This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Scale is seeking a highly experienced and motivated Director of Governance, Risk, and Compliance to build and lead our centralized GRC function to protect and advance the company. We are seeking someone to mature and lead the GRC function, helping to set a strategic, long-term vision, partnering cross-functionally across Scale, and representing Scale's GRC functions with partners, regulators, and other stakeholders.
Job Responsibility:
Lead the GRC function at Scale, including compliance governance, compliance advisory, risk management, and regulatory compliance
Manage and develop a team of compliance professionals spanning governance, assurance, and GRC engineering to build scalable systems and processes
Own and mature Scale's Enterprise Risk Management (ERM) program, including risk identification, assessment, mitigation, and reporting
Partner with Legal, Security, Product, Engineering, and Operations, among other teams, to help guide Scale's growth in a highly scrutinized space
Own or contribute to Scale's AI governance strategy, including monitoring and operationalizing emerging AI regulations (EU AI Act, NIST AI RMF, state AI laws)
Help set and drive vision for how GRC can not only help protect Scale, but serve as a differentiator and competitive advantage
Represent the team with internal and external stakeholders (partners, regulators, etc.)
Take a strategic, long-term view of compliance while still being willing to get into the weeds on specific compliance issues
Requirements:
10+ years of progressive experience in GRC, compliance, or related legal/regulatory roles, with demonstrated success building or scaling compliance programs
Demonstrated success in building and leading high-quality compliance programs and teams
Experience designing and operating an Enterprise Risk Management program
Deep knowledge of applicable regulatory frameworks, including SOC 2, ISO 27001, FedRAMP, GDPR, and CPRA
Experience with U.S. Government contract compliance requirements (FAR, DFARS, NIST 800-171, CMMC)
Excellent communicator with the ability to break down complex requirements into easy-to-understand and practical systems
Thrive in fast-paced, high-growth environments with ambiguity and competing priorities
Love collaborating with talented professionals across many disciplines—product, design, security, engineering, marketing, and more
Nice to have:
Experience with AI governance frameworks and emerging AI regulatory requirements
Experience building a compliance team that helped take a company public
Deep knowledge of DoD-specific compliance requirements and security frameworks