Director of Risk and Compliance

Hybrid - Cambridge, MA / Remote

Applications have closed

Tamr

Tamr solves the hard problem of enterprise-wide golden record creation with an AI-first approach to data mastering and enrichment.

View all jobs at Tamr

Tamr develops data products that use battle-tested AI to speed the discovery, enrichment and maintenance of the golden records businesses need to accelerate growth. Tamr’s AI-powered, human-refined approach delivers value in days, not months or years all while lowering project and operational costs when compared to MDM or DIY solutions. By connecting data across source systems and incorporating 1-click, 3rd party data enrichment, Tamr delivers accurate, comprehensive and durable data ready for consumption.
Working directly under the Chief Information Security Officer (CISO), the Director of Risk and Compliance will play a pivotal role in shaping our compliance strategy and infrastructure. This position offers an opportunity to influence Tamr’s direction, to build scalable compliance control architecture and to increase Tamr’s competitive advantage.

What you will do:

  • Collaborate Across Departments: Work closely with the leadership team and various departments, including our Software Reliability Engineering (SRE) and DevOps teams, to ensure optimal control design and implementation, making significant impacts on our operations and product development.
  • Drive Compliance Automation and Scalability: Lead the design and implementation of control testing in Tamr's compliance automation system, partnering with our tech teams to automate evidence collection and control testing thereby scaling Tamr’s operations and enhancing our compliance posture.
  • Stay Ahead of the Curve: Keep abreast of regulatory changes and compliance trends, adapting our controls and strategies proactively to maintain Tamr’s leadership position in compliance and security.
  • Manage Key Audits: Oversee critical third-party audits (including SOC2 and customer audits), demonstrating our commitment to security and compliance to partners and customers alike.
  • Risk Management: Identify and assess new risks, proposing innovative solutions and coordinating their execution to mitigate potential impacts effectively.
  • Framework Onboarding: Lead the evaluation and integration of new compliance frameworks (e.g., HIPAA, HITRUST, FedRamp, ISO27001), expanding our market reach and ensuring our services meet the highest standards.

What you will need:

  • A passion for tackling the unique challenges at the intersection between startups and compliance.
  • Strong organizational skills and experience planning and running multifaceted initiatives involving multiple stakeholders
  • Experience working with one of the compliance automation software (Hyperproof, Drata, etc) and experience with compliance frameworks.
  • Experience managing external or internal audits, preferably in a SaaS environment.

Growth Opportunities:

  • Direct Impact: Work closely with CISO and other leadership team members, providing direct input into our strategic direction and compliance infrastructure.
  • Innovation at Heart: Be part of a team that values innovation, not just in technology, but also in how we approach compliance and security challenges.
  • Collaborative Culture: Join a team where your ideas matter, collaboration is key, and your work directly contributes to our success.
Tamr provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a covered veteran in accordance with applicable federal, state and local laws.

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  7  2  0

Tags: Audits Automation CISO Compliance DevOps FedRAMP HIPAA HITRUST ISO 27001 Risk management SaaS SOC 2 Strategy

Regions: Remote/Anywhere North America
Country: United States

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.