SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.
Clay is a high-growth SaaS platform providing go-to-market data enrichment and workflow automation for B2B companies. Recently raised $115M Series D at $7.1B valuation and is on track to cross $200M in revenue this quarter. The company serves thousands of customers including Anthropic, OpenAI, Google, and Visa.
In this Product Operations role, you will build and own operational systems that keep Clay compliant across vendor management, data privacy, and security. You'll create scalable processes from scratch to support teams across the company as they onboard vendors and handle customer information, working at the intersection of engineering, security, legal, and business teams.
Key responsibilities include:
- Vendor Onboarding & Risk Management: Build and own the end-to-end vendor onboarding compliance process, including DPA reviews, SOC 2/GDPR compliance checks, subprocessor list updates, and customer notifications.
- GRC Vendor Management: Serve as the internal owner and point of contact for external GRC vendors, managing intake, ticketing, SLAs, quality review, and performance metrics.
- Data Privacy Program Management: Ensure teams and systems are integrated into Clay's compliance tools and framework, including data subject access/deletion rights (DSAR). Partner with Security, Legal, Marketing, Data, and other stakeholders to scale privacy-by-design practices.
- Compliance Reviews: Build processes for and complete compliance reviews when teams evaluate purchasing new data sets and vendor compliance.
- Cross-Functional Program Building: Create operational processes and systems from scratch to scale compliance work across the company, owning programs end-to-end rather than just coordinating projects.
- Customer Security Support: Assist in responding to security and privacy questionnaires from prospective and existing customers, with focus on privacy, data protection, and compliance-related questions.
This is an individual contributor role with significant ownership and the opportunity to build compliance infrastructure at a rapidly scaling company.
REQUIREMENTS:
- Bachelor's degree in Information Security, Business, or related field (or equivalent experience)
- 2+ years of experience building and scaling operational programs, ideally in a SaaS or tech environment
- Strong builder mindset: excited to create processes and systems from scratch, not just maintain existing ones
- Understanding of privacy laws and frameworks (GDPR, CCPA/CPRA, etc.) with ability to apply them practically across vendor management, data flows, and employee compliance
- Experience with vendor risk assessments, security questionnaires, and DPA/subprocessor management
- Familiarity with DSAR processes and compliance tools like Vanta, Transcend, or similar platforms
- Excellent project management skills with ability to drive complex, cross-functional initiatives to completion
- Strong communication skills for partnering with legal, engineering, data teams, and business stakeholders
- Ability to work independently, prioritize effectively, and adapt in a fast-paced, high-growth environment
BONUS:
- Knowledge of additional compliance standards (e.g., ISO 27001, SOC 2)
- Experience with data mapping, privacy impact assessments (PIAs), or incident response in a privacy context
- Technical aptitude for understanding SaaS infrastructure and data flows
About Clay
SaaS / Enterprise Software; Sales — go-to-market data enrichment and workflow automation platform.