
- Experience with regimes beyond SOC 2 (ISO 27001, PCI DSS, HIPAA, FedRAMP, StateRAMP) and accessibility conformance (WCAG, VPAT).
Benefits
- Multi-entity, private-equity, or holding-company experience.
Company info
- Beacon https://beaconsoftware.com/ is acquiring and operating a portfolio of vertical SaaS companies.
- Most private equity firms scale by adding people.
- We are building Beacon to scale by adding software.
- We are truth seeking in our approach to business problems.
- Business is a repeat game and we believe that human relationships generate alpha.
- We understand that trust is earned over a lifetime and can be lost in an instant.
- We play to win.
- We hold ourselves to high standards and will not be outworked.
- We take pride in having a deep sense of responsibility to ourselves, each other, our partners, and our customers.
- We believe to whom much is given much is expected.
- Portfolio companies. Taking our portfolio companies through their own audits and certifications (SOC 2, ISO 27001, accessibility conformance, and others as their customers require), delivered hands-on as a repeatable service that scales across the portfolio.
- We are looking for a GRC leader to build and scale the governance, risk, compliance, and privacy function for a growing portfolio of software companies.
- We are committed to a fair, thoughtful, and equitable experience for every candidate.
Apply directly at Beacon Software →Create a free account for alerts like thisView Beacon Software immigration profile
This listing is sourced directly from Beacon Software's careers page and normalized into a canonical job model.