Compliance Strategist – Security & Privacy

2 Days ago • 5-7 Years

Job Summary

Job Description

The Compliance Strategist at DevRev will lead and manage security certification programs like SOC 2 Type II, ISO 27001, HIPAA, FedRAMP, and GDPR, ensuring audit readiness and regulatory compliance. They will develop and evolve the compliance strategy, aligning it with global regulations and business needs. They will also drive the adoption and optimization of GRC platforms, conduct risk assessments, and partner with various teams to implement and document controls. Furthermore, they will support the legal and privacy team, prepare responses to customer security questionnaires, lead security awareness training, and monitor compliance metrics. The role requires expertise in various compliance frameworks and GRC tools. The candidate should have strong project management and communication skills to influence technical and non-technical teams.
Must have:
  • Lead and manage security certification programs including SOC 2 Type II, ISO 27001, HIPAA.
  • Develop and evolve compliance strategy aligning with global regulations.
  • Drive the adoption and optimization of GRC platforms.
  • Conduct internal risk assessments, gap analyses, and vendor risk reviews.
  • Implement, track, and document technical and administrative controls.
  • Support legal and privacy team with data protection agreements and GDPR obligations.
  • Prepare responses to customer security questionnaires and RFPs.
  • Lead security awareness and compliance training programs.

Job Details

DevRev

DevRev’s AgentOS, purpose-built for SaaS companies, comprises three modern CRM apps for support, product, and growth teams. It connects end users, sellers, support, product people, and developers, reducing 9 business apps and converging 6 teams onto a common platform.

Unlike horizontal CRMs, DevRev takes a blank canvas approach to collaboration, AI, and analytics, enabling SaaS companies to increase product velocity and reduce customer churn. DevRev is used by thousands of companies in search of low latency analytics and customizable LLMs to thrive in this era of GenAI.

Headquartered in Palo Alto, California, DevRev has offices in seven global locations. We have raised $100 million in funding from investors like Khosla Ventures and Mayfield at a $1.1 billion valuation. We are also honored to be named on the Forbes 2024 list of America’s Best Startup Employers. Founded in October 2020 by Dheeraj Pandey, former co-founder and CEO of Nutanix, and Manoj Agarwal, former SVP of Engineering at Nutanix, DevRev continues to push the boundaries of innovation, helping thousands of companies thrive in the rapidly evolving landscape of AI-driven SaaS.

Key Responsibilities:

  • Lead and manage security certification programs, including SOC 2 Type II, ISO 27001, HIPAA, FedRAMP, GDPR, and ensure ongoing audit-readiness and regulatory compliance.
  • Develop and evolve compliance strategy, aligning it with evolving global regulatory landscapes and business needs.
  • Drive the adoption and continuous optimization of GRC platforms (e.g., Drata, Vanta) to automate control testing, evidence collection, and reporting.
  • Conduct internal risk assessments, gap analyses, vendor risk reviews, and control testing to maintain a strong security and compliance posture.
  • Partner with Engineering, Legal, Product, HR, and leadership to implement, track, and document technical and administrative controls aligned with compliance frameworks (e.g., NIST 800-53, ISO 27001 Annex A).
  • Support the legal and privacy team in reviewing and operationalizing data protection agreements, international data transfers, and GDPR obligations.
  • Prepare responses to customer security questionnaires, RFPs, and third-party due diligence requests.
  • Lead security awareness and compliance training programs across the organization to drive a culture of security-first.
  • Monitor, track, and report on compliance and risk metrics, KPIs, and remediation plans to stakeholders and leadership.
  • Stay current on emerging security/privacy regulations, threats, and industry trends to advise on strategic risk and compliance impacts.

Required Qualifications:

  • 5 –7 years of relevant experience in Information Security Compliance, GRC, or Risk Management within SaaS or cloud-native environments.
  • Deep expertise in multiple compliance and risk frameworks, including:
  • SOC 2, ISO 27001, NIST 800-53, HIPAA, GDPR, FedRAMP.
  • Proven experience with GRC tools such as Drata, Vanta, Tugboat Logic, or similar.
  • Strong working knowledge of cloud infrastructure environments (AWS, GCP) and how they map to compliance controls.
  • Strong project management and cross-functional collaboration skills.
  • Excellent written and verbal communication, with the ability to influence across technical and non-technical teams.
  • Experience developing and operationalizing compliance playbooks, control libraries, and audit processes.

