7 days ago

Compliance Manager, Customer Trust and Third Party Risk

Figma

On Site
Contractor
$218,500
New York, NY

Job Overview

Job TitleCompliance Manager, Customer Trust and Third Party Risk
Job TypeContractor
CategoryCommerce
Experience5 Years
DegreeMaster
Offered Salary$218,500
LocationNew York, NY

Who's the hiring manager?

Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Uncover Hiring Manager

Job Description

Compliance Manager, Customer Trust and Third Party Risk at Figma

Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figma’s platform helps teams bring ideas to life—whether you're brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If you're excited to shape the future of design and collaboration, join us!

The Compliance Manager, Customer Trust and Third Party Risk will be responsible for leading third-party vendor reviews and advancing customer trust initiatives. The role is divided equally between performing vendor assessments and collaborating with internal stakeholders to ensure clear communication of our security posture and timely resolution of customer security and compliance inquiries.

This is a full time role that can be held from our SF, Seattle, or NY hub.

What you’ll do at Figma:

  • Conduct and maintain third-party vendor security assessments, monitor ongoing vendor risk, and track remediation efforts to ensure alignment with internal policies and standards
  • Partner with Procurement, Legal, Contracts, and Security teams to embed appropriate risk and compliance controls into vendor agreements and support negotiations or escalations
  • Develop and maintain reporting and metrics that provide leadership visibility into vendor and third-party risk posture
  • Coordinate timely, accurate responses to customer security questionnaires, audits, and other trust-related inquiries by collaborating with IT, Legal, Security, Sales, and Customer Success
  • Prepare, present, and maintain security documentation and reports that demonstrate the organization’s security and compliance commitments
  • Manage customer audits and risk assessments, proactively identifying and addressing customer-raised risks or concerns
  • Create, centralize, and scale security assurance content and evidence, continuously improving processes to enhance customer trust and support sales acceleration

What we're looking for:

  • Strong understanding of security frameworks and standards (e.g., ISO 27001, NIST, SOC 2)
  • Excellent communication and interpersonal skills, with the ability to convey complex security concepts to non-technical audiences
  • Experience in responding to security questionnaires and managing customer audits
  • Strong organizational and project management skills
  • Ability to build and maintain strong customer relationships

Bonus points if you have:

  • Experience with audit tools, GRC platforms, and automation technologies
  • Ability to work efficiently and independently in a fast-paced, high-volume environment
  • CISA, CRISC, and CISSP certifications

Key skills/competency

  • Third-party risk management
  • Vendor security assessments
  • Customer trust initiatives
  • Security posture communication
  • Compliance controls
  • Security frameworks (ISO 27001, NIST, SOC 2)
  • Security questionnaires
  • Customer audits
  • GRC platforms
  • Project management

Tags:

Compliance Manager
Third-party risk
Vendor assessment
Customer trust
Security posture
Compliance
Audit management
Security questionnaires
Risk assessment
Stakeholder collaboration
Reporting
ISO 27001
NIST
SOC 2
GRC platforms
Audit tools
Automation technologies
Security frameworks
Risk management tools
Security assurance
Data privacy

Share Job:

How to Get Hired at Figma

  • Research Figma's culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor to understand their design-first, collaborative environment.
  • Tailor your resume for compliance roles: Customize your application to highlight experience in third-party risk, customer trust, and security frameworks like ISO 27001, NIST, and SOC 2.
  • Highlight security framework expertise: Be ready to discuss your in-depth knowledge and practical application of security standards and GRC platforms during your interviews.
  • Prepare for scenario-based interviews: Practice articulating how you've managed complex customer security inquiries, conducted vendor assessments, and driven remediation efforts in past roles.
  • Showcase your customer communication skills: Emphasize your ability to translate intricate security concepts for non-technical stakeholders and build strong, trusting customer relationships.

Frequently Asked Questions

Find answers to common questions about this job opportunity

Explore similar opportunities that match your background