Blacksmith Logo

Blacksmith

GRC Manager

Posted 2 Hours Ago
Be an Early Applicant
In-Office
New York City, NY
180K-220K Annually
Senior level
In-Office
New York City, NY
180K-220K Annually
Senior level
As GRC Manager, you'll design and implement compliance policies, manage SOC 2 and GDPR operations, assess GRC technology, and educate staff on compliance best practices.
The summary above was generated by AI

About Blacksmith

  • We started by building infrastructure to run CI workloads really fast. Our first product helps companies run GitHub Actions substantially faster and cheaper by owning and operating our own global fleet of bare-metal machines rather than renting generic cloud VMs.

  • Today, we orchestrate tens of millions of Firecracker VMs each month, running CI for 2,000+ companies and hit ~$10M in ARR in less than 2 years.

  • We operate thousands of bare-metal machines across multiple regions, regularly schedule 50k+ vCPUs concurrently, and run a petabyte-scale Ceph cluster that we manage ourselves.

  • We’ve raised $13.5M across Seed and Series A, led by Google Ventures (GV), and we’re intentionally building a small, but exceptional team.

  • Blacksmith was founded by a team with deep systems and scaling experience, including building search/ads infrastructure at Faire, and operating large distributed systems at Cockroach Labs. Our GTM is led by Jon Boyer, formerly Head of Sales at Zapier.

  • We’re now extending the same CI infrastructure into a broader platform: running agent sandboxes at scale and building our own background coding agent on top of it.


What You'll Do

  • Own compliance at Blacksmith. You will design and implement the Blacksmith policies and controls from scratch.

  • Run GRC and compliance operations. You’ll manage SOC 2 compliance & ensure audit readiness. You’ll also ensure GDPR compliance.

  • Assess, qualify and implement a GRC technology stack that ensures we maintain best practice.

  • Own customer and vendor risk. You’ll be responsible for all customer and prospect compliance questionnaires, reviews and due diligence.

  • Ensure that the business stays ahead of evolving regulatory changes & changes in risk assessment as we move further into the enterprise market.

  • Educate the leadership team and wider business on GRC best practice and the Blacksmith standards for compliance.

  • Potentially lead the preparation for further industry certifications (ISO27001 etc.) in the future.

You’re a good fit if you have

  • Significant experience in GRC & compliance within a high growth, technology startup environment.

  • You must be able to demonstrate how you have owned building 0-1 compliance processes and best practices. Ideally you’ll have a blend of experience building 0-1 as well as picking up compliance in flight.

  • Deep experience with SOC 2 Type II audits and compliance programs. You've built or significantly improved a compliance program, not just maintained one.

  • Strong knowledge of the GRC & compliance technology landscape, with a good understanding of what a best in class GRC technology stack should look like.

  • Comfortable being hands on. This is an execution role, from answering questionnaires to writing policies you should be the person who wants to deliver.

  • Exceptional communicator.

Compensation and benefits

  • Medical, Vision, and Dental insurance.

  • Competitive base + equity.

  • 401K match.

  • Unlimited PTO.

  • Annual offsite.

  • Early-exercise stock options

Top Skills

Gdpr
Grc Technology Stack
Soc 2

Similar Jobs at Blacksmith

Yesterday
In-Office
Senior level
Senior level
Information Technology • Software
The Infrastructure Engineer will develop and scale distributed systems, optimizing performance and reliability across the infrastructure stack while managing cloud-based CI services for various startups.
Top Skills: AnsibleCephChefGithub ActionsMinioPuppetVms
2 Days Ago
In-Office
280K-380K Annually
Expert/Leader
280K-380K Annually
Expert/Leader
Information Technology • Software
The Principal Systems Engineer will oversee architectural direction for infrastructure, mentor engineers, and ensure reliability and performance outcomes.
Top Skills: CephCloud HypervisorEbpfFirecrackerLinuxQemu
3 Days Ago
In-Office
160K-180K Annually
Mid level
160K-180K Annually
Mid level
Information Technology • Software
As a Technical Support Engineer, you'll assist customers with technical issues, improve product understanding, identify trends, and automate support processes.
Top Skills: AICephCommand Line Interface (Cli)FirecrackerGithub Actions

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account