Senior Manager, Customer Trust

Abnormal AI Abnormal AI · Vertical AI · United States · Remote · GRC

Seeking a Senior Manager, Customer Trust to lead and scale the Customer Trust function, owning strategy and operations for security, privacy, and compliance posture. This player-coach role involves leading a team, engaging with strategic customers, driving questionnaire/RFP responses, and managing the Trust Center. Requires deep experience in customer-facing security assurance roles in fast-paced SaaS environments.

What you'd actually do

  1. Lead and develop a team of 4-5 Customer Trust professionals; establish team goals, operating cadence, and career development paths.
  2. Own the end-to-end Customer Trust program strategy, roadmap, and KPIs; report on program effectiveness to GRC Director, CISO, and executive leadership.
  3. Own and drive all customer and prospect security questionnaires and RFP responses; ensure timely, accurate, and high-quality deliverables.
  4. Own the Trust Center (SafeBase or equivalent)—manage configuration, content, access, and continuous improvement.
  5. Review Security Contract Exhibits, Data Processing Agreements (DPAs), and privacy addenda; provide timely, informed feedback to Legal and customers.

Skills

Required

  • 12+ years of experience in customer trust, security assurance, GRC, or related disciplines with progressive responsibility.
  • 9+ years of people management experience leading customer-facing security or compliance teams.
  • Demonstrated experience owning customer security questionnaires, RFPs, and trust center operations at a SaaS or technology company.
  • Track record of directly engaging with customers (including executive-level security stakeholders) on security, privacy, and compliance topics.
  • Strong understanding of common security frameworks and certifications (SOC 2, ISO 27001, ISO 27701, FedRAMP, GDPR, CCPA).
  • Experience reviewing and negotiating security contract terms, DPAs, and privacy addenda.
  • Excellent communication skills—able to translate complex security concepts for technical and non-technical audiences, both written and verbal.
  • Strong project management skills with ability to manage multiple priorities in a fast-paced environment.
  • Executive presence and credibility to represent the company's security posture to enterprise customers.

Nice to have

  • Experience at a cybersecurity company or high-growth B2B SaaS company.
  • Familiarity with Trust Center platforms (SafeBase, Whistic, Conveyor, etc.) and GRC tools (Vanta, Drata, OneTrust, ServiceNow GRC).
  • Professional certifications such as CIPP, CIPM, CISA, CISM, CISSP, CTPRP, or ISO 27001 Lead Auditor.
  • Experience supporting FedRAMP authorization or working with federal/public sector customers.
  • Background in security, compliance, or risk consulting (Big 4 or similar).
  • Degree in information security, computer science, business, or related field.

What the JD emphasized

  • customer-facing security assurance roles
  • customer security questionnaires
  • RFP responses
  • trust center operations
  • executive presence
  • security, privacy, and compliance topics
  • security frameworks and certifications (SOC 2, ISO 27001, ISO 27701, FedRAMP, GDPR, CCPA)
  • security contract terms, DPAs, and privacy exhibits