Job Description
About TensorWave
Our mission is simple: deliver seamless, secure, reliable, and resilient AI compute at scale. We've built a versatile cloud platform that eliminates infrastructure barriers, empowering builders to focus on innovation instead of fighting their stack. Because breakthrough AI should move at the speed of ideas, not infrastructure.
About the Role
As our first dedicated Governance, Risk & Compliance Manager, you'll own the GRC framework end to end. This is the person who turns security from a checkbox into a competitive advantage building the continuous compliance posture that shortens enterprise sales cycles, unlocks larger contracts, and prepares us for stricter regulatory oversight and future liquidity events.
You'll operate as a senior individual contributor with broad ownership: designing controls, running audits inhouse, standing up vendor risk governance, and giving leadership real visibility into risk. You know how to build scrappy but compliant processes at a startup and how to mature them toward enterprise standards and you know the difference.
What You’ll Do
Own the GRC framework. Design, implement, and continuously test a unified controls framework, including IT General Controls (ITGCs), across a growing regulatory landscape.
Run audits inhouse. Maintain and mature our SOC 2 Type II and ISO 27001 certifications, driving toward automated, continuous evidence collection instead of manual scramble before audit cycles.
Build the SOX roadmap. Design and test internal controls over financial reporting (ICFR) and ITGCs aligned to AICPA / PCAOB standards, delivering a gap analysis and remediation roadmap that keeps us futureready.
Stand up vendor & third party risk. Replace manual, adhoc vendor reviews with an automated, enterprise grade third party risk program built for a complex SaaS ecosystem.
Operationalize a risk register. Run formal, continuous internal risk assessments, map them to a corporate risk register, and review it quarterly with leadership to prioritize security spend.
Enable the business. Build and maintain a centralized Trust Center that cuts the time sales and engineering spend answering security questionnaires.
Shift compliance left. Partner with engineering to embed compliance into the development lifecycle so new features ship without breaking existing controls.
Optimize the policy program. Maintain a policy suite that satisfies legal and security requirements while minimizing overhead on the teams that support our growth.
Who You Are
Required Qualifications
5–8+ years in Information Security, IT Audit, or GRC.
Hands-on has experience designing, implementing, and defending controls for SOC 2 Type II, ISO 27001, SOX, and/or PCI DSS.
Strong working knowledge of SarbanesOxley compliance, including evidence preparation to AICPA or PCAOB standards.
A track record spanning both fast-paced Series B/C startups and a mature enterprise or Big 4 audit environment: you've built processes from scratch and you've seen what "good" looks like at scale.
Comfortably operates as a hands-on owner, not just a program overseer.
Preferred Qualifications
Experience with APIdriven / continuous GRC tooling (e.g., Vanta, Drata, or similar).
Exposure to cloud or GPU infrastructure security.
Relevant certifications (CISA, CISSP, CRISC, ISO 27001 Lead Auditor/Implementer).
Experience embedding compliance into CI/CD pipelines.
What We Offer
Stock Options
100% paid Medical, Dental, and Vision insurance for Employees
Company Health Savings Account Contributions
100% paid Short Term and Long Term Disability Insurance for Employees
Life and Voluntary Supplemental Insurance Options
Other Insurance Options, such as Pet & Legal Insurance
Various Supplementary Health Benefits, such as discounted Virtual Healthcare Appointments and Serious Illness Support
Flexible Spending Account
401(k)
Employee Assistance Program
Flexible PTO
Paid Holidays
Parental Leave
Other In-Office Perks
Equal Employment Opportunity
TensorWave is an Equal Opportunity Employer. We celebrate diversity and are committed to creating an inclusive environment for all employees. We do not discriminate on the basis of any protected status under applicable law.
Reasonable Accommodations
TensorWave provides reasonable accommodations in accordance with applicable laws. If you require accommodation during the hiring process, please contact [email protected].
Employment Eligibility
All offers of employment are contingent upon verification of identity and authorization to work in United States, as required by law.
Background Checks
Where permitted by law, employment may be contingent upon the successful completion of a job-related background check.
Data Privacy Notice
By submitting an application, you acknowledge that TensorWave may collect, use, and retain your personal information for recruiting and employment-related purposes in accordance with applicable data privacy laws.
Required Skills
Categories
Frequently asked questions
Is the Governance, Risk, and Compliance Manager position at TensorWave remote?
The Governance, Risk, and Compliance Manager role at TensorWave is an on-site or hybrid position.
What type of employment is the Governance, Risk, and Compliance Manager role?
TensorWave is hiring for a full-time Governance, Risk, and Compliance Manager position.
What skills are needed for the Governance, Risk, and Compliance Manager job at TensorWave?
Key skills for this role include GPU.
How do I apply for the Governance, Risk, and Compliance Manager position at TensorWave?
You can apply for the Governance, Risk, and Compliance Manager role directly through TensorWave's official application link provided on this page.