Juicebox Logo

Juicebox

GRC Lead

Posted 26 Days Ago
Be an Early Applicant
In-Office
San Francisco, CA, USA
150K-250K Annually
Mid level
In-Office
San Francisco, CA, USA
150K-250K Annually
Mid level
Build and own Juicebox’s governance, risk, compliance, and customer trust function. Lead SOC 2 Type 2 audits, advance ISO 27001 and AI governance initiatives, manage customer security questionnaires and due diligence, develop policies, improve security controls and tooling, and advise Legal, Product, Engineering, Customer Success, and Go-to-Market teams.
The summary above was generated by AI

About Juicebox

Juicebox is on a mission to help teams win the talent war.

In the age of AI, human ingenuity is the ultimate scarce resource. Recruiting is a zero-sum game where you either compete or lose.

Teams at Ramp, Notion, and leading AI labs use Juicebox to power their hiring, alongside 5,000+ customers from early-stage startups to Fortune 500 companies.

We are on the path to $100M in ARR with 20%+ monthly growth, powering thousands of searches every day and making Juicebox one of the fastest-growing AI SaaS companies in the world.

Juicebox has raised over $116M in funding from lead investors including Sequoia Capital, DST Global, and NFDG. Read more about our $80M Series B here. Additional investors in Juicebox include Y Combinator, Coatue, Bond, Lux, Verified Capital, and Committed Capital.

About the Role

We're hiring our first GRC Lead to build and own the governance, risk, compliance, and customer trust function at Juicebox.

As we continue moving upmarket and serving larger enterprise customers, security and trust have become critical growth enablers. This role will sit at the intersection of Legal, Security, Product, Engineering, and Go-to-Market, ensuring we maintain a strong security posture while helping customers confidently adopt Juicebox.

This is a highly strategic, 0→1 role. You'll own everything from compliance programs and security audits to customer-facing trust initiatives and security questionnaires. If you're excited about building a function from scratch, shaping how an AI-native company approaches governance and compliance, and directly influencing enterprise growth, we'd love to meet you.

You Will…

  • Own and evolve Juicebox's governance, risk, compliance, and customer trust programs

  • Lead SOC 2 Type 2 audits and drive adoption of additional frameworks such as ISO 27001 and emerging AI governance standards

  • Manage all customer-facing security and compliance requests, including security questionnaires, trust documentation, and customer due diligence processes

  • Develop and maintain security, governance, and corporate policies, creating new policies as business needs evolve

  • Evaluate and improve our security tooling and controls, partnering with Engineering and external security partners to identify gaps and strengthen our security posture

  • Serve as a trusted advisor to Legal, Product, Engineering, Customer Success, and Go-to-Market teams on security and compliance matters

  • Help position security and trust as competitive advantages that support enterprise sales and customer adoption

You Have…

  • 3+ years of experience in GRC, Customer Trust, Security Compliance, or a related field

  • Experience owning or supporting compliance frameworks such as SOC 2, ISO 27001, or similar programs

  • Experience responding to customer security questionnaires and supporting enterprise security reviews

  • Strong written communication skills and the ability to translate technical concepts for business and customer audiences

  • A hands-on mindset with the ability to independently drive projects from concept to execution

  • Experience working cross-functionally with Legal, Security, Engineering, and Go-to-Market teams

Bonus Points If You…

  • Experience building or scaling a GRC, compliance, or customer trust function at a startup

  • Familiarity with AI governance, AI risk management, or emerging AI compliance frameworks

  • Experience supporting international compliance initiatives, including UK or European requirements

  • Experience evaluating security tooling such as device management, endpoint protection, or data loss prevention solutions

Perks & Benefits for Full Time Employees

  • Top-of-market compensation with meaningful equity, because everyone should share in our success.

  • Comprehensive healthcare with 100% employer-paid medical coverage for employees (PPO Platinum plan with $0 deductible). 90% employer contribution for dependents. Dental & Vision: 90% employer covered; 85% for dependents.

  • $2,000 annual wellness stipend to support your physical, mental, and financial well-being.

  • Daily meals provided: breakfast catering, lunch order via DoorDash corporate, and for those who like to work late, dinner if staying after 7pm

  • $300/month commuting stipend to help cover the cost of getting to and from the office.

HQ

Juicebox San Francisco, California, USA Office

San Francisco, CA, United States

Similar Jobs

14 Days Ago
Hybrid
San Francisco, CA, USA
150K-190K Annually
Entry level
150K-190K Annually
Entry level
Artificial Intelligence • Consumer Web • Wearables
Lead Wispr Flow’s security assurance and GRC programs across SOC 2, ISO 27001, privacy, risk management, and enterprise customer requirements. Own customer security reviews, questionnaires, escalations, Trust Center content, audit evidence, controls, remediation, and compliance tooling. Partner with Engineering, Product, Legal, Sales, and Customer Success to address security blockers, improve automation, communicate AI security and privacy practices, and translate customer feedback into product requirements.
Top Skills: Access ControlCcpaCloud SecurityDrataEncryptionGdprHipaaIncident ResponseIso 27001LinearLoggingSaas ArchitectureSafebaseScimSoc 2SsoVulnerability Management
21 Days Ago
In-Office
San Francisco, CA, USA
350K-425K Annually
Senior level
350K-425K Annually
Senior level
Artificial Intelligence • Software
Own Mercor’s security GRC and compliance programs, including continuous SOC 2 monitoring, ISO 27001 certification, customer audits, third-party risk, policy lifecycle management, controls-as-code, data-handling procedures, and enterprise security questionnaires. Build the company’s first GRC function, automate evidence collection and questionnaire responses, manage auditor and customer relationships, and support frameworks such as HIPAA, FedRAMP, and EU AI Act conformity.
Top Skills: DrataKmsMcpPantherPythonSecureframeShellSprintoSQLVantaWiz
One Month Ago
Remote or Hybrid
7 Locations
220K-280K Annually
Senior level
220K-280K Annually
Senior level
Artificial Intelligence • Marketing Tech • Software • Generative AI
Build and automate technical security, privacy, and compliance controls across cloud, identity, HR, source control, CI/CD, and SaaS systems. Develop continuous monitoring, dashboards, alerts, release gates, evidence collection, control testing, and exception management. Design AI-assisted GRC workflows and support AI assurance initiatives. Collaborate with Security, Engineering, Privacy, Legal, auditors, and customer security teams in a fast-moving 0-to-1 environment.
Top Skills: APIsCi/CdIso 27001PythonSoc 2

What you need to know about the San Francisco Tech Scene

San Francisco and the surrounding Bay Area attracts more startup funding than any other region in the world. Home to Stanford University and UC Berkeley, leading VC firms and several of the world’s most valuable companies, the Bay Area is the place to go for anyone looking to make it big in the tech industry. That said, San Francisco has a lot to offer beyond technology thanks to a thriving art and music scene, excellent food and a short drive to several of the country’s most beautiful recreational areas.

Key Facts About San Francisco Tech

  • Number of Tech Workers: 365,500; 13.9% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Google, Apple, Salesforce, Meta
  • Key Industries: Artificial intelligence, cloud computing, fintech, consumer technology, software
  • Funding Landscape: $50.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Sequoia Capital, Andreessen Horowitz, Bessemer Venture Partners, Greylock Partners, Khosla Ventures, Kleiner Perkins
  • Research Centers and Universities: Stanford University; University of California, Berkeley; University of San Francisco; Santa Clara University; Ames Research Center; Center for AI Safety; California Institute for Regenerative Medicine

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account