Senior Compliance Analyst

GitLab GitLab · Enterprise · United States · People Operations

This role is for a Senior Compliance Analyst at GitLab, an organization that uses AI as a productivity multiplier. The analyst will be responsible for managing employment compliance across 65+ countries, monitoring regulatory changes, leading audits, and translating legal requirements into processes. They will partner with various teams to reduce compliance risk and ensure People practices are consistent and audit-ready. Key responsibilities include monitoring employment law, leading compliance programs, advising on compliance implications, owning audits and responses, managing data privacy and retention, and documenting workflows. The role requires experience in global employment compliance, managing audits, understanding data privacy regulations like GDPR, and translating legal requirements into actionable processes. The role also involves partnering cross-functionally and operating independently in a remote environment.

What you'd actually do

  1. Monitor employment law and regulatory changes across the countries where GitLab employs team members, and maintain a clear regulatory change log.
  2. Lead People compliance programs across the People Division, ensuring tracking, execution, and audit-ready documentation for key jurisdictions, including the United States and EMEA.
  3. Translate legal and regulatory requirements into practical system and process requirements, and use metrics to assess control effectiveness and reduce compliance risk.
  4. Advise People Operations leaders, the Global Employment Manager, and People Business Partners on compliance implications for team member lifecycle actions such as relocations, policy exceptions, entity changes, and terminations.
  5. Own People-related compliance audits and responses (including EEO-1, Office of Federal Contract Compliance Programs (OFCCP) and Affirmative Action, SOX people controls, and internal and external audits), managing timelines, data collection, and submissions.

Skills

Required

  • Experience owning and improving global employment compliance programs across multiple countries and regions
  • Working knowledge of employment regulations, with the ability to assess risk and apply requirements to People policies, processes, and decisions (including relocations, terminations, and entity changes)
  • Experience managing People-related compliance audits, including planning timelines, coordinating data collection, and producing audit-ready documentation and records
  • Working knowledge of data privacy for People data, including General Data Protection Regulation (GDPR) requirements, data retention practices, and partnering on incident response
  • Ability to translate legal and regulatory requirements into clear, actionable process or system requirements, and to use metrics to monitor control effectiveness
  • Experience partnering cross-functionally with Legal, People Business Partners, Total Rewards, and People Technology and Analytics to resolve complex compliance questions
  • Strong documentation and knowledge-sharing habits, including building repeatable workflows, maintaining logs and knowledge base articles, and supporting others with country-specific guidance
  • Ability to operate independently in a remote, asynchronous environment, including proactively identifying compliance risks and guiding a junior analyst through structured work and review

Nice to have

  • coaching a People Compliance Analyst through structured, repeatable workflows

What the JD emphasized

  • own the employment compliance posture
  • reduce compliance risk
  • audit-ready
  • own People-related compliance audits and responses
  • data privacy and retention practices
  • GDPR compliance
  • cross-border transfer mechanisms
  • privacy impact assessments
  • data subject access requests
  • retention schedules
  • documentation and knowledge-sharing habits
  • building repeatable workflows