The new standard for modern software development. We're hiring: linear.app/careers
Compliance & Trust Lead
Location
United States
Posted
9 days ago
Salary
0
Seniority
Senior
Job Description
Compliance & Trust Lead
Linear
• Operate and extend Linear's compliance program end-to-end — maintain and mature our SOC 2 Type II, ISO 27001, and other relevant certifications (roadmap: ISO 27701, ISO 42001) while keeping audit overhead low and evidence collection as automated as possible • Be the primary point of contact for security questionnaires, customer trust reviews, and enterprise procurement conversations — turn what's often a bottleneck into a competitive advantage • Run our risk management program — identify emerging risks across the product, infrastructure, and vendor landscape, drive remediation with the right owners, and surface clear signal to leadership • Partner closely with engineering to embed compliance controls into how we build — shape policy and tooling so security requirements land early in the development process, not as a retrofit • Manage our third-party risk program — evaluate vendors and subprocessors, maintain our inventory, and ensure our supply chain meets the bar we hold ourselves to on both security and privacy • Help scale the GRC function with automation — reduce manual toil, build durable processes, and ensure the program grows with the business without linearly growing headcount
Job Requirements
- A seasoned GRC practitioner — you have 7+ years in compliance and customer trust, ideally in a B2B SaaS or developer tools environment, and you've seen enough audit cycles to know where the sharp edges are
- Framework-fluent and privacy-aware — you have deep hands-on experience with SOC 2 and ISO 27001, understand how privacy regulations like GDPR and CCPA intersect with security controls, and can reason about new frameworks from first principles
- A builder, not just an operator — you see manual compliance work as a problem to be designed away, default to scalable processes over manual workflows, have used tools like Vanta, Drata, or similar platforms to do it
- A trusted partner, internally and externally — you work fluidly with engineering, legal, and customers alike; you can explain a control design to a skeptical customer, draft a crisp policy, and write a risk summary leadership will actually read
- Autonomy-oriented — you're comfortable operating with significant independence, setting your own priorities, and knowing when to loop in leadership, without needing to be managed closely
- Pragmatic over procedural — you optimize for reducing real risk, not checking boxes, and you know the difference
Benefits
- Competitive salary and equity
- Employee-friendly equity terms including early exercise in the US and extended exercise windows
- Daily meal and coffee stipend on every workday
- Paid co-working space or desk
- Health coverage (based on country requirements)
- 5 weeks paid vacation, plus local statutory holidays
- 4 months paid parental leave
- Paid month off after 4 years & every 2 years thereafter
- Regular team events and off-sites
- Remote-first with no required commute
Related Guides
Related Categories
Related Job Pages
More Compliance Jobs
GRC Consultant
NATIONMIND LLCNationMind LLC is a technology consulting firm focused on Technical Engineering, software development, technicians, QA testing and services. We help clients build reliable, scalable applications with a strong emphasis on automation, performance, and quality. Our team works across industries, delivering solutions that drive innovation and operational efficiency.
Role Description We are seeking an experienced GRC Consultant with expertise in Information Security, Cyber Security, Data Security, and RSA Archer to support governance, risk, and compliance initiatives. Qualifications - Bachelor's degree in a relevant field or equivalent professional experience in information security, risk, audit, or compliance. - 5–8 years of experience in information security, GRC, or security assessment/audit roles. - Hands-on experience with RSA Archer, particularly Product Security Assessment or similar assessment modules. - Strong working knowledge of security frameworks and standards such as NIST, ISO 27001, CIS Controls, and COBIT. - Understanding of risk analysis, assessment, treatment, and management methodologies. - Demonstrated practical experience using Generative AI tools for data analysis, content review, or workflow automation in a professional security context. - Excellent analytical skills with the ability to parse complex assessment data and produce clear, prioritized recommendations. - Strong communication skills suitable for both technical and leadership audiences. - Ability to work independently and manage a workstream end-to-end with minimal oversight. Requirements - 8–10 years of relevant experience. Key Responsibilities - Perform governance, risk, and compliance assessments and security reviews. - Utilize RSA Archer for security assessment and risk management activities. - Conduct risk analysis, assessment, treatment, and mitigation planning. - Work with security frameworks and compliance standards including NIST, ISO 27001, CIS Controls, and COBIT. - Analyze assessment findings and provide prioritized recommendations to stakeholders. - Leverage Generative AI tools for data analysis, content review, and workflow automation where applicable. - Collaborate with technical and business teams to support information security and compliance initiatives. - Communicate findings, risks, and recommendations effectively to technical teams and leadership. Location Remote, USA Duration 6 Months Experience 8–10 Years
Deputy Chief Regulatory Officer, Derivatives
CoinbaseA digital currency exchange, Coinbase is used by consumers, merchants, and traders to buy and sell cryptocurrencies, such as Bitcoin, Ethereum, and Litecoin. Fo
• Own the day-to-day leadership of CDE's Market Regulation Department as second-in-command, providing continuity and decision-making in the Chief Regulatory Officer's absence • Drive CDE's compliance posture across all applicable CFTC regulatory requirements, identifying gaps and implementing corrective actions • Lead the management of internal and external examinations and audits, coordinating responses and ensuring timely resolution of findings • Partner with CDE trade surveillance personnel to review escalated cases, assess potential rulebook violations, and determine appropriate enforcement actions • Strengthen cross-functional alignment by advising CDE personnel and partner teams on DCM Core Principles, CFTC regulations, and CDE's rulebook and policies
Senior Environmental Compliance Engineer
Carlisle Construction MaterialsCarlisle Weatherproofing Technologies (CWT) is a leading supplier of building envelope solutions that effectively drive energy efficiency and sustainability in commercial and residential applications.