Culture

The foundation of DevRev is its culture -- our commitment to those who are hungry, humble, honest, and who act with heart. Our vision is to help build the earth’s most customer-centric companies. Our mission is to leverage design, data engineering, and machine intelligence to empower engineers to embrace their customers. 

That is DevRev! 

Similar Jobs

Blue Yonder - Lead Software Engineer - Performance Engineering

Blue Yonder

Bengaluru, Karnataka, India (On-Site)
7 Months ago
London stock Exchange - Senior AWS Data Engineer

London stock Exchange

Bengaluru, Karnataka, India (Hybrid)
1 Day ago
Auros Global - Senior Site Reliability Engineer

Auros Global

(Remote)
2 Weeks ago
Domo - Manager, Engineering

Domo

Pune, Maharashtra, India (Hybrid)
5 Days ago
PwC - Manager Architecte Cloud et Intégration | CDI | H/F

PwC

Neuilly-sur-Seine, Île-de-France, France (On-Site)
7 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Cyara - Software Engineer-Backend CCAAS

Cyara

Hyderabad, Telangana, India (Hybrid)
3 Months ago
neural concept - ML Platform Deployment Engineer

neural concept

Belgrade, Serbia (Hybrid)
6 Days ago
Rackspace Technology - Data Science Trainee (US Shift Working)

Rackspace Technology

Vietnam (Remote)
1 Month ago
Ness - Principle Solution Architect/Associate Partner

Ness

New Jersey, United States (Hybrid)
2 Weeks ago
Crowd Strick - Sr. Backend Software Engineer

Crowd Strick

(Remote)
1 Week ago
Infosys - Java FullStack Developer

Infosys

Mexico City, Mexico (Hybrid)
1 Day ago
Monzo - Staff Backend Engineer

Monzo

(Remote)
1 Week ago
DEVOTEAM - Help Desk N1 Workplace

DEVOTEAM

Barcelona, Catalonia, Spain (Remote)
6 Months ago
GoFundMe - Senior Cloud Ops Engineer

GoFundMe

Buenos Aires, Buenos Aires, Argentina (Hybrid)
1 Week ago
Scale AI - Software Engineer, Public Sector

Scale AI

San Francisco, California, United States (On-Site)
1 Day ago

Get notifed when new similar jobs are uploaded

Jobs in Bengaluru, Karnataka, India

Omnissa - Member of technical staff (C++,iOS)

Omnissa

Bengaluru, Karnataka, India (Hybrid)
7 Months ago
Aptive - Business Analyst

Aptive

Chennai, Tamil Nadu, India (On-Site)
1 Day ago
Cyara - Senior Application Architect

Cyara

Hyderabad, Telangana, India (Hybrid)
3 Months ago
PhonePe - Manager - Internal Audit

PhonePe

Bengaluru, Karnataka, India (On-Site)
6 Months ago
Millennium - Data Engineer

Millennium

Bengaluru, Karnataka, India (On-Site)
6 Months ago
InvenioLSI - Sales Executive

InvenioLSI

New Delhi, Delhi, India (On-Site)
4 Months ago
Phantom FX - Digital Matte Painter - Mid

Phantom FX

Mumbai, Maharashtra, India (On-Site)
4 Months ago
PwC - Associate -SAP ABAP-Kolkata-TC

PwC

Kolkata, West Bengal, India (On-Site)
7 Months ago
Ubisoft - Animator

Ubisoft

Pune, Maharashtra, India (On-Site)
1 Month ago
Palo Alto Networks - Sr. Technical Support Engineer, Cortex XDR

Palo Alto Networks

Bengaluru, Karnataka, India (On-Site)
1 Week ago

Get notifed when new similar jobs are uploaded

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

About The Company

Buenos Aires, Buenos Aires, Argentina (On-Site)

Bengaluru, Karnataka, India (On-Site)

Ljubljana, Ljubljana, Slovenia (Hybrid)

Ljubljana, Ljubljana, Slovenia (Hybrid)

Chennai, Tamil Nadu, India (On-Site)

Bengaluru, Karnataka, India (On-Site)

Buenos Aires, Buenos Aires, Argentina (On-Site)

Bengaluru, Karnataka, India (On-Site)

View All Jobs

Get notified when new jobs are added by Devrev

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug