wagey.ggwagey.gg
38,923  jobs38,923  jobs
Browse Tech JobsCompaniesFeaturesPricingFAQs
Log InGet Started Free
Jobs(38,923)/Compliance Manager Role(130)/givebutter (14) - Security and Compliance Manager
givebutter

givebutter - Security and Compliance Manager

Remote - United States$170k - $185k1mo ago
RemoteMidNABankingFintechCompliance ManagerAuditorTraining DevelopmentStripeReportingFundraisingPhoenix

Requirements

• CISSP, CISM, CISA, or CEH certification • Familiarity with AI security frameworks: NIST AI RMF, MITRE ATLAS, OWASP AI Security and Privacy Guide • Experience with BSA/AML program design, SAR filing, or OFAC sanctions screening • Experience managing bank partner or sponsor bank compliance relationships • Familiarity with Stripe's platform, APIs, and compliance tools • Prior experience at a company operating in the charitable giving, nonprofit, or crowdfunding space • Experience with state charitable fundraising platform/solicitation registration requirements • Track record of building compliance or security programs at a Series A through Series D stage company • CAMS or CRCM certification • 7+ years of experience in information security, security engineering, GRC, or a related field, including at least 4 years within a fintech, payments, or financial services environment • Hands-on experience hardening production systems at a growth-stage company (Series A–D or equivalent), including areas such as IAM, application security, infrastructure security, vulnerability management, or secure SDLC practices • Deep working knowledge of SOC 2 and PCI DSS, plus hands-on experience with at least one additional security framework such as NIST CSF, ISO 27001, or CIS Controls • Experience leading external security audits end-to-end, including auditor management, evidence collection, remediation tracking, and executive or board-level reporting • Hands-on experience administering GRC/compliance platforms such as Vanta, Drata, Secureframe, or similar, including driving remediation workflows to closure • 2. Hiring Manager Interview: A deeper dive into your relevant experience, skillset, and working style. This is your first opportunity to connect directly with the person who may be your future manager. • 3. Assessment (technical or non-technical): This stage will vary based on the role. It could involve a live coding session, case study, or take-home project. Some roles may include two parts to this stage to evaluate both practical skills and problem-solving approaches • 4. Values Interview: A conversation with team members focused on how you align with our core values and leadership principles. • 5. References: We connect with a few folks you’ve worked closely with to get a better picture of your working style and impact. • 6. Offer: If all goes well, we’ll move to the offer stage! • Please note, we will have an AI note-taking tool join most of our interviews. • Hi potential new butterslice! A recent study from LinkedIn https://business.linkedin.com/content/dam/me/business/en-us/talent-solutions-lodestone/body/pdf/Gender-Insights-Report.pdf showed that most women apply to jobs only when they meet 100% of the requirements, whereas men will hit the apply button if they hit 60%. Givebutter is committed to building a diverse and inclusive team. So to the women and nonbinary folks out there feeling unsure if you're a perfect fit, we strongly encourage you to apply!

Responsibilities

• Security Roadmap & Systems Hardening • Codify and execute the security roadmap for the organization, prioritizing the further hardening of critical systems (payment infrastructure, donor data stores, authentication flows, API integrations) and ensuring compliance with applicable laws (e.g., data privacy and security). • Partner directly with PDE leadership to embed security controls into the development lifecycle: threat modeling, secure code review, vulnerability management, and CI/CD pipeline security tooling (SAST, DAST, SCA) • Own the security incident response plan end-to-end: detection, containment, investigation, notification, remediation, and post-incident review • Work with IT to drive identity and access management improvements, including role-based access controls, MFA enforcement, endpoint security, and session management • Develop a deep understanding of fraud vectors in the fundraising and payments space—stolen cards, synthetic identities, friendly fraud, campaign abuse—and help us build systems that adapt as threats evolve. • Manage vendor security risk assessments for third-party tools, integrations, and sub-processors, with continuous monitoring rather than annual check-ins • Own the penetration testing program: vendor relationships, testing cadence, findings translation into engineering tickets, and remediation tracking to closure • Develop and deliver security awareness training for all employees, with targeted modules for PDE, CX, and leadership audiences • Certifications & Audit Management • Lead SOC 2 Type II certification end-to-end: gap analysis, control design, evidence collection, remediation tracking, auditor coordination, and ongoing maintenance • Build the roadmap toward ISO 27001 certification as the security program matures • Serve as primary owner of our GRC platform (Vanta): driving task completion, monitoring compliance gaps, triaging findings, and ensuring remediation owners are accountable • Manage all external auditor and certification body relationships • Build and maintain evidence repositories that support continuous (not just point-in-time) compliance • Prepare board-ready compliance status reports and risk summaries quarterly • Licensing & Registration Compliance • With the General Counsel’s guidance, own all required licenses, registrations, and regulatory filings across US jurisdictions, including state charitable fundraising platform registrations and other licenses • Manage the Trust Center: content accuracy, access approvals, and customer-facing compliance documentation

