Staff Privacy and Compliance Program Manager

Posted:
10/31/2024, 10:51:01 AM

Location(s):
Nevada, United States ⋅ Reno, Nevada, United States

Experience Level(s):
Mid Level

Field(s):
Product

Pay:
$60/hr or $124,800 total comp

Are you passionate about building a world-class product, privacy, and security infrastructure? Do you have a strong track record of driving operational excellence across programs? Do you thrive as a problem-solver in a fast-paced, often hectic environment?  Do you enjoy partnering with other teams to implement privacy,  security,  and compliance programs?

Ridgeline’s Staff Privacy & Compliance Program Manager will have a unique opportunity to contribute to the privacy, security, and compliance initiatives from an early stage of the company.

In this position, you will work directly with other leaders in Security, Privacy, Compliance, Legal, and Engineering to define, design, implement, and monitor privacy, security, and compliance procedures throughout the organization.  

You’ll be responsible for the performance and monitoring of controls critical to the privacy, security, and compliance of the Ridgeline platform and partnering with other functional area leaders to identify risks and help develop mitigation strategies. You’ll contribute to the privacy, security, and compliance training programs and be an integral part of bringing those around you on our cloud privacy and security journey.

At this time, Ridgeline does not sponsor work visas.

What you will do:

  • Partner with other teams as a security subject matter expert during design/planning stages to help ensure security requirements are designed and compliance objectives are met. 
  • Partner with Ridgeline control owners across the organization to help them understand audit requirements and audit results to identify and prioritize remediation options for any gaps and findings closure. 
  • Evolve and implement security training and awareness programs to help up-level Ridgeline personnel with Ridgeline’s privacy, security, and compliance policies, procedures, and controls.
  • Draft security policies, technical design documents, and document controls and procedures
  • Evaluate regulatory changes to understand the impact on Ridgeline’s privacy, security, and compliance program with industry security standards and privacy expectations. 
  • Develop, implement, and manage security auditing and monitoring procedures.
  • Evaluate the privacy, security, and compliance of third-party or natively provided tools and services by thinking creatively, owning the problems, seeking solutions, and communicating clearly. 
  • Contribute to a collaborative environment deeply rooted in empathy,  learning, teaching, and transparency. 
  • Partner with Ridgeline Security Technical Program Managers to manage critical projects across the organization.
  • Partner with Security leadership to drive process improvement efforts and mature our roadmap, planning, and metrics programs.

Required Skills and Experience

  • Bachelor's degree in Management Information Systems,  Accounting, Computer Science, or equivalent practical experience
  • 4+ years working in risk and controls, audit, project management, or information security compliance
  • Experience in regulatory and compliance standards such as SOC 2, ISO27001, ISO27018, CCPA, GDPR, etc.
  • Knowledge of security frameworks and best practices, such as CSA CCM, NIST, CoBIT, and Trust Service Criteria
  • Familiarity with data privacy principles, responsible artificial intelligence best practices, and regulatory requirements
  • Strong organizational and project management skills 
  • An aptitude for problem-solving, emerging technology, and SaaS providers 
  • Ability to communicate and influence effectively with colleagues at all levels
  • Ability to organize and prioritize privacy, security, and compliance-related projects
  • Experience developing and reporting on critical project metrics
  • Serious interest in having fun at work

Nice-to-Haves

  • AWS Certified Cloud Practitioner (CCP)
  • Experience with public cloud compliance
  • Certified Information System Auditor (CISA)
  • Certified Information Privacy Professional (CIPP/E/US/CA)
  • GIAC Security Essentials (GSEC)
  • Leadership and Responsible AI Governance experiences are a plus

About Ridgeline

Ridgeline is the industry cloud platform for investment management. It was founded by visionary tech entrepreneur Dave Duffield (co-founder of both PeopleSoft and Workday) to apply his successful formula of solving operational business challenges with bold innovation and human connectivity to the unique needs of the investment management industry. 

Ridgeline started with a clean sheet of paper and a deep bench of experts bound by a set of core values and motivated to revolutionize an industry underserved by its current tech offerings. We are building a new, modern platform in the public cloud, purpose-built for the investment management industry and we are prioritizing security, agility, and usability to empower business like never before.

With a growing campus in Reno and offices in New York, Lake Tahoe, and the Bay Area, Ridgeline is proud to have built a fast-growing, people-first company that has been recognized by Fast Company as a “Best Workplace for Innovators,” by The Software Report as a “Top 100 Software Company,” and by Forbes as one of “America’s Best Startup Employers.”

Ridgeline is proud to be a community-minded, discrimination-free equal opportunity workplace.

Ridgeline processes the information you submit in connection with your application in accordance with the Ridgeline Applicant Privacy Statement. Please review the Ridgeline Applicant Privacy Statement in full to understand our privacy practices and contact us with any questions.

Compensation and Benefits 

As an employee at Ridgeline, you’ll have many opportunities for advancement in your career and can make a true impact on the product.

In addition to the base salary, 100% of Ridgeline employees can participate in our Company Stock Plan subject to the applicable Stock Option Agreement. We also offer rich benefits that reflect the kind of organization we want to be: one in which our employees feel valued and are inspired to bring their best selves to work. These include unlimited vacation, educational and wellness reimbursements, and $0 cost employee insurance plans. Please check out our Careers page for a more comprehensive overview of our perks and benefits.