Head of Risk and Compliance

Applied Intuition
Sunnyvale
Workplace: OnsiteFull timeUSD 160,000 - 190,000 annuallyFunction: Legal, Risk & ComplianceExperience: 6-6 yearsSkills: ["Communication","Collaboration","Stakeholder management","Risk assessment","Policy"]

Lead and mature the security GRC program across the organization, coordinating with legal, engineering, IT, and operations to identify, communicate, and remediate security and compliance risks. Manage policy lifecycle, risk assessments, and audit readiness for SOC 2, ISO 27001, TISAX, and other frameworks, while driving third-party risk management and executive risk reporting.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Applied Intuition
Applied Intuition
5 months ago

Head of Risk and Compliance

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 15 hours agoStatus: Live

Job Summary

Lead and mature the security GRC program across the organization, coordinating with legal, engineering, IT, and operations to identify, communicate, and remediate security and compliance risks. Manage policy lifecycle, risk assessments, and audit readiness for SOC 2, ISO 27001, TISAX, and other frameworks, while driving third-party risk management and executive risk reporting.
Location: Sunnyvale
Workplace: Onsite
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Sr. Manager level

Key Responsibilities

  • •Own and mature the security GRC program, including policy lifecycle management, risk register maintenance, and control framework alignment across the organization
  • •Conduct comprehensive enterprise and product-level risk assessments to identify, prioritize, and track risks against the company's risk appetite - translating findings into actionable remediation plans for stakeholders
  • •Lead, manage and support compliance efforts such as, but not limited to, SOC2, ISO 27001, ISO 9001, TISAX, and federal/defense requirements - owning audit readiness, evidence collection, and remediation tracking end to end
  • •Drive Third Party Risk Management (TPRM) program, including vendor assessments, contract security reviews, and ongoing monitoring of critical third parties
  • •Build and maintain the GRC program infrastructure - including risk tracking, compliance tooling, reporting cadences, and executive-level risk reporting

Pay and Benefits

Salary: USD 160,000 - 190,000 annually

Key Requirements

  • •6+ years of experience in security GRC, risk management, or compliance program ownership, with a track record of building or maturing programs, not just executing within them
  • •Hands on experience in running Enterprise Risk Assessments aligned with industry standard frameworks, risk register ownership, and translating technical risk into business-level impact
  • •Past experience of running Security Maturity Assessments against NIST 800-53, CCF, and more
  • •Deep hands-on experience managing SOC 2, ISO 27001, and TISAX audits - including scoping, control mapping, evidence coordination, and auditor management
  • •Experience running Third Party Risk Management programs including vendor tiering, security assessments, and ongoing monitoring
Experience:6-6 yearsSecurityGRCRisk managementCompliance
Skills:CommunicationCollaborationStakeholder managementRisk assessmentPolicy
Certifications:CISSP
Tech Stack:SOC 2ISO 27001TISAXNIST 800-53GRC tooling

Company Brief

Applied Intuition
Builds software tools for autonomous vehicle development, including simulation, validation, and data infrastructure for automakers and robotics teams. Also supports defense applications with autonomy-focused testing and deployment platforms.
Industry: Developer Tools
Company Size: Enterprise (1,001+ employees)
Growth: Scaleup
Headquarters: Mountain View, United States
Founded: 2017
WebsiteLinkedIn