MeetElise

Director of Governance, Risk, and Compliance

MeetElise$200K — $275K *
Finance & Insurance
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • 8+ years of experience in Governance, Risk, and Compliance or related fields, with at least 3 years in a leadership role
  • Deep expertise in compliance frameworks such as SOC 1, SOC 2, PCI, HITRUST, and HIPAA
  • Proven experience managing audit programs end-to-end with external auditors
  • Experience building and scaling a GRC function, including team hiring and development
  • Strong grasp of vendor risk management and third-party due diligence
  • Ability to communicate complex compliance issues effectively to executives
  • Excellent cross-functional influencing skills across various teams
  • Willingness to work in-person at least 4-5 days a week

Responsibilities

  • Own and lead the company's GRC program across various compliance frameworks
  • Manage audit relationships, overseeing planning and documentation
  • Define and enforce compliance roadmaps with cross-functional accountability
  • Attract and mentor top-tier talent for the GRC team
  • Oversee the vendor risk management program and third-party due diligence
  • Lead reviews of vendor and client security questionnaires with final sign-off authority
  • Drive the creation and adoption of security and compliance policies
  • Partner with Legal and Security on security-related contractual obligations

Benefits

  • Equity in the company
  • 100% covered Medical, Dental and Vision premiums
  • Fully paid parental leave
  • Commuter benefits
  • 401k benefits
  • Fitness & home services stipend
  • Collaborative in-office environment with meals covered
  • Unlimited vacation and paid holidays
  • Relocation packages covered
Full Job Description
About The Role

We are seeking a Director of Governance, Risk, and Compliance (GRC) to scale our risk and compliance programs. This role will be instrumental in leading and scaling the GRC team to meet regulatory and IT audit readiness, manage third-party risk, and ensure our policies and processes align with industry standards.

You will work cross-functionally with Security Engineering, Legal, and business stakeholders to operationalize compliance efforts, support audits, and manage the GRC team to respond to customer and vendor due diligence requests. This is a high-impact role with direct influence on our ability to meet critical compliance timelines and support the operations of the business.

Key Responsibilities
  • Own and lead the company's GRC program, setting strategic direction across frameworks including SOC 1, SOC 2, PCI, HITRUST, and HIPAA
  • Serve as the primary owner of audit relationships, overseeing planning, evidence collection, documentation, and auditor communications
  • Define and enforce compliance roadmaps, ensuring cross-functional alignment and accountability on regulatory requirements
  • Attract top-tier talent to scale the GRC team, providing mentorship, setting priorities, and managing team performance
  • Oversee the vendor risk management program, including third-party due diligence, risk tiering, and escalation of critical findings
  • Lead reviews of vendor and client security questionnaires (DDQs) in partnership with Security Engineering, with final sign-off authority
  • Own the security and compliance policy framework - driving creation, review cycles, and organization-wide adoption
  • Partner with Legal and Security leadership on security-related contractual obligations, including review and negotiation of security addenda


Move at rocket speed, build something massive.

We're scaling fast, solving real client problems with precision and ambition. Here, you own your impact; full autonomy, no micromanagement, no fluff.

We hire the best, expect the best, and give you the masterclass of your career. It's hard, it's intense, and it's the most rewarding work you'll ever do. If you're hungry, driven, and ready to build something massive, climb aboard.

Requirements
  • 8+ years of experience in Governance, Risk, and Compliance, Information Security, or a related field, with at least 3 years in a leadership or program ownership role
  • Deep expertise across compliance frameworks including SOC1, SOC 2, PCI, HIPAA, and ISO certifications
  • Proven track record managing audit programs end-to-end, including direct relationships with external auditors
  • Experience building or scaling a GRC function, including team hiring and development
  • Strong understanding of vendor risk management, third-party due diligence, and risk-based decision-making
  • Ability to translate complex compliance and risk topics for executive and board-level audiences
  • Excellent cross-functional influencing skills - comfortable working with Legal, Engineering, and business leadership
  • Willingness to work in person at our office 4-5 days a week


Why Join

Growth and impact. It's not often that you can get in on the ground floor of a funded (unicorn!) startup that's scaling so fast. That means that instead of following a playbook, you'll be writing it. Every single day you will be challenged to identify how we can scale and execute on it. You'll learn what works when you succeed and what doesn't when you fail. Either way, the rest of the team will be here to support you.

Benefits

In addition to the growth and impact you'll have at EliseAI, we offer competitive salaries along with the following benefits:
  • Equity in the company
  • Medical, Dental and Vision premiums covered at 100%
  • Fully paid parental leave
  • Commuter benefits
  • 401k benefits
  • Fitness & home services stipend to cover part of your expenses so you can focus on what matters
  • A collaborative in-office environment with an open floor plan, fully stocked kitchen, and all meals covered in the office
  • Unlimited vacation and paid holidays
  • We'll cover relocation packages and make the move exciting, not painful!


Job Compensation Range

The salary range for this role is $200,000 - $275,000. EliseAI offers a competitive total rewards package which includes base salary, equity, and a comprehensive benefits & perks package. Exact compensation is determined based on a number of factors including experience, skill level, location and qualifications which are assessed during the interview process. Additional details about total compensation and benefits will be provided by our Recruiting Team during the hiring process.

About MeetElise

Industry
Founded
2017

Similar Jobs

More Jobs at MeetElise

More Finance & Insurance Jobs

Find similar Director of Governance, Risk, and Compliance jobs: