2

Remote Governance Risk Compliance Jobs in California

Whether your expertise is in compliance, risk management, governance, GRC tooling, or customer trust, you'll have the opportunity to build programs, improve processes, and help shape how Figma scales ...

AVP, AI Risk and Governance

San Diego, CA ยท On-site +1

$117K - $195K/yr

This role involves managing and establishing AI governance frameworks, performing risk assessments, and ensuring compliance with regulatory requirements. With a strong analytical background, the AVP ...

Cyber Security Program Manager

Sunnyvale, CA ยท On-site +1

$130K - $176K/yr

Lead coordination efforts with Information Security and Governance Risk & Compliance (GRC ... Open to Remote candidates. Preferred * Industry-recognized certifications such as CISA, CISSP, or ...

Director, Compliance Risk

Santa Clara, CA ยท On-site +1

$145K - $195K/yr

Santa Clara, CA or Teaneck, NJ. Remote work may be considered for exceptional cases ... Own the governance and execution of the compliance issues management lifecycle, including ...

Director, Compliance Risk

Irvine, CA ยท On-site +1

$145K - $195K/yr

Santa Clara, CA or Teaneck, NJ. Remote work may be considered for exceptional cases ... Own the governance and execution of the compliance issues management lifecycle, including ...

Director, Compliance Risk

San Francisco, CA ยท On-site +1

$145K - $195K/yr

Santa Clara, CA or Teaneck, NJ. Remote work may be considered for exceptional cases ... Own the governance and execution of the compliance issues management lifecycle, including ...

Cyber Security Program Manager

San Jose, CA ยท On-site +1

$144K - $195K/yr

Lead coordination efforts with Information Security and Governance Risk & Compliance (GRC ... Open to Remote candidates. Preferred * Industry-recognized certifications such as CISA, CISSP, or ...

Cyber Security Program Manager

Sunnyvale, CA ยท On-site +1

$144K - $195K/yr

Lead coordination efforts with Information Security and Governance Risk & Compliance (GRC ... Open to Remote candidates. Preferred * Industry-recognized certifications such as CISA, CISSP, or ...

HR Compliance Manager

Temecula, CA ยท Remote

$85K - $95K/yr

... Remote Direct Hire | $85,000-$95,000 DOE Reports To: Controller | Full-Time, Exempt Oak Tree ... Safety & Risk Compliance * Licensing & Prequalification * HR Admin & Reporting IDEAL CANDIDATE

Vice President, EHS

San Francisco, CA ยท Remote

$97K - $132K/yr

Remote (United States or London) Travel Requirements: As business needs / required Role Overview ... heights) Risk, Compliance & Governance * Oversee global regulatory compliance (OSHA, ISO, local ...

next page

Showing results 1-20

Remote Governance Risk Compliance information

What are the key skills and qualifications needed to thrive as a Remote Governance Risk Compliance (GRC) professional, and why are they important?

To succeed as a Remote Governance Risk Compliance professional, you need a strong understanding of regulatory frameworks, risk management principles, and compliance standards, often backed by a relevant degree and certifications such as CISA, CISSP, or CRISC. Familiarity with GRC platforms (like RSA Archer or LogicGate), data analytics tools, and documentation systems is crucial for effective monitoring and reporting. Outstanding analytical thinking, attention to detail, and clear communication set top candidates apart in remote environments. These competencies ensure regulatory adherence, minimize organizational risks, and maintain a robust compliance posture even from a distance.

What is a Remote Governance Risk Compliance (GRC) professional?

A Remote Governance Risk Compliance (GRC) professional is responsible for ensuring that an organization adheres to legal, regulatory, and internal policies related to risk management and corporate governance, all while working from a remote location. They assess risks, implement compliance programs, and develop policies that help prevent violations and mitigate risks. These professionals use digital tools to monitor compliance, conduct audits, and report findings to management or regulatory bodies, ensuring that the organization operates ethically and within the law, regardless of where they are physically located.

What are some common challenges faced by professionals in remote Governance, Risk, and Compliance (GRC) roles, and how can they be effectively managed?

