SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Baseten is seeking an experienced GRC (Governance, Risk, and Compliance) Manager to build and enhance the company's security governance, compliance, and privacy programs. As an early member of the security organization, you will work cross-functionally with engineering, operations, legal, and leadership to develop policies, manage audits, and implement controls aligned with SOC 2, ISO 27001, ISO 27701, and FedRAMP frameworks.
Key responsibilities include designing and maintaining security governance frameworks and policies; building and managing company-wide risk assessment programs; leading compliance efforts for SOC 2, ISO 27001/27701, HIPAA, and FedRAMP; coordinating external audits and certifications; overseeing vendor security assessments; partnering with technical teams to embed compliance into operations; supporting customer security questionnaires and due diligence; developing security training; and staying current on evolving regulatory requirements.
You will need 5+ years of GRC, security compliance, or information security experience, ideally in SaaS or cloud-native environments. Strong understanding of security frameworks (SOC 2, ISO 27001, NIST, GDPR) and proven track record managing compliance audits end-to-end are essential. Experience with access management, cross-functional stakeholder collaboration, and excellent organizational and communication skills are required.
Nice-to-have qualifications include cloud security compliance experience (AWS/GCP), hands-on GRC tool experience (Vanta, Drata, Secureframe), understanding of AI/ML security and data privacy, experience scaling compliance programs in early-stage startups, and relevant certifications (CISA, CISSP, CISM, ISO 27001 Lead Implementer).
Baseten recently raised $1.5B in Series F funding and powers mission-critical inference for leading AI companies including Cursor, Notion, Abridge, and Writer. The company offers competitive compensation with equity, comprehensive health insurance, flexible PTO with company-wide winter break, paid parental leave, fertility stipends, and 401(k) matching.