logo inner

Governance, Risk, and Compliance Lead

ExtendOnsite

About Extend:


Extend is revolutionizing the post-purchase experience for retailers and their customers by providing merchants with AI-driven solutions that enhance customer satisfaction and drive revenue growth. Our comprehensive platform offers automated customer service handling, seamless returns/exchange management, end-to-end automated fulfillment, and product protection and shipping protection alongside Extend's best-in-class fraud detection. By integrating leading-edge technology with exceptional customer service, Extend empowers businesses to build trust and loyalty among consumers while reducing costs and increasing profits.Today, Extend works with more than 1,000 leading merchant partners across industries, including fashion/apparel, cosmetics, furniture, jewelry, consumer electronics, auto parts, sports and fitness, and much more.

Extend is backed by some of the most prominent technology investors in the industry, and our headquarters is in downtown San Francisco.

What You'll Do:


  • Lead Compliance Auditing Process
  • Manage annual SOC2 audit processes and maintain DFS500 compliance
  • Coordinate with external auditors and internal stakeholders
  • Develop and implement audit preparation procedures
  • Track remediation efforts for audit findings
  • Develop and Maintain GRC Documentation
  • Compile and update security, privacy, and risk policies
  • Ensure policies align with regulatory requirements and industry standards
  • Create and maintain standards, procedures, and controls documentation
  • Collaborate with cross-functional teams to implement GRC requirements
  • Manage Risk Management Program
  • Oversee risk assessment and analysis activities
  • Develop risk mitigation strategies and track implementation
  • Maintain risk register and reporting metrics
  • Facilitate business continuity and disaster recovery planning
  • Additional Responsibilities
  • Provide GRC guidance and thought leadership to senior management
  • Oversee vulnerability management processes
  • Lead security awareness and training initiatives
  • Support incident response activities when needed
  • Generate reports and metrics for executive leadership

What We're Looking For:


  • 10+ years of experience in information security, risk management, or compliance
  • 2+ years in a leadership role managing GRC programs
  • Strong knowledge of security frameworks (SOC2, NIST, ISO) and regulatory requirements
  • Experience with DFS500 compliance preferred
  • Demonstrated ability to develop and implement risk management strategies
  • Excellent communication skills - able to translate technical concepts for non-technical audiences
  • Experience with compliance automation tools and GRC platforms
  • Strong project management and organizational skills
  • Ability to work effectively in a fast-paced, remote environment
  • Relevant certifications (CISA, CISSP, CRISC, etc.) preferred

Why Extend?


  • Opportunity to shape GRC processes at a rapidly growing fintech company
  • Competitive compensation and benefits package
  • Remote-first work environment
  • Collaborative culture with experienced leadership team
  • Make an impact while working with cutting-edge technology
  • Extend is an equal opportunity employer committed to diversity and inclusion in the workplace.

Expected Pay Range: $189,000 - $205,000 per year salaried** The target base salary range for this position is listed above. Individual salaries are determined based on a number of factors including, but not limited to, job-related knowledge, skills and experience.

Life at Extend:


  • Working with a great team from diverse backgrounds in a collaborative and supportive environment.
  • Competitive salary based on experience, with full medical and dental & vision benefits.
  • Stock in an early-stage startup growing quickly.
  • Very generous, flexible paid time off policy.
  • 401(k) with Financial Guidance from Morgan Stanley.

Extend CCPA HR Notice

Life at Extend

Extend allows any merchant to offer extended warranties and protection plans though our easy to integrate APIs, or pre built eCommerce applications. We power extended warranties both online and offline, while also providing consumers with a modern, digitally native, experience that eliminates the issues customers face today with legacy offerings. Our platform is integrated into leading eCommerce solutions including Shopify, Magento, Salesforce Commerce Cloud, BigCommerce, and others so that you can be up and running quickly, with no technical requirements. We also provide custom API integrations for larger merchants who have their own eCommerce platform. Our intelligent decision engine uses machine learning to optimize warranty offers in real-time, thereby improving warranty and cart conversions and generating the most revenue for the merchant. For customers, Extend stores all the details of an individual's product purchase and warranty plan for them, while also assisting throughout the claim process to create a seamless experience from start to finish. www.extend.com
Thrive Here & What We Value1. Collaborative and supportive environment2. Competitive salary based on experience, with full medical and dental & vision benefits3. Very generous, flexible paid time off policy4. 401(k) with Financial Guidance from Morgan Stanley
Your tracker settings

We use cookies and similar methods to recognize visitors and remember their preferences. We also use them to measure ad campaign effectiveness, target ads and analyze site traffic. To learn more about these methods, including how to disable them, view our Cookie Policy or Privacy Policy.

By tapping `Accept`, you consent to the use of these methods by us and third parties. You can always change your tracker preferences by visiting our Cookie Policy.

logo innerThatStartupJob
Discover the best startup and their job positions, all in one place.
Copyright © 2025