
51 - 200 employees
Founded 2013
🤖 Artificial Intelligence
☁️ SaaS
🏢 Enterprise
💰 $150M Series D on 2021-07
Artificial Intelligence • SaaS • Enterprise
Sourcegraph is a company providing code intelligence solutions designed to help developers efficiently navigate and understand complex codebases. It offers tools like code search and context-aware AI to help developers write, fix, and refactor code with ease. Sourcegraph improves productivity by automating tasks such as unit testing and documentation, allowing developers to focus more on development. Its AI coding assistant, Cody, enhances coding efficiency by providing code completions and insights directly within developers' IDEs. Sourcegraph is trusted by large development teams for simplifying codebase management and increasing engineering productivity.
🔥 0 minutes ago
🇺🇸 United States – Remote
💵 $102.9k - $137.7k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
🚔 Compliance
🦅 H1B Visa Sponsor
👻 Ghost score 0%
Improve your chances of getting an interview by checking your resume score before you apply.

51 - 200 employees
Founded 2013
🤖 Artificial Intelligence
☁️ SaaS
🏢 Enterprise
💰 $150M Series D on 2021-07
Artificial Intelligence • SaaS • Enterprise
Sourcegraph is a company providing code intelligence solutions designed to help developers efficiently navigate and understand complex codebases. It offers tools like code search and context-aware AI to help developers write, fix, and refactor code with ease. Sourcegraph improves productivity by automating tasks such as unit testing and documentation, allowing developers to focus more on development. Its AI coding assistant, Cody, enhances coding efficiency by providing code completions and insights directly within developers' IDEs. Sourcegraph is trusted by large development teams for simplifying codebase management and increasing engineering productivity.
• Own and drive Sourcegraph’s governance, risk, and compliance program, with a primary focus on compliance • Work cross-functionally with Security, Engineering, IT, Legal, People, Sales, and other teams • Maintain and evolve the compliance program, including SOC 2 and ISO 27001 certifications • Prepare Sourcegraph for additional compliance frameworks as the business grows • Design and tailor controls, collect evidence, train internal teams, work directly with auditors, manage remediation, and drive follow-up work to completion • Build relationships with key stakeholders and understand the existing ISMS, risk register, controls, certifications, audit processes, and focus areas • Manage SOC 2 and ISO 27001 audit activities, including control testing, evidence collection, stakeholder coordination, auditor requests, findings, and remediation • Maintain the risk register, ISMS processes, policies, and compliance documentation • Guide internal teams on compliance responsibilities and provide practical compliance guidance • Support customer-facing compliance activities, including security questionnaires and compliance questions • Lead audits or major certification milestones • Own the GRC operating rhythm, including ISMS meetings, risk management activities, control reviews, documentation updates, and audit preparation • Establish a forward-looking compliance roadmap • Identify control gaps, assess risk, recommend solutions, and drive remediation • Introduce automation, AI, or process improvements to reduce manual compliance work
• 5+ years of experience in governance, risk, compliance, information security compliance, or a related role • Demonstrated end-to-end ownership of SOC 2 and ISO 27001 programs, ideally within a SaaS, technology startup, or similarly fast-moving environment • Experience personally managing external audits and certification processes, including audit preparation, evidence collection, control testing, stakeholder training, auditor interaction, remediation, and follow-up • Strong understanding of risk management, control design, ISMS governance, and compliance program operations • Experience adapting compliance controls to an organization's actual environment • Familiarity with cloud-based technology environments and security and compliance considerations for a distributed or remote workforce • Strong project management and organizational skills • Excellent written and verbal communication skills • Hands-on mindset and willingness to personally execute compliance work • Curiosity about AI, automation, and emerging technology • Working hours must overlap with GMT-3 for at least 20 hours per week • Nice-to-have: Experience with GDPR, HIPAA, HITRUST, FedRAMP, FISMA, PCI DSS, or related standards • Nice-to-have: Experience supporting security questionnaires, customer assurance processes, or sales-related compliance activities • Nice-to-have: Experience with GRC platforms, compliance automation tools, or internal automation for evidence collection and control monitoring • Nice-to-have: CISA, CISSP, ISO 27001 Lead Implementer or Lead Auditor, CRISC, or similar credentials
• Meaningful equity • Generous perks and benefits • Competitive cash compensation
Apply Now🔥 10 minutes ago
Associate Analyst supporting payor compliance and customer operations for Cencora’s US healthcare distribution services. Managing escalations, audit records, procedures, and operational controls.
🔥 4 hours ago
Senior Manager leading compliance risk, policy, training, reporting, and issues governance for Mercury’s startup banking and finance platform. Guiding CMS maturity and regulatory examination readiness.
🇺🇸 United States – Remote
💵 $179.9k - $249.9k / year
⏰ Full Time
🟠 Senior
🚔 Compliance
🦅 H1B Visa Sponsor
🔥 6 hours ago
Healthcare regulatory specialist supporting Yellow Brick, CannonDesign’s healthcare consulting practice. Leading compliance, licensing, facility activation, and regulatory preparedness projects.
🔥 6 hours ago
Senior engineer leading NERC compliance programs and renewable power-system modeling for NEI Electric Power Engineering. Developing audit-ready controls, reports, and client compliance plans.
🔥 15 hours ago
Compliance Operations Senior Manager managing SOC 2 audits and security compliance programs. Driving SOX and ISO 27001 initiatives for a residential energy company building virtual power plants.