Senior Manager/director, Compliance

Verkada · Enterprise · Bayoffice · Legal

This role is for a Senior Manager/Director of Compliance at Verkada, focusing on building and managing the global regulatory compliance program. The position involves acting as a legal compliance partner for the Security team, leading internal audits for security, privacy, and AI compliance, and ensuring adherence to regulations like FTC and CCPA/CPRA. The role requires a deep technical understanding of security principles, particularly in cloud security, IoT, AI/ML, and computer vision, and experience managing compliance programs and audits. The primary focus is on ensuring legal and regulatory obligations are met, with a specific emphasis on AI compliance within a regulated environment.

What you'd actually do

  1. Act as the primary legal compliance partner for the Security team, translating legal and regulatory requirements (e.g., FTC, CCPA) into actionable security controls and procedures.
  2. Lead the internal audit function for regulatory security, privacy, and AI compliance, regularly assessing the effectiveness of security controls against legal obligations and providing detailed reports to the Chief Privacy Officer, Chief Information Security Officer, and other stakeholders in security and privacy governance leadership.
  3. Work with key privacy, security, and product leaders to develop and lead the company’s legal regulatory compliance program, ensuring ongoing compliance with Verkada’s evolving data privacy, security, risk and governance obligations.
  4. Develop and oversee the company's compliance framework with a focus on an ongoing FTC-mandated infosec program, as well as CCPA/CPRA risk requirements, ensuring all controls are documented, implemented, and tested.
  5. Implement and maintain tooling and processes in support of testing and continuous monitoring of legal and security controls across multiple domains: privacy, product, security, AI, IT, etc.

Skills

Required

  • Bachelor's degree from a four-year university (computer science/engineering degree or equivalent IT background strongly preferred).
  • 8+ years of relevant compliance experience.
  • Deep technical understanding of security engineering principles and architectures, specifically those related to cloud security, IoT, edge computing, AI/ML, and computer vision.
  • Demonstrated experience managing compliance programs related to FTC regulations and consent decrees, and CCPA/CPRA risk assessment requirements.
  • Ability to effectively and autonomously accomplish outcomes across cross-functional teams in ambiguous situations with minimal supervision.
  • Proven understanding and experience with data privacy and security technologies/applications/tools.
  • Significant experience with audits, risk, and compliance programs.
  • Ability to multitask, prioritize work, and meet deadlines in a fast-paced environment.
  • Focus on precision and accuracy, and the drive to clarify ambiguity

What the JD emphasized

  • FTC
  • CCPA/CPRA
  • AI compliance