Role Description Carlisle is seeking an experienced Environmental Compliance professional to join our team in a 100% remote role supporting environmental compliance initiatives across multiple manufacturing facilities nationwide. This position serves as the company's subject matter expert for air permitting and environmental compliance while partnering with Operations, EHS, and Sustainability teams across the organization. If you have a strong background in environmental compliance, Title V air permitting, and manufacturing operations, this is an opportunity to make a significant impact while enjoying the flexibility of a fully remote work environment. Qualifications - Required: Bachelor's degree in Environmental Engineering, Environmental Science, or a related field - 5+ years of environmental compliance experience in manufacturing or industrial operations - 3+ years of major source air permitting experience (Title V) - Strong understanding of environmental regulations and compliance reporting requirements - Ability to independently manage multiple projects and deadlines - Strong communication, analytical, and organizational skills - Preferred: Experience with Gensuite or similar environmental compliance software - Experience with SharePoint, ServiceNow, or related collaboration tools - Experience managing environmental consultants and third-party vendors Requirements - Lead and manage air permitting activities, emissions calculations, and regulatory reporting - Support environmental compliance programs including air, stormwater, wastewater, waste, and emergency planning - Conduct environmental audits and compliance assessments - Support new equipment and process reviews for environmental compliance impacts - Manage environmental consultants, vendors, and regulatory relationships - Develop compliance programs and train site personnel - Analyze environmental data and provide compliance reporting to leadership - Support ISO 14001 certification and environmental management initiatives Benefits - 100% Remote Position – Work from anywhere in the United States - High-Impact Role – Support environmental compliance efforts across multiple manufacturing facilities - Air Permitting Leadership – Serve as Carlisle's subject matter expert for Title V and air compliance programs - Cross-Functional Visibility – Partner with Operations, EHS, Sustainability, and Leadership teams - Growth & Development – Opportunity to influence environmental strategy and compliance initiatives across the business Travel While this role is fully remote, occasional travel to manufacturing facilities is required to support environmental audits, compliance initiatives, and special projects. Travel: Up to 30%
Analyst, Compliance
Molina HealthcareMolina Healthcare is a Fortune 500 managed care company with a storied history that dates back to 1980 and the opening of a medical clinic by Dr. C. David Molina. As an employer, M
Role Description Provides analyst support for compliance activities. Seeks to ensure the organization adheres to regulatory requirements, industry standards, and Molina internal policies, and prevent and/or detect violation of applicable laws and regulations, and protect the business from liability, fraudulent or abusive practices. - Supports day-to-day operations/initiatives of the compliance function. - Provides technical expertise for Molina interdepartmental regulatory and legislative interpretation inquiries. - Facilitates health plan compliance-related required reporting. - Interprets and analyzes Medicare, Medicaid and Medicare-Medicaid Plan (MMP) required reporting. - Creates and maintains monthly and quarterly key performance indicator (KPI) reports. - Supports the regulatory memorandum distribution process. - Manages compliance incidents and related processes, including associated corrective action plans (CAPs). - Responds to legislative inquiries/complaints (state/federal insurance regulators, congressional inquiries, etc.). - Coordinates site visits for state/federal regulators. - Leads large, complex compliance-related projects to achieve compliance objectives. - Interprets and analyzes state and federal regulatory manuals, and supports revision process as needed. - Interprets and analyzes federal and state rules and requirements for proposed and final rules. - Coordinates comments relating to federal notices of proposed rulemaking. - Manages Centers for Medicare and Medicaid Services (CMS) user access. Qualifications - At least 2 years of compliance and/or audit-related experience, or equivalent combination of relevant education and experience. - Knowledge of health care regulatory frameworks. - Detail-oriented; skilled in documentation review. - Data analysis skills, and ability to generate reports. - Ability to work independently and set/manage priorities. - Ability to collaborate in a cross-functional highly matrixed organization, and interact with internal/external stakeholders, including regulators. - Effective verbal and written communication skills. - Microsoft Office suite and applicable software program(s) proficiency. Requirements - Certified in Healthcare Compliance (CHC). - Experience with risk assessment methodologies. - Knowledge of internal control frameworks. Benefits Molina Healthcare offers a competitive benefits and compensation package. Company Description Molina Healthcare is an Equal Opportunity Employer (EOE) M/F/D/V.


