Director, Security GRC Product Delivery

DocuSign
San Francisco
Workplace: HybridFull timeUSD 212,100 - 342,650 annuallyFunction: Transportation & Fleet OperationsExperience: 10+ yearsEducation: bachelorsSkills: ["Leadership","Cross-functional collaboration","Strategic thinking","Stakeholder management","Execution excellence"]

Lead security compliance as a product by managing GRC product and embedded “pod” delivery across Docusign’s product, enterprise, and security domains. Drive a multi-year roadmap to transition from manual, document-centric audits to automated, scalable GRC SDLC, including continuous control testing and evidence automation. Oversee end-to-end security compliance audits across global frameworks, build readiness for emerging certifications, and serve as liaison for external auditors and regulators.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
DocuSign
DocuSign
12 hours ago

Director, Security GRC Product Delivery

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 5 hours agoStatus: Live

Job Summary

Lead security compliance as a product by managing GRC product and embedded “pod” delivery across Docusign’s product, enterprise, and security domains. Drive a multi-year roadmap to transition from manual, document-centric audits to automated, scalable GRC SDLC, including continuous control testing and evidence automation. Oversee end-to-end security compliance audits across global frameworks, build readiness for emerging certifications, and serve as liaison for external auditors and regulators.
Location: San Francisco
Workplace: Hybrid
Employment Type: Full time
Job Function: Transportation & Fleet Operations
Seniority: Director level

Key Responsibilities

  • •Execute the GRC product delivery strategy by guiding embedded cross-functional pods to drive measurable risk reduction and continuous improvements.
  • •Define and drive the multi-year security compliance product vision and roadmap, moving from manual audits to automated, scalable GRC SDLC offerings.
  • •Manage end-to-end security compliance audits across industry frameworks and lead readiness for emerging certifications as a core product offering.
  • •Develop and oversee automated, scalable compliance models and evaluate emerging certifications and regulatory trends to keep the controls framework ahead of mandates.
  • •Partner with GRC engineering and cross-functional teams to embed evidence automation and controls into enterprise toolsets and CI/CD pipelines; provide executive visibility via dashboards and reporting.

Pay and Benefits

Salary: USD 212,100 - 342,650 annually
Equity and Bonus:Equity
Perks:Paid LeaveHealth InsuranceLearning BudgetRetirementEquity

Key Requirements

  • •10+ years in security compliance, IT audit, security risk management, or GRC, with at least 5+ years managing people and providing technical leadership.
  • •Bachelor’s or Master’s degree in Information Security, Computer Science, Audit, Analytics, or related field.
  • •Hands-on experience designing and leading audit programs across frameworks including SOC 1, SOC 2, ISO, PCI-DSS, IRAP, ISMAP, and FedRAMP.
  • •Experience transitioning manual compliance/testing into streamlined, evidence-automated productized offerings.
  • •Experience with security engineering and complex enterprise IT environments, including cloud-native architectures and SaaS security.
Experience:10+ yearsSecurity complianceIT auditGRCSaaS security
Education:Bachelor's in Information Security, Computer Science, Audit, Analytics
Skills:LeadershipCross-functional collaborationStrategic thinkingStakeholder managementExecution excellence
Certifications:CISACISSPCISMCRISCCDPSECGRC
Languages:En-us
Tech Stack:GRCSOC 1SOC 2ISOPCI-DSSIRAPISMAPFedRAMPCI/CDEvidence automationControl testingContinuous monitoring workflowsSaaS security

Company Brief

DocuSign
Provides a cloud-based electronic signature and intelligent agreement management platform that automates document workflows, identity verification, contract lifecycle management, and agreement analytics for enterprises and individuals worldwide.
Industry: LegalTech
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Francisco, United States
Founded: 2003
Glassdoor
Glassdoor: 3.6
WebsiteLinkedInGlassdoor