xelys jobs xelys jobs

GRC Manager

Baseten

full-remotemidpermanentsecurityoperations Full remote Yesterday via WTTJ

See how well this job matches your profile

Sign up to get an AI match score and generate a tailored application in seconds.

Get your match score

Tags

GRCSOC 2ISO 27001GDPRNISTRisk ManagementControl DesignAWS ComplianceGRC ToolsAI/ML Security

About the role

Role Overview

Join Baseten as a GRC Manager to establish, lead, and continuously enhance the company’s security governance and compliance programs. This is a remote-first role where you’ll partner cross-functionally to develop policies, manage audits, and implement controls aligned to recognized industry frameworks.

Key Missions

  • Establish, lead, and continuously enhance Baseten’s security governance and compliance programs.
  • Partner with engineering, operations, legal, and leadership to develop policies, manage audits, and implement controls aligned with standards such as:
    • SOC 2
    • ISO 27001
    • GDPR
  • Build and manage the company-wide risk assessment program: identify, track, and mitigate key security and compliance risks.

Requirements

  • 5+ years of experience in GRC, security compliance, or information security roles (ideally in SaaS or cloud-native environments).
  • Strong organizational, documentation, and communication skills with attention to detail.
  • Ability to thrive in a fast-paced, high-growth startup while maintaining process discipline.
  • Familiarity with risk management methodologies, control design, and governance frameworks.
  • Proven track record managing compliance audits and certification programs end-to-end.
  • Experience working cross-functionally with technical and non-technical stakeholders to implement compliance controls.
  • Strong understanding of security frameworks/standards including SOC 2, ISO 27001, NIST, and GDPR.
  • Experience with cloud security compliance in AWS or GCP.
  • Hands-on experience using GRC tools, e.g. Vanta, Drata, Tugboat Logic, Secureframe.

Nice-to-Haves / Additional Signals

  • Understanding of AI/ML security, data privacy, and model governance.
  • Experience scaling compliance programs in an early-stage or rapidly growing startup.
  • Relevant certifications such as CISA, CISSP, CISM, ISO 27001 Lead Implementer.

About Baseten

Baseten is a fast-growing startup in the AI/ML space. The role focuses on establishing and enhancing security governance and compliance programs for the company’s products and operations.

Scraped 7/26/2026