# Compliance Manager

**Company:** [Anyscale](https://hotfix.jobs/companies/anyscale)
**Location:** San Francisco, CA
**Role:** Security Engineering
**Salary:** $180k – $230k/yr
**Experience:** 7+ years
**Skills:** SOC 2, ISO 27001, Governance Risk Compliance, Risk Management, Security Controls, Cloud Security, SaaS, Vanta, Security Questionnaires, FedRAMP, Data Protection, Audit Management
**Posted:** 2026-08-26

> Own Anyscale’s compliance function end to end, leading SOC 2 and ISO 27001 programs, audit readiness, customer security diligence, and enterprise risk management. The role requires 7+ years in governance, risk, and compliance plus strong cloud and SaaS security-controls expertise.

## Job Description

## Responsibilities
- Own SOC 2 Type II, ISO 27001, and future compliance framework programs, including scope, evidence, control operation, and external auditor relationships.
- Maintain a complete, audit-ready control evidence base in a compliance automation platform.
- Lead security diligence for enterprise and regulated customers, including questionnaires, audit responses, right-to-audit requests, and recurring reporting.
- Own the security risk register and mature enterprise risk management practices.
- Coordinate customer-contract compliance obligations, including data protection, breach-notification timelines, and vendor and subprocessor assessments, in partnership with legal.
- Assess and establish new certifications based on customer requirements.
- Partner with engineering and IT to integrate evidence collection into normal system operations.

## Requirements
- 7+ years of experience in governance, risk, and compliance, ideally in a high-growth startup.
- End-to-end ownership of SOC 2 and ISO 27001 programs and external audits.
- Experience leading security diligence for enterprise or regulated customers.
- Working fluency with compliance automation platforms such as Vanta or equivalent.
- Strong understanding of security controls in cloud and SaaS environments.
- Ability to independently manage programs, coordinate cross-functionally, and serve as the single compliance owner.

## Nice to Have
- Experience with contractual security obligations, including data protection agreements, breach notification, and right-to-audit provisions.
- Exposure to higher-bar frameworks such as FedRAMP.
- Experience building a compliance function or team.
- Familiarity with cloud infrastructure, AI, or ML platforms.

## Similar jobs

- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr
- [Senior Security Engineer, Threat & Offensive Security](https://hotfix.jobs/jobs/9e88bf55-b93e-4acd-ae0b-a8850f2c805e) - Valon - Remote - $180k – $230k/yr
- [Senior Product Security Engineer](https://hotfix.jobs/jobs/ee4b6e89-8ca0-45e7-9cbf-da0994206d99) - Anyscale - $180k – $210k/yr
- [Senior Application Security Engineer](https://hotfix.jobs/jobs/4bd73e3b-28a6-4dae-956a-f38222e41da3) - Siftstack - Marina Del Rey, CA - $180k – $230k/yr
- [Security Operations Lead](https://hotfix.jobs/jobs/6494f34e-ec68-46c4-a932-f070ac908ddf) - Fireworks AI - Remote - $180k – $210k/yr

**Apply:** https://hotfix.jobs/jobs/90cc18a6-7467-4675-96aa-770c09c5a6ee
**Canonical:** https://hotfix.jobs/jobs/90cc18a6-7467-4675-96aa-770c09c5a6ee