bluedoor data·Job Postings API·bluedoor.sh ↗

HomeCompaniesDecagonGovernance, Risk, and Compliance Manager

Governance, Risk, and Compliance Manager

Decagon · San Francisco · On Site · Active · Ashby

Job facts

FieldValue
CompanyDecagon
TitleGovernance, Risk, and Compliance Manager
Normalized title-
Department / teamEngineering / Engineering, GRC
LocationSan Francisco, CA, United States
Work modelOn Site
Employment typeFull Time
Salary-
Statusactive
ATS providerAshby
Posted / first seen / 2026-05-29
Changed / last seen2026-05-29 / 2026-06-06

Related slices

PageWhat it containsOpen
Company jobsActive postings from Decagon.Open
Company breakdownsRole, location, ATS, and work model facets for this company.Open
ATS provider jobsActive postings observed through Ashby.Open
Provider filtered searchThe same provider as a filtered job collection.Open
City jobsActive postings in San Francisco.Open
Department jobsActive postings in Engineering.Open
Work model jobsActive On Site postings.Open
Lifecycle eventsOpen, update, close, and reopen events for this posting.Open
Original postingCanonical source or apply URL captured from the ATS.Open

Linked records

CompanyDecagon
Source7a44ed4e-3d01-41ec-a9c2-b970b842afa6
ATS providerAshby

Description

About Decagon Decagon is the leading conversational AI platform empowering every brand to deliver concierge customer experiences. Our technology enables industry-defining enterprises like Avis Budget Group, Block’s Cash App and Square, Chime, Oura Health, and Hunter Douglas to deploy AI agents that power personalized, deeply satisfying interactions across voice, chat, email, SMS, and every other channel. We’re building a future where customer experiences are being redefined from support tickets and hold music to faster resolutions, richer conversations, and deeper relationships. We’re proud to be backed by world-class investors who share that vision, including a16z, Accel, Bain Capital Ventures, Coatue, and Index Ventures, along with many others. We’re an in-office company, driven by a shared commitment to excellence and velocity. Our values — Just Get It Done, Invent What Customers Want, Winner’s Mindset, and The Polymath Principle — shape how we work and grow as a team. About the Team The Security Engineering team at Decagon protects the platform that powers the most advanced conversational AI agents for enterprise customers across voice, chat, email and SMS. We build the security foundations that enable Decagon's AI agents to handle sensitive customer data with complete trust while defending against sophisticated, AI-enabled threats at massive scale. Our mission is to secure magical support experiences, ensuring that AI agents and human agents can collaborate safely to help users resolve their issues while maintaining the highest standards of security and privacy. About the Role Join Decagon as a Compliance Manager and play a critical role in securing customer trust as we scale to serve Fortune 500 and international enterprises. Working closely with the head of security and compliance, you'll be responsible for the day-to-day execution of our compliance program and customer security engagements. This is a high-impact role where you'll directly contribute to closing enterprise deals by efficiently managing security communications with customers, supporting compliance audits, and improving our security documentation. Perfect for someone who thrives in a high impact organization with attention to detail, excellent writing skills, and who wants to build expertise in enterprise AI compliance. In this role, you will Drive compliance certifications including SOC 2 Type II, ISO 27001, PCI DSS, HIPAA, and CCPA Automate or execute compliance evidence collection, ensuring all controls are properly documented and audit-ready Maintain and improve security documentation including policies, procedures, and customer-facing security collateral Support customer security assessments by preparing materials for security reviews and helping address technical inquiries from Fortune 500 security teams Manage security and compliance topics in RFPs end-to-end, coordinating responses across engineering, product, and legal teams to deliver accurate, timely responses to enterprise customers. Coordinate with contractors and vendors to maintain response quality and meet timelines during peak sales periods Build and optimize repeatable processes to scale our GRC operations to hundreds of enterprise customers Partner with sales engineering to understand customer security requirements and proactively prepare responses for common concerns Partner with Sales and Customer Success to accelerate deal velocity by proactively addressing customer security concerns with published content Collaborate with Security, Engineering, and Product teams to translate compliance requirements into actionable technical controls and ensure new features meet regulatory standards Establish vendor risk management programs to assess and monitor third-party security risks across our supply chain Your background looks something like this 3-5 years of GRC experience in high-growth SaaS or technology companies, with direct responsibility for compliance programs Proven track record successfully contributing to SOC 2, ISO 27001, or similar enterprise compliance certifications Experience in data privacy regulations including CCPA, GDPR, and emerging AI governance frameworks Strong project management skills with ability to coordinate cross-functional teams under tight deadlines Excellent written and verbal communication skills to translate complex security concepts for diverse audiences Working knowledge of technical security controls and ability to collaborate effectively with engineering teams Even better if you have Experience with AI/ML compliance frameworks and understanding of unique risks in conversational AI systems Background in healthcare or financial services with knowledge of HIPAA or PCI requirements Track record of building GRC programs at companies scaling from startup to enterprise Experience with GRC platforms like Vanta, Drata, or SecureFrame to automate compliance workflows Understanding of cloud security particularly Google Cloud Platform compliance and security features Compensation $190K – $275K + Offers Equity Benefits We proudly offer the following benefits for our full-time employees: Take what you need vacation policy (subject to local requirements; UK employees receive 25 days of statutory leave) Medical, Dental, and Vision benefits for you and your family Life Insurance and Disability Benefits Retirement Plan (e.g., 401K, pension) Parental Leave Fertility and family building benefits through Carrot Daily lunches and snacks in the office to keep you at your best These benefits are described in more detail in Decagon’s policies, may vary by location, and can change at any time according to applicable compensation and benefits plans.

