companyHex Technologies logo

Security GRC Manager at Hex Technologies | SF, NYC, or Remote

Hex TechnologiesSF, NYC, or Remote (USA)
Remote Full-time $221K/yr - $295K/yr

Clicking Apply Now takes you to AutoApply where you can tailor your resume and apply.


Unlock Your Potential

Generate Job-Optimized Resume

One Click And Our AI Optimizes Your Resume to Match The Job Description.

Is Your Resume Optimized For This Role?

Find Out If You're Highlighting The Right Skills And Fix What's Missing

Experience Level

Manager

Qualifications

Key ResponsibilitiesSecurity, Privacy & Compliance Program OwnershipLead and enhance Hex’s security and privacy compliance program across SOC 2, ISO 27001, ISO 27701, HIPAA, GDPR, CCPA, PCI DSS, and other relevant frameworks. Ensure ongoing audit readiness by maintaining controls, gathering evidence, managing auditor relationships, and implementing improvements. Monitor regulatory and industry developments, advising Hex leadership on impacts and recommended actions. Create and refine core security policies, standards, and procedures, adapting them to Hex’s operational realities. Risk Assessment & GovernanceOversee the risk management lifecycle within Hex: identify, assess, track, and mitigate security, privacy, operational, and regulatory risks. Develop streamlined yet effective governance processes to ensure accountability and clear ownership. Collaborate with Engineering and Security teams to guarantee that technical controls align with compliance requirements. Customer Trust & Sales EnablementAct as the primary contact for customer and prospect security questionnaires, risk assessments, and contractual security provisions.

About the job

Hex Technologies is hiring a Security GRC Manager to build and lead our security and privacy compliance programs. This position shapes the framework that keeps Hex aligned with regulatory, customer, and industry standards. The scope includes SOC 2, ISO 27001, ISO 27701, HIPAA, GDPR, CCPA, PCI DSS, and other evolving compliance needs important to our clients.

What You Will Do

  • Design, implement, and scale security and privacy compliance systems from the ground up as Hex’s first GRC hire
  • Develop processes and foster a culture that prioritizes integrity, customer trust, and ongoing audit readiness
  • Work closely with engineering, business operations, and go-to-market teams to embed GRC best practices throughout the company
  • Use automation and proactive risk management to streamline compliance efforts
  • Communicate transparently about security and compliance with both internal teams and external stakeholders
  • Balance strategic planning (long-term program roadmaps) with hands-on tasks, such as leading audits, conducting risk assessments, and responding to customer security questions
  • Translate technical product knowledge into clear compliance documentation and trust-building materials for clients

Location

This role can be based in San Francisco, New York City, or remote within the United States.

About Hex Technologies

Hex Technologies is an innovative leader in the technology sector, dedicated to providing secure and compliant solutions that empower our customers. With a commitment to transparency and excellence, we aim to foster lasting relationships built on trust and integrity.

Similar jobs

Tailoring 0 resumes

We'll move completed jobs to Ready to Apply automatically.