Benefits

• Remote Work: Work remotely from one of our 10 hubs (Austin, Denver, Indianapolis, Los Angeles, San Francisco, New York, Salt Lake City, Minneapolis, Seattle, and Nashville). • Health Insurance: We offer Medical, Dental, and Vision insurance covered 100% for employees as well as HSA and FSA accounts. • Dependent Care Coverage: We offer coverage for dependents, with 50% of Medical, Dental, and Vision premiums covered for all eligible dependents. • Mental Health: Givebutter health insurance plans come with access to a TalkSpace membership. • 401k: We offer a 3% 401k match for all eligible employee's. • Vacation and Holidays: Givebutter offers a Flexible PTO policy with uncapped vacation days and company-recognized holidays. • Wellness Week: Givebutter closes for one week each summer to prioritize rest and recharge for the entire team. • Parental Leave: We offer 12 weeks of paid leave for all parents and comprehensive leave planning management through Aidora. • Family Care Support: Access a company-paid UrbanSitter membership plus care credits to book trusted, background-checked caregivers for childcare, senior care, pet care, and household support when you need it most. • Coworking Stipend: Enjoy a monthly stipend that gives you the freedom to work from coworking spaces or cafés whenever you need connection, community, or a change of scenery. • Charitable Giving: Employees are encouraged to donate up to $50/month to any verified nonprofit they wish to support on Givebutter. • Professional Development: We offer learning and development reimbursement opportunities. • Love What You Do: We are a mission-driven company serving the charitable sector. Feel good about the work you're doing and the company you work for.

Apply in one click

Upload My Resume

Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT

Apply in One Click
Apply in One Click

Similar roles

horizon3aihorizon3ai - Manager, Compliance1mo ago
·United States - Hybrid·$150k - $185k/year + Equity
In OfficeNAMidCybersecurityCloud ComputingCompliance ManagerAuditorReportingRisk ManagementContract ReviewProgram ManagementCustomer Success
SierraSierra - Security and Compliance Manager4mo ago
·Remote - San Francisco, CA, United States·$170k - $250k/year + Equity
RemoteNASeniorRetailCybersecurityFintechCloud ComputingCompliance ManagerAuditorTeam ManagementReportingProduct MarketingAWSAzure
AtmoseraAtmosera - GRC Analyst (Remote6d ago
·Remote - PT (Pacific)
RemoteNAMidCybersecurityCloud ComputingCompliance ManagerAuditorPublic SpeakingAzureTeam ManagementContract DraftingHIPAA ComplianceAccount ManagementCircomReportingDocumentationGovernanceCompliance Reporting
TwilioTwilio - Strategy & Operations - Corporate Telecom Compliance Manager1mo ago
·Remote - CT (Central)·$129k - $161k/year + Equity
RemoteNAMidTelecommunicationsCompliance ManagerTraining DevelopmentReportingACCAProgram ManagementRegulatory Compliance
Anchorage DigitalAnchorage Digital - Member of Compliance, TPRM3mo ago
·Remote - United States
RemoteNAFintechCybersecurityCompliance ManagerReportingPerformance ReviewsTraining DevelopmentRisk ManagementDue Diligence
freshafresha - Head of Compliance1mo ago
·London
In OfficeEMEADirectorPaymentsArtificial IntelligenceAuditorCompliance ManagerReporting
BoxBox - ISO 42001 Compliance Manager1w ago
·Remote - USA·$130k - $130k/year
RemoteNAMidCloud ComputingManagement ConsultingCompliance ManagerAuditorTeam ManagementGCPData GovernanceGovernanceClose
Snorkel AISnorkel AI - Payroll, Global Payroll & Compliance Manager1w ago
·Redwood City, CA (Hybrid); San Francisco, CA (Hybrid); United States (Remote) - Hybrid·Equity
In OfficeNASeniorLife InsuranceInsuranceCompliance ManagerAuditorReportingRipplingAccount ManagementBenefits AdministrationEmployee RelationsProcess ImprovementDocumentationFinancial ReportingDeelADPClosePapaya GlobalOysterWorkday
KrakenKraken - Senior SOX Auditor – Business Process Controls1mo ago
·Remote - Canada·$104k - $104k/year
RemoteNASeniorCryptocurrencyFintechAuditorReportingFinancial ReportingClose

Browse more by category

Show 130 moreCompliance ManagerShow 132 moreAuditorShow 861 moreTraining DevelopmentShow 144 moreStripeShow 8,372 moreReportingShow 159 moreFundraisingShow 111 morePhoenix
Privacy·Terms··Contact·FAQ·Wagey on X