Senior Manager, Compliance Advisory Services (Remote)

Drata · Remote

Company

Drata

Location

Remote

Type

Full Time

Job Description

As a Sr. Manager, Compliance Advisory Services at Drata, you are a customer-facing information security and compliance expert for the world’s most advanced security and compliance automation platform. Compliance Managers execute within the Customer Success function at Drata and work closely with all teams to drive fast and smooth audit readiness programs, create and deliver best practices for meeting requirements for control and privacy frameworks, and advocate on behalf of customers’ needs for a rapidly growing platform. You’ll build trust and empathy with Drata’s customers as you advise them toward a continuous and self-sufficient security and compliance posture.

What you’ll do: 

  • Lead and manage our Compliance Advisory Services team, providing guidance, mentorship, performance feedback and resource allocation. Track and analyze key performance indicators and relevant data to measure and enhance team effectiveness.
  • Collaborate with stakeholders and cross-functional teams to define and integrate compliance advisor operations into broader organizational strategies.
  • Act as strategic partner to cross-functional partner by providing compliance expertise including but not limited to creation of external facing contents.
  • Advise existing customers and prospect customers with building out information security policies, uploading evidence for controls and overall audit readiness using Drata. Frameworks includes but not limited toSOC2, ISO 27001/27002, HIPAA, PCI DSS, and other audits.
  • Development of documentation for common compliance questions received from customers for both external and internal audiences.
  • Research and stay updated on major cloud providers’ services (AWS, Azure, GCP, Heroku), emerging technologies in the cybersecurity space, information security frameworks/standards and privacy standards.
  • Provide feedback to the the Product team in their development of a common control mapping across multiple information security and privacy frameworks ( ex: SOC2, ISO 27001/270002, HIPAA, PCI, HITRUST NIST 800-53, NIST 800-171, CMMC, FedRAMP, GDPR, CCPA, etc. )
  • Help with internal GRC initiatives, such as internal audits and other compliance initiatives.

What you'll bring:

  • Minimum 5+ years of experience in leadership or management capacity.
  • 5+ years experience in helping organizations build out their security and compliance programs based on control and privacy frameworks, such as SOC2, ISO 27001/270002, HIPAA, PCI, HITRUST NIST 800-53, NIST 800-171, CMMC, FedRAMP, GDPR, CCPA, etc.
  • 2+ years experience in performing audits against one or more of the previous listed frameworks or standards.
  • Familiarity with the security services offered by AWS, GCP, and Azure.
  • An understanding of the Shared Responsibility Model and how this model works with SaaS companies.
  • Exceptional verbal and written communication skills, and comfort with leading (potentially solo) presentations, training, and advisory sessions with CISOs, CTOs and business users.
  • A demonstrated track record of constant learning and self-development.
  • Self-motivated to research and learn information security and privacy frameworks/standards and emerging technologies.

Benefits:

  • Healthcare: 90-100% paid premiums for medical, dental, and vision plans for employee and dependents + on demand health care concierge
  • HSA, FSA, & DCFSA: Pre-tax savings plans for healthcare and dependent care, with up to a $600 annual employer contribution to the HSA plan (if enrolled in HSA medical plan)
  • 100% paid short and long term disability plus life + AD&D benefits
  • Learning & Development: $500 annually towards professional development opportunities + $250 annually towards personal development opportunities
  • Flexible Time Off: Flexible vacation policy for strong, fully charged batteries
  • 16 Weeks Paid Parental Leave: An inclusive policy to ensure you have time with your newborn, newly adopted, or foster child
  • Work Remotely: Flexible hours and work from home + $1,000 annually to cover necessary business related items for your home office
  • 401K: Reach your financial goals while reducing your taxes

This role will receive a competitive base salary, benefits, and equity. The applicable salary range for each US-based role is based on where the employee works and is aligned to one of 3 tiers based on the cost of labor for that geographic area. The expected base salary ranges for this role are set forth below. 

Tier 1: $137,700 - $170,100

Tier 2: $123,930 - $153,090

Tier 3: $110,160 - $136,080

You can view which tier applies to where you plan to work here. A variety of factors are considered when determining someone’s leveling and compensation – including a candidate’s professional background and experience. These ranges may be modified in the future and final offer amounts may vary from the amounts listed above.

Please continue to apply if you are unsure that you fit into our compensation structure.



Drata is on a mission to help build trust across the internet.

Drata is a security and compliance automation platform that continuously monitors and collects evidence of a company's security controls, while streamlining compliance workflows end-to-end to ensure audit readiness.

We all recognize the importance of earning and keeping the trust of our customers when it comes to protecting their data. We've felt firsthand how burdensome achieving and maintaining a strong security and compliance posture can be at a fast-growing company. It’s a manual, redundant, error-prone, and unscalable process - and it only grows more complex and expensive over time.

Our team of SaaS, security, compliance, and audit experts have built a better way - with automation.

Employment at Drata is based solely upon individual merit and qualifications directly related to professional competence. We strictly prohibit unlawful discrimination or harassment on the basis of race, color, religion, veteran status, national origin, ancestry, pregnancy status, sex, gender identity or expression, age, marital status, mental or physical disability, medical condition, sexual orientation, or any other characteristics protected by law. We also make reasonable accommodations to meet our obligations under laws protecting the rights of the disabled.

Apply Now

Date Posted

03/20/2024

Views

11

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Senior Design Manager (Infrastructure) - Canonical

Views in the last 30 days - 0

Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...

View Details

Senior Specialist Senior Accountant Shared Financial Services - Make-A-Wish America

Views in the last 30 days - 0

The text describes Make a Wish Foundations mission to grant childrens wishes and their community efforts It outlines job positions with remotehybrid o...

View Details

Senior Product Designer - Org & Security - Typeform

Views in the last 30 days - 0

This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...

View Details

Product Manager Wallet SDKs - Startale

Views in the last 30 days - 0

The text describes a job alert system where applicants must mention UNSELFISH and use a specific tag to demonstrate they read the post It explains the...

View Details

Senior Business Analyst - Xpansiv

Views in the last 30 days - 0

Xpansiv promotes its role as an energy market innovator with a global platform for environmental commodities The job posting seeks a Business Analyst ...

View Details

Software Engineer Networking Software and Services - xAI

Views in the last 30 days - 0

The text describes xAIs mission to develop AI systems for understanding the universe and advancing human knowledge It outlines a role involving networ...

View Details