Full job record

Job ID484755ed648ce2456fb05fd7eb5054118c4f8fc9
Org IDb0a71504-0822-47bc-81bb-fd4b3fd058d3
Source ID7a44ed4e-3d01-41ec-a9c2-b970b842afa6
Board ID7a44ed4e-3d01-41ec-a9c2-b970b842afa6
Providerashby
Provider Job Keyf349c30b-7e7c-437a-911d-71055d53ca52
TitleGovernance, Risk, and Compliance Manager
Normalized Title
Statusactive
Activeyes
Location TextSan Francisco
DepartmentEngineering
TeamEngineering, GRC
Employment Typefull_time
Workplace Typeon_site
Remote Policy
CountryUnited States
RegionCA
CitySan Francisco
Salary Raw
Salary Min
Salary Max
Salary Currency
Salary Period
Source URLhttps://jobs.ashbyhq.com/decagon/f349c30b-7e7c-437a-911d-71055d53ca52
Apply URLhttps://jobs.ashbyhq.com/decagon/f349c30b-7e7c-437a-911d-71055d53ca52/application
First Seen At2026-05-29 06:01:26Z
Last Seen At2026-06-06 09:17:14Z
Last Checked At2026-06-06 09:17:14Z
Last Changed At2026-05-29 06:01:26Z
Inactive At
Source Posted At
Source Updated At
Raw Payload Uris3://job-postings-prod-raw-590183727216/raw/provider=ashby/board=decagon/date=2026-06-06/2026-06-06T09-15-58-843Z-25513dce430b559833d8dc124f5d7d668c1053673bc40b6aa9f395678187e9a5.json
Event Fields
{
  "content_hash": "dfa4a9b2c052a3968f2e84c2ca5c612494b95b3dd0b46296963713a30c761ba4",
  "source_hash": "6c26bcb378020ddd559e67c28cd9d8bda1c4ab438274815182268c7153f0ec32",
  "last_changed_at": "2026-05-29T06:01:26.773Z",
  "active_status": "active"
}
Parsed Structured
{
  "language": "en",
  "location": {
    "raw": "San Francisco",
    "city": "San Francisco",
    "region": "CA",
    "country": "United States",
    "is_remote": false,
    "confidence": 0.75
  },
  "salary_max": null,
  "salary_min": null,
  "inferred_at": "2026-06-06T09:17:14.227Z",
  "launch_scope": {
    "reason": "english_us_canada",
    "included": true,
    "language": "en",
    "location": {
      "raw": "San Francisco",
      "city": "San Francisco",
      "region": "CA",
      "country": "United States",
      "is_remote": false,
      "confidence": 0.75
    },
    "countries": [
      "United States"
    ]
  },
  "remote_policy": null,
  "salary_period": null,
  "workplace_type": "on_site",
  "salary_currency": null
}
Extensions
{}
Native Structured
{
  "id": "f349c30b-7e7c-437a-911d-71055d53ca52",
  "team": "Engineering, GRC",
  "title": "Governance, Risk, and Compliance Manager",
  "jobUrl": "https://jobs.ashbyhq.com/decagon/f349c30b-7e7c-437a-911d-71055d53ca52",
  "address": null,
  "applyUrl": "https://jobs.ashbyhq.com/decagon/f349c30b-7e7c-437a-911d-71055d53ca52/application",
  "isListed": true,
  "isRemote": false,
  "location": "San Francisco",
  "updatedAt": null,
  "apiVersion": "ashby-non-user-graphql-v1",
  "department": "Engineering",
  "publishedAt": null,
  "workplaceType": null,
  "employmentType": "FullTime",
  "secondaryLocations": []
}
Get this page with API

Rendered from the bluedoor Job Postings API. Reproduce it:

GET https://api.bluedoor.sh/job-postings/v1/jobs/484755ed648ce2456fb05fd7eb5054118c4f8fc9?include=descriptionJSON
GET https://api.bluedoor.sh/job-postings/v1/orgs/b0a71504-0822-47bc-81bb-fd4b3fd058d3JSON
GET https://api.bluedoor.sh/job-postings/v1/sources/7a44ed4e-3d01-41ec-a9c2-b970b842afa6JSON
GET https://api.bluedoor.sh/job-postings/v1/jobs/484755ed648ce2456fb05fd7eb5054118c4f8fc9/eventsJSON