GRC Manager
Baseten
full-remotemidpermanentsecurityoperations Full remote Yesterday via WTTJ
See how well this job matches your profile
Sign up to get an AI match score and generate a tailored application in seconds.
Get your match scoreTags
GRCSOC 2ISO 27001GDPRNISTRisk ManagementControl DesignAWS ComplianceGRC ToolsAI/ML Security
About the role
Role Overview
Join Baseten as a GRC Manager to establish, lead, and continuously enhance the company’s security governance and compliance programs. This is a remote-first role where you’ll partner cross-functionally to develop policies, manage audits, and implement controls aligned to recognized industry frameworks.
Key Missions
- Establish, lead, and continuously enhance Baseten’s security governance and compliance programs.
- Partner with engineering, operations, legal, and leadership to develop policies, manage audits, and implement controls aligned with standards such as:
- SOC 2
- ISO 27001
- GDPR
- Build and manage the company-wide risk assessment program: identify, track, and mitigate key security and compliance risks.
Requirements
- 5+ years of experience in GRC, security compliance, or information security roles (ideally in SaaS or cloud-native environments).
- Strong organizational, documentation, and communication skills with attention to detail.
- Ability to thrive in a fast-paced, high-growth startup while maintaining process discipline.
- Familiarity with risk management methodologies, control design, and governance frameworks.
- Proven track record managing compliance audits and certification programs end-to-end.
- Experience working cross-functionally with technical and non-technical stakeholders to implement compliance controls.
- Strong understanding of security frameworks/standards including SOC 2, ISO 27001, NIST, and GDPR.
- Experience with cloud security compliance in AWS or GCP.
- Hands-on experience using GRC tools, e.g. Vanta, Drata, Tugboat Logic, Secureframe.
Nice-to-Haves / Additional Signals
- Understanding of AI/ML security, data privacy, and model governance.
- Experience scaling compliance programs in an early-stage or rapidly growing startup.
- Relevant certifications such as CISA, CISSP, CISM, ISO 27001 Lead Implementer.
About Baseten
Baseten is a fast-growing startup in the AI/ML space. The role focuses on establishing and enhancing security governance and compliance programs for the company’s products and operations.
Scraped 7/26/2026