One common challenge in remote GRC roles is maintaining clear communication and coordination with cross-functional teams, as GRC professionals often work with IT, legal, and operations departments. Staying updated on regulatory changes and ensuring timely compliance across distributed teams can also be complex. To manage these challenges, it's important to leverage collaboration tools, establish regular check-ins, and use centralized documentation systems. Building strong virtual relationships and setting clear expectations with stakeholders can further support effective risk management and compliance.
What are the most commonly searched types of Governance Risk Compliance jobs in California? The most popular types of Governance Risk Compliance jobs in California are:
What are popular job titles related to Remote Governance Risk Compliance jobs in California? For Remote Governance Risk Compliance jobs in California, the most frequently searched job titles are:
What job categories do people searching Remote Governance Risk Compliance jobs in California look for? The top searched job categories for Remote Governance Risk Compliance jobs in California are:
What cities in California are hiring for Remote Governance Risk Compliance jobs? Cities in California with the most Remote Governance Risk Compliance job openings:
Infographic showing various Remote Governance Risk Compliance job openings in California as of July 2026, with employment types broken down into 76% Full Time, 6% Part Time, and 18% Contract. Highlights an 100% Remote job distribution.
Governance Risk and Compliance

Governance Risk and Compliance

Figma

San Francisco, CA โ€ข On-site, Remote

Other

Posted 20 days ago


Job description

Figma's GRC team helps build and maintain trust with our users, regulators, business partners, and the organizations that rely on Figma every day. We partner across the company to strengthen security, manage risk, maintain compliance, and scale the programs that support our continued growth.

We're growing our team and looking for security, risk, and compliance professionals across several disciplines. Whether your expertise is in compliance, risk management, governance, GRC tooling, or customer trust, you'll have the opportunity to build programs, improve processes, and help shape how Figma scales security and trust.

Roles we hire for on this team:

  • Compliance Management
    • Lead compliance and certification programs across security and regulatory frameworks
    • Manage audit cycles, partner with external assessors, and drive audit readiness initiatives
    • Improve controls, processes, and evidence management practices across the organization
  • Security Risk Management
    • Build and maintain risk and controls frameworks that support Figma's security posture
    • Assess, prioritize, and communicate security risks across the business
    • Develop third-party risk management strategies and enterprise risk reporting programs
  • Policy & Governance
    • Manage the lifecycle of organizational security policies, standards, and procedures
    • Drive policy awareness and stakeholder engagement across the company
    • Ensure governance practices align with regulatory requirements and business objectives
  • GRC Platforms & Enablement
    • Select, implement, and optimize GRC platforms and supporting workflows
    • Scale evidence collection, reporting, and program management capabilities
    • Identify opportunities to automate and streamline GRC operations
  • Customer Trust
    • Support customer trust and business enablement activities across the sales lifecycle
    • Manage security knowledge bases, customer-facing documentation, and trust publications
    • Respond to customer security inquiries, audits, and questionnaires

This is a full time role that can be held from one of our US hubs or remotely in the United States.ย 

What you'll do at Figma:
  • Lead compliance programs across frameworks such as SOC 2, ISO 27001, FedRAMP, SOX ITGC, GDPR, and NIS2
  • Manage external audits and certification activities while partnering with auditors and assessors
  • Build and maintain risk and controls frameworks, including common control frameworks that support multiple certifications
  • Conduct risk and gap assessments and drive remediation efforts across technical and business stakeholders
  • Improve control effectiveness and operational efficiency through rationalization and process optimization
  • Implement and optimize GRC platforms that scale evidence collection and program management
  • Maintain security policies and governance processes that align with organizational risk objectives
  • Support customer trust initiatives, including security questionnaires, audits, and customer-facing security communications

We'd love to hear from you if you have:

  • 4+ years of experience in information security, compliance, risk management, or a related field
  • Hands-on experience supporting security and compliance frameworks such as SOC 2, ISO 27001, FedRAMP, PCI-DSS, or SOX ITGC
  • Experience leading or supporting audits and partnering with external assessors
  • Demonstrated ability to conduct assessments, drive remediation efforts, and manage cross-functional initiatives
  • Exceptional written and verbal communication skills across technical, business, and executive audiences
  • Demonstrated ability to improve processes, manage competing priorities, and build strong cross-functional partnerships

While it's not required, it's an added plus if you also have:

  • Operated in a public company environment with SOX ITGC requirements
  • Supported FedRAMP authorization, SSP development, 3PAO coordination, or continuous monitoring activities
  • Earned security or risk certifications such as CISA, CISSP, CISM, or CRISC
  • Implemented or administered GRC platforms such as Vanta, Drata, or similar tools
  • Scaled security, compliance, or risk programs in a high-growth environment

At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If you're excited about this role but your past experience doesn't align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.