Experience collaborating with engineering, IT, and business teams for evidence collection.
Proficient with tools like AWS, Jira, GitHub, HubSpot, Google Workspace, and Slack.
Excellent written communication skills for translating technical details for non-specialists.
High attention to detail and accountability for compliance records.
Responsibilities
Own daily management of SOC 2 compliance audit requirements, including readiness and remediation.
Coordinate with auditors and stakeholders for timely evidence collection and audit responses.
Implement and enhance security compliance tools from an audit perspective.
Continuously track control performance and flag gaps before they become issues.
Maintain clean and defensible audit documentation and evidence repositories.
Support strategy and project management for Sarbanes-Oxley compliance initiatives.
Lead control evaluations and gap assessments for ISO 27001 readiness.
Project-manage cross-functional uplift workstreams, ensuring accountability and timelines.
Build relationships with control owners to streamline evidence requests and identify automation opportunities.
Escalate risks and control weaknesses to compliance leadership with context and recommendations.
Benefits
Fully remote work environment with home office setup allowance.
Unlimited vacation policy promoting meaningful time off.
Parental leave benefits and a culture prioritizing work-life balance.
Comprehensive health and wellness benefits package.
401(k) plan with employer contributions.
Opportunity to work with passionate colleagues in a supportive environment.
Full Job Description
Role Summary
We're looking for a Compliance Operations Manager to join our Compliance Operations function and own the day-to-day management of our security & compliance programs. You'll manage our SOC 2 audit lifecycle end-to-end, working cross-functionally to gather evidence and keep our compliance posture audit ready year-round as well as working with the team to perform both internal and external audits. You will also partner with Engineering, Finance, Legal and others to determine what is required for uplifts to frameworks like Sarbanes-Oxley and ISO27001, creating and executing on roadmaps as we work to uplift this function. This is a hands-on, high-ownership role for someone who enjoys turning complex regulatory and framework requirements into clear, repeatable operational processes.
What You Will Do
Manage SOC 2 Compliance Operations
Own day-to-day management of all compliance audit requirements for SOC 2, including readiness, fieldwork, and remediation cycles.
Coordinate with auditors and internal stakeholders to ensure timely, accurate evidence collection and audit response.
Work to implement and uplift security compliance tooling from both an audit and a trust center perspective.
Track control performance continuously, flagging gaps or exceptions before they become audit findings.
Maintain audit documentation, evidence repositories, and control narratives in a clean, defensible state at all times.
Drive SOX and ISO 27001 Uplift Initiatives
Support strategy, control evaluation, and project management for new Sarbanes-Oxley compliance initiatives.
Lead control evaluation and gap assessments for ISO 27001 readiness and certification efforts.
Project-manage cross-functional uplift workstreams, including timelines, milestones, and stakeholder accountability.
Partner Cross-Functionally on Evidence & Controls
Work directly with engineering, IT, finance, and business teams to gather and validate evidence across all compliance objectives.
Build and maintain relationships with control owners so evidence requests are routine, not disruptive.
Identify opportunities to automate or streamline recurring evidence collection using existing systems.
Escalate risks, control weaknesses, or resourcing gaps to compliance leadership with clear context and recommendations.
Strengthen the Compliance Operating Model
Maintain accurate control inventories, ownership mappings, and audit calendars leveraging tooling and automation wherever possible.
Document processes and playbooks so compliance operations remain consistent as the company scales.
Monitor the regulatory and framework landscape for changes that may affect existing controls or programs.
Requirements
5 years+ of experience in compliance operations, IT/security compliance, audit, or a related field.
Strong background in compliance and privacy, with direct experience supporting SOC 2 audits.
Working knowledge of SOX and ISO 27001 frameworks, or demonstrated ability to learn and apply new frameworks quickly.
Comfort managing multiple audit and uplift workstreams simultaneously, with strong project management skills.
Experience partnering cross-functionally with engineering, IT, and business teams to collect evidence and drive control ownership.
System comfort across tools such as AWS, Jira, GitHub, HubSpot, Google Workspace, and Slack.
Excellent written communication skills, with the ability to translate technical and regulatory detail for non-specialist audiences.
High attention to detail and strong personal accountability for accuracy and completeness of compliance records.
Bonuses:
Prior experience in a startup or high-growth environment.
Experience with compliance automation or GRC tooling.
Familiarity with additional frameworks such as GDPR, CCPA, or HIPAA.
Experience preparing for or supporting a company's first SOC 2, SOX, or ISO 27001 certification.
Benefits
What You'll Get
A full-time position, with a competitive salary based on experience. The base salary for this role is $130k - $160k. In addition to base compensation, this role is eligible for a target annual bonus of 15% of base salary, and participation in long-term incentive programs tied to company growth and performance. We use market data and consider your job family, background, skills, experience, and U.S. work location to determine compensation within our established pay range.
Fully remote work environment with home office set-up allowance.
Real and lived work-life balance - Company perks include no pre-set vacation limits (with a top-down culture of taking meaningful PTO every year!), parental leave benefits, and a corporate value of working sustainably and putting families first.
Competitive benefits package that includes numerous health and wellness benefits.
401(k) plan, with employer contributions to the same.
Opportunity to work with amazing people who are passionate about their mission, thriving in a fully-remote work environment, and learning and growing every day.
At this time, Renew Home is unable to sponsor or take over sponsorship of employment visas. Candidates must be authorized to work in the United States without current or future immigration from the company, including training plans for foreign students.