Sigma Computing

Security GRC Specialist


PayCompetitive
LocationSan Francisco/California
Employment typeFull-Time

This job is now closed

  • Job Description

      Req#: 5818335003

      Security GRC Specialist

      About the role:

      Sigma is looking for a Security GRC Specialist to help in scaling and growing Sigma’s GRC program through automation. You will be working alongside with the Security GRC Manager to ensure Sigma meets their security and compliance initiatives in a timely manner. If you’re a creative thinker who wants to build great processes and reduce risk, we’d love to hear from you!

      What you’ll be doing:

      • Enforce and maintain compliance processes and procedures through automation
      • Creation and maintenance of documented policies,guidelines, processes, and procedures
      • Research, implementation, and maintenance of compliance related tools: evidence collection automation, control monitoring, identity governance and administration
      • Identify and manage IT security risks by performing formal risk assessments on internally developed applications, external partner connectivity, and third party vendors that may store, process or transmit Sigma data.
      • Assist in Customer risk assessments.
      • Act like an owner and Collaborate with multiple stakeholders including HR, Legal, Operations, and Engineering for building the GRC programs.
      • This position comes with autonomy and accountability as you will be leading GRC projects through to completion with a set of guiding principles.
      • Stay current with emerging security and privacy trends.
      • Drive the value of Compliance as a strategic partner.

      Who you are:

      • 5+ years of experience in Governance, Risk and/or Compliance.
      • Good understanding of various privacy & compliance frameworks such as SOC1/2, HIPAA, ISO 27001, CSA Star, NIST,CCPA,GDPR and others
      • Technical understanding of security controls and identifying the “spirit” of the control, and how to implement them.
      • Basic understanding of Cloud security and Cloud technologies
      • You have figured out how to spend less time doing manual work and are constantly thinking about how to automate things.
      • Strong communication in written and verbal, plus the ability to articulate and decipher complex business and regulatory areas with compliance, legal, business operations, product management, product development, engineers, and security
      • Experience in implementing GRC tools like - OneTrust, ZenGRC etc

      Good to Have:

      • Experience with Global Privacy frameworks
      • Experience in scripting languages such python is a plus
      • Understanding of security technologies and approaches to secure an organization.
      • Experience working with software engineering teams in an agile/dynamic environment
      • Relevant university bachelor's degree, experience, and/or relevant technical/professional qualifications/certification such as CISSP, CISM, CISA or ISO 27001 Lead Auditor/Implementer equivalent.

      Additional Job details

      The base salary range for this position is $160k - $180k annually.

      Compensation may vary outside of this range depending on a number of factors, including a candidate’s qualifications, skills, competencies and experience. Base pay is one part of the Total Package that is provided to compensate and recognize employees for their work at Sigma Computing. This role is eligible for stock options, as well as a comprehensive benefits package.



      Note: The world around us is changing, but we at Sigma Computing are growing and scaling. We raised our Series C in Dec 2021. With that, and us being able to 3X our revenue year on year, hiring and building out the best version of our product is priority. That is why we want to talk to you.

      About us:

      At Sigma Computing, our mission is to empower everyone to make the best possible decisions at every turn by removing the barriers that prevent people from analyzing data across sources and delivering the full spectrum of self-service cloud analytics and business intelligence.

      We raised a $300M Series C from Co-Leads D1 Capital Partners and XN, Existing Investors Sutter Hill Ventures and Altimeter Capital, and Snowflake Ventures.

      Come join us to help us be smarter and grow together!

      Benefits For Our Full-Time Employees:

      • Equity
      • Generous health benefits
      • Flexible time off policy. Take the time off you need!
      • Flexible schedule, do the work you need to get done in the time you have to get it done
      • At least 12 weeks of paid bonding time for all new parents
      • Traditional and Roth 401k
      • Commuter and FSA benefits

      Sigma Computing is an equal opportunity employer. We are committed to building a smart and strong team regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender, gender identity or expression, or veteran status. We look forward to learning how your experience can enable all of us to grow.

      Note: We have an in-office work environment in both our SF & NYC office.

  • About the company

      Sigma is the first business intelligence tool built for teams to explore their cloud data warehouse using an intuitive spreadsheet UI — no SQL required.