Himalayas logo
Secure Code WarriorSW

Sr. Manager, Security, Risk & Compliance

We champion change in secure coding. It is known that the same 10 software vulnerabilities have caused more security breaches in the last 20+ years than any others.

Secure Code Warrior

Employee count: 201-500

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

Joining our Security, Risk & Compliance team means you’ll sit at the intersection of product, engineering, AI innovation, customer trust, and company growth. You’ll influence how a global SaaS business manages risk, builds securely, and communicates its security posture to some of the biggest companies in the world.
This is a high-impact, highly visible role reporting directly to the General Counsel. You will serve as a senior member of SCW’s security function and a company thought leader across Security, Compliance, Risk, and AI Governance.
You’ll shape our evolving GRC strategy together with security functions in Product & Engineering and corporate IT and be a partner for Legal, and Sales serving as a trusted, customer-facing voice for our enterprise clients.
If you thrive in a scale-up environment where Cyber Security is a CEO-sponsored priority, enjoy building structure without bureaucracy, and want to influence how a next-generation SaaS company approaches modern security (including AI-specific risks), this role was built for you.

What You'll Do

    Ensure Customer Trust

  • Customers trust their data on our systems. Your #1 priority is ensuring customers continue to trust SCW’s systems, product and risk frameworks.
  • Ensure Sales Engineering can execute enterprise customer security reviews, DPA’s, complete RFPs and security diligence quickly and efficiently.
  • Work closely with Legal, Sales and Revenue in the customer onboarding process to translate complex security requirements into clear, customer-friendly language.
  • Maintain SCW Trust Centre and our Helpdesk security pages (https://help.securecodewarrior.com/hc/en-us/categories/360001983011-General-FAQs-more).
  • Participate in customer cyber conversations and represent SCW’s security posture with credibility and clarity.
  • Lead Security, Risk, Compliance & AI Governance

  • Lead security compliance activities across frameworks such as SOC2, ISO 27001, ISO42001, EU regulations (GDPR, CRA, NIS2), AI-specific regulations, and other evolving global standards.
  • Participate in SCW’s evolving Data (AI) Governance program SCW’s AI governance program, including safe AI use, data governance rules, and updating our Generative AI Acceptable Use Policy.
  • Provide both strategic guidance and hands-on execution for GRC initiatives.
  • Cross-Functional Partnership

  • Partner with Engineering & Product, Corporate IT and Business Ops to embed security-by-design across the company.
  • Review new product capabilities and business initiatives to ensure alignment with security and privacy requirements.
  • Governance, Reporting & Program Ownership

  • Co-develop SCW’s GRC strategy with the CFO and General Counsel.
  • Drive the Information Security Committee: agendas, follow-ups, speakers, and cross-functional alignment.
  • Oversee incident response, business continuity, disaster recovery planning, and compliance.
  • Prepare and deliver reports to Senior Leadership, the Audit Committee, Board of Directors, and key investors.
  • Security Education, Awareness & Vendor Management

  • Lead internal security awareness training.
  • Manage vendor risk assessments from procurement through ongoing monitoring.
  • Own the assessment and completion of external security questionnaires.

What You'll Bring

  • 7–10+ years of relevant security, risk, or compliance experience in Enterprise SaaS environment5+ years directly in Security/GRC roles.
  • Experience in mid–late stage startups or scale-ups.
  • Hands-on involvement with SOC 2, ISO 27001, GDPR, NIST, or similar frameworks.
  • Experience working closely with Sales, Legal, and Product teams as a security SME.Strong technical understanding of cloud, application security, and modern infrastructure.
  • AI security and governance exposure, including LLM threat modeling, AI data privacy considerations, and modern AI attack surfaces.
  • Ability to communicate complex topics simply - to executives, engineers, and customers.
  • One or more relevant certifications preferred (CISM, CISSP, CISA, CRISC, ISO 27001 Lead Auditor/Implementer, etc.)
  • Highly Valued

  • AWS experience.
  • Ability to balance pragmatism with strong security practices.
  • Strong commercial awareness; able to support growth without compromising security.
  • Self-starter mindset with the ability to operate independently in a fast-paced environment.A collaborative, supportive working style and willingness to help others succeed.
  • Growth mindset - confidence navigating a fast-moving AI and security landscape.

The Impact You'll Have

  • In your first 12 months, success looks like:
  • A modernized, scalable GRC strategy aligned with SCW’s AI-first product direction.
  • Strong customer trust demonstrated through faster deal cycles and smoother reviews.
  • A clear, company-wide security narrative communicated consistently across teams.
  • A security posture that supports innovation.
  • Well-governed vendor risk processes across the business.
  • Robust, consistent policies and training that help employees work securely.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Senior
Manager

Location requirements

Hiring timezones

United States +/- 0 hours

About Secure Code Warrior

Learn more about Secure Code Warrior and their company culture.

View company profile

We champion change in secure coding.

It is known that the same 10 software vulnerabilities have caused more security breaches in the last 20+ years than any others. And yet, many businesses will still opt for the post-scan, post-breach, post-event remediation approach; muddling through the human and business ramifications of it all.

So in this world where code is at the heart of everyday interactions - from Banking to Healthcare; Transport to Retail, or to forward thinking Governments around the world - Secure Code Warrior raise our (metaphorical) shields against this attitude, preferring instead to pioneer a human-led approach that uncovers the secure developer inside every coder.

We make increasing a developer's secure coding skills a positive and engaging experience. That makes us the developer-chosen solution. We are successful because we take that human-led approach with our Learning Platform, providing positive skills-based pathways for developers in the language:framework of their choice.

We also recognize that timely and relevant security knowledge for developers is essential to the success of DevSecOps, and our Developer Tools and Integrations enable you to provide your development and security teams with contextual and hyper-relevant learning within their preferred workflow, empowering them to not just find vulnerabilities, but gain the knowledge and skills to fix them - preventing them from occurring in the first place.

Through inspiring a global community of security-conscious developers to embrace this preventative secure coding approach, our mission is to pioneer a human-led, people-first solution to security upskilling; stamping out poor coding patterns and those 10 common vulnerabilities (and of course, the others too) for good.

The Warrior Code

Secure Code Warrior is a global company - we thrive on diversity of religion, race, gender, diet or community and thinking - and these guiding principles are reflected in our Warrior Code.

  • Respect: We thrive on diversity of religion, race, gender, diet or community. We embrace each other's strengths. We grow and develop as a company.

  • Strength: We celebrate the success of others. We are all in when a decision is made. We succeed together.

  • Heart: We care and give back to our customers, our families, our communities, and our planet. We do not waste

  • Tenacious: We meet our customers’ challenges. Their success is our success. We rise to the challenge and persist in the face of obstacles.

  • Courage: We openly share our feedback without fear, we speak up when we feel passionate. We share our knowledge, skills and experience. We listen with an open mind to all ideas and viewpoints.

Employee benefits

Learn about the employee benefits and perks provided at Secure Code Warrior.

View benefits

Home office budget

We provide a work from home package.

Warrior referral program

We have an employee referral program.

Wellness benefits

We have a health and well-being program.

Paid parental leave

Paid family leave for all parents to support you and your family.

View Secure Code Warrior's employee benefits
Claim this profileSecure Code Warrior logoSW

Secure Code Warrior

Company size

201-500 employees

Founded in

2015

Chief executive officer

Pieter Danhieux

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

7 remote jobs at Secure Code Warrior

Explore the variety of open remote roles at Secure Code Warrior, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Secure Code Warrior

Remote companies like Secure Code Warrior

Find your next opportunity by exploring profiles of companies that are similar to Secure Code Warrior. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan