Jobs in United States

Regulatory Risk Group Manager in United States

431 active opportunities · Updated October 2026

Explore current regulatory risk group manager jobs across United States. Filter by work mode, employment type, experience, department, date posted and distance.

R
📍 Foster City, California, United States· Full-time· Remote
✓ High-confidence listingCompany trend -85.9%
Quick readStrong listing-quality and freshness signals

Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. We're seeking an experienced Commercial Counsel to join our growing legal team and serve as a strategic partner to our rapidly expanding enterprise sales organization. In this high-impact role, you'll drive complex commercial negotiations that fuel our growth, working closely with our sales teams to close sophisticated technology agreements with enterprise customers across diverse industries. You'll play a critical role in scaling our commercial legal processes while navigating the evolving landscape of AI-powered development tools and ensuring our customers can confidently deploy Replit's platform in their organizations. What You'll Do Drive Enterprise Deals : Serve as the lead legal advisor for complex, high-value enterprise sales transactions, working directly with our Account Executives and customer legal teams to negotiate and close sophisticated software agreements Navigate AI & Technology Compliance : Help enterprise customers understand and navigate the legal and regulatory implications of adopting AI-powered development tools, addressing data privacy, security, and compliance requirements across various industries Build Scalable Frameworks : Design and implement contract playbooks, template agreements, and streamlined processes that enable our sales team to move quickly while maintaining legal rigor as we scale Risk Management : Identify, analyze, and proactively manage complex commercial and legal risks while maintaining deal velocity in our fast-paced, high-growth environment Cross-Functional Partnership : Collaborate closely with Product, Engineering, Security, and Privacy teams to ensure our commercial offerings align with product capabilities and regulatory requirements Strategic Advisory : Provide st

Machine LearningAIGoRust
O
📍 San Francisco, California, United States· Full-time
✓ High-confidence listingCompany trend -82%
Quick readStrong listing-quality and freshness signals

About the Role We’re seeking an Associate General Counsel to lead commercial legal strategy and execution for OpenAI’s silicon initiatives and the semiconductor ecosystem that supports our AI infrastructure. This is a senior, highly cross-functional role for a lawyer who can advise business and technical leaders across the semiconductor development, manufacturing, and supply lifecycle. The role will partner closely with silicon engineering, infrastructure, strategic sourcing, supply chain, manufacturing, finance, partnerships, IP, policy, regulatory, and trade compliance teams to structure and negotiate strategic arrangements with semiconductor ecosystem partners, technology providers, and critical suppliers. This person will help establish the commercial frameworks needed to protect OpenAI’s technology and support resilient, scalable commercial arrangements. We’re looking for an experienced technology transactions lawyer with meaningful semiconductor industry experience who can translate highly technical and operational issues into practical commercial structures. The ideal candidate combines strong judgment, commercial creativity, and the ability to lead complex, high-value transactions in a fast-moving and complex global ecosystem. This role is based in San Francisco, CA. We use a hybrid work model of 3-days in the office per week and offer relocation assistance to new employees. This role will: Lead commercial legal strategy and risk management for OpenAI’s silicon and related technology initiatives. Advise senior business, engineering, sourcing, and operational stakeholders on strategic relationships, commercial priorities, and complex transactions. Draft, negotiate, and advise on sophisticated development, manufacturing, supply, licensing, services, and strategic partnership agreements. Structure commercial arrangements that support long-term business and operational requirements. Advise on the commercial and operational issues that arise across the developmen

AWSRestAIGo
C
📍 United States· Full-time· Remote
✓ High-confidence listingCompany trend -100%

From $194K/yr

Quick readStrong listing-quality and freshness signals

Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . We're hiring a Manager, GRC to join our Technology Risk & Controls team within Security and lead second line of defense advisory coverage across critical technology and security domains. This team evaluates risk posture, improves control design, and helps engineering, infrastructure, and security leaders make better, risk-informed decisions. You'll both manage a team and directly own advisory coverage for domains that may include disaster recovery and resiliency, SDLC, artificial intelligence, identity and access management, and supply chain - building trusted partnerships that ensure Coinbase addresses its most critical risks in its most critical functions. What you'll do: Lead second line advisory coverage for key technology and security domains, assessing risk exposure, control effectiveness, policy alignment, and emerging issues across the business. Partner with engineering and technology teams to evaluate domain posture and identify where additional controls, remediation, or governance improvements are needed. Review and challenge the design of new and existing risks and their corresponding controls to ensure our mitigations are scalable, effective, and aligned to business, risk, and regulatory expectations. Drive coordination across risk, controls, policy, audit, and assurance teams to translate incidents, audit findings, and regulatory expectations i

AWSAIGoRust
C
📍 Irving Texas United States, United States
✓ Quality checkedCompany trend +800%

Citi is looking for a Commercial Credit Officer to take ownership of credit underwriting and portfolio management within its rapidly growing US Commercial Bank, serving mid-to-large companies with revenues from $100 million to $3 billion. In this role, you will sit at the center of the lending process — assessing credit risk, structuring financing solutions, and partnering directly with relationship bankers and independent risk teams to deliver best-in-class outcomes for clients. Your decisions will directly shape the credit quality and performance of a significant commercial lending portfolio for the Digital, Technology & Communications (DTC) vertical. Responsibilities Manage the end-to-end credit underwriting process for new and existing commercial relationships, from initial pre-screening and credit appetite assessment through to approval, documentation, and ongoing portfolio oversight. Assess the creditworthiness of commercial borrowers by conducting detailed financial statement analysis, cash flow modeling, trend, and ratio analysis, and evaluating complex business structures including those with international subsidiaries. Prepare comprehensive written credit analyses that articulate the financing need, key risk factors, structural considerations, and a well-supported credit recommendation. Monitor existing borrowers through monthly and quarterly financial reviews, tracking covenant compliance, identifying early warning indicators, and escalating emerging concerns to relevant stakeholders. Oversee the loan documentation process for new transactions and amendments, coordinating with internal partners and external legal counsel to ensure all approval terms are accurately reflected in closing documents. Maintain regulatory compliance across the portfolio by ensuring accurate risk ratings, appropriate classification, and adherence to all applicable credit policies and regulatory framewor

Artificial IntelligenceAIExcelAccounting
B
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -80.4%

ABOUT BASETEN Baseten powers mission-critical inference for the world's most dynamic AI companies, like Cursor, Notion, OpenEvidence, Abridge, Clay, Gamma and Writer. By uniting applied AI research, flexible infrastructure, and seamless developer tooling, we enable companies operating at the frontier of AI to bring cutting-edge models into production. We're growing quickly and recently raised our $1.5B Series F , led by Altimeter Capital, Conviction Partners, and Spark Capital. Join us and help build the platform engineers turn to to ship AI products. THE ROLE We are seeking an experienced and detail-oriented GRC (Governance, Risk, and Compliance) Manager to build, support, and continuously enhance Baseten’s security governance, compliance, and privacy programs. As one of the early members of our security organization, you will play a key role in ensuring our platform meets and exceeds the highest standards for privacy, trust, and regulatory compliance. In this role, you’ll work cross-functionally with engineering, operations, legal, and leadership teams to develop policies, manage audits, and implement controls aligned with frameworks such as SOC 2, ISO 27001, ISO 27701, and FedRAMP. You’ll be instrumental in building scalable processes to manage risk, support customer assurance, and uphold Baseten’s commitment to security and compliance as we grow. RESPONSIBILITIES Governance & Policy Development: Design, implement, and maintain security governance frameworks, policies, and procedures that align with Baseten’s risk posture and industry best practices. Risk Management: Build and manage the company-wide risk assessment program, identifying, tracking, and mitigating key security and compliance risks. Compliance Operations: Lead efforts to achieve and maintain compliance with SOC 2, ISO 27001/27701, HIPAA, FedRAMP and other applicable standards and regulations. Audit & Certification Management: Coordinate external audits and certification processes, ensuring e

AWSGCPMachine LearningAI
R
📍 Foster City, California, United States· Full-time
✓ Quality checkedCompany trend -85.9%

Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. About the Role We are seeking a mid-level AppSec Vulnerability Management Engineer with a strong software development background. In this role, you will bridge the gap between security, compliance, and engineering teams. You will identify application vulnerabilities, maintain software supply chain security, and drive tracking to satisfy strict regulatory compliance frameworks. You will also serve as a technical responder during security incidents, deploying real-time countermeasures to protect our software ecosystem. What You'll Do Core Responsibilities Vulnerability Scanning & Triage: Perform periodic application security scanning activities. Review results and prioritize flaws based on CVSS scores, real-world exploitability, and system exposure. Compliance-Driven Tracking: Track, document, and manage vulnerabilities according to strict compliance SLAs (e.g., SOC 2, ISO 27001, PCI-DSS). Maintain audit-ready evidence of remediation timelines and exception approvals. Executive Reporting & Alerting: Escalate and report critical exposures directly to the CISO and senior leadership. Maintain dashboards and alerting mechanisms that visualize vulnerability status, risk trends, and compliance posture. Software Supply Chain Security: Ownership of the organization's Software Bill of Materials (SBOM). Continually update SBOM inventories to ensure compliance with modern regulatory requirements and dependency tracking. Help Replit mature through various SLSA levels for supply chain security. Remediation Collaboration: Partner with development teams to provide clear mitigation paths. Review, write, and patch code directly when necessary to resolve security flaws. Tooling Integration: Configure and tune automated security te

JavaScriptTypeScriptPythonJava
P
📍 New York, New York, United States· Full-time
✓ Quality checkedCompany trend -72.3%

We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. About the Team: The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We partner closely across the company to ensure Plaid’s platform remains secure, resilient, and aligned with industry and regulatory expectations. The Security Contracts workstream is a core part of our Security Assurance and Trust Enablement program — ensuring Plaid's contractual security obligations with customers and data partners are defensible, consistent, and never a bottleneck to deal velocity, all while building trust. About the Role You will own Plaid’s Security Contracts workstream end-to-end—the DRI for how security contract reviews get done, how fast they move, and how the program improves over time. You will review security provisions in customer MSAs, DPAs, and security addenda, identify unacceptable clauses, and provide Legal and GTM with the actionable security feedback they n

AWSAIGoRust
P
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -72.3%

We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We own Plaid’s security compliance frameworks, run our audits and risk programs, and partner across the company to keep Plaid’s platform secure, resilient, and aligned with industry and regulatory expectations. GRC Engineering is how we make all of that scale — turning compliance into code, evidence into telemetry, and audits into a continuous, automated capability. The Role: You will own GRC Engineering at Plaid — a foundational, high-ownership role defining an emerging discipline from the ground up. Today most of our compliance work is manual and point-in-time; you will turn it into an engineered system that is continuous, data-driven, and scalable, and set the technical direction for the field. You will: Define the discipline and the architecture — how GRC Engineering works at Plaid, not just execute with

PythonSQLAWSCI/CD
M
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -100%

What you’ll do Own day-to-day operations for the scanner program and scanner builds in the spa: purchasing/procurement, vendor management, receiving, inventory, and logistics. Stand up lightweight production operations as we move from prototypes to repeatable builds: build planning, kitting, work instructions, and readiness checklists. Partner with Quality to ensure the operational system supports compliance: traceability, document control, training records, NCR/CAPA workflows, and audit readiness. Drive cross-functional execution for the physical spa build-out and scanner integration: schedules, dependencies, risk register, and weekly coordination with vendors and internal teams. Own the “integration glue” across facilities + device ops: commissioning plans, acceptance criteria, and operational handoff (runbooks, maintenance, spares, escalation paths). Build and track operational metrics: cost, budget, lead times, vendor performance, build throughput, and reliability of critical subsystems. Audit of import/export documentation, management of contract renewals, regulatory compliance. What we’re looking for Proven operations leadership in hardware/medical/robotics (or similarly complex electromechanical products), including procurement and vendor management. Strong program management instincts: can run schedules, unblock cross-functional dependencies, and keep priorities clear under ambiguity. Comfort operating in quality/regulatory environments and building processes that are rigorous without slowing a small team. High ownership and bias to action: can jump between spreadsheets, docks, and the lab/site to keep the program moving. Useful experience Experience running prototype-to-production transitions (NPI, EVT/DVT/PVT-style builds, CM/EMS collaboration). Facilities / construction operations experience (GC coordination, MEP commissioning, site readiness). Familiarity with inventory systems and procurement tooling (even “simple but disciplined”).

M
📍 United States· Full-time
✓ High-confidence listingCompany trend -93.7%

From $151K/yr

Quick readStrong listing-quality and freshness signals

MongoDB’s Security Product Management team is seeking a Staff Product Manager to own security, compliance, and public sector product strategy within Atlas for Government (A4G). In this role, you will be a key member of the security product management team, helping make data security a market differentiator that enables MongoDB to win in enterprise and regulated industries. You will lead product strategy and execution for capabilities and programs that support federal compliance requirements and broader regulated-industry needs. You will work across Engineering, Compliance, Legal, Security, and Go-to-Market teams to translate complex regulatory and customer requirements into clear product investments, roadmaps, and outcomes. This role is suited for a candidate who can orchestrate multiple interlinked product areas, own cross-team product and architectural trade-offs, and align senior stakeholders around multi-year bets. You will be expected to identify opportunities and dependencies that cut across team boundaries, bring clarity to ambiguous problem spaces, and establish reusable ways of working that help MongoDB deliver secure, compliant platform capabilities for public sector and other regulated markets. You will partner closely with senior engineering and business leaders to evaluate trade-offs, sequence investments, and bring clarity to decisions that balance customer impact, execution risk, and long-term business value. This role can be based out of of our offices or remotely in the United States. The Federal Risk and Authorization Management Program (FedRAMP) is a US government-wide program that provides a standardized approach to security assessment, authorization, and continuous monitoring for cloud products and services. Our FedRAMP program requires that anyone who is accessing customer data or metadata inside the Authorization Boundary be a US Person on US Soil. Responsibilities Security and Compliance Product Strategy Own the public sector compliance roadm

MongoDBAWSAzureGCP
M
📍 United States· Full-time
✓ High-confidence listingCompany trend -93.7%

From $69K/yr

Quick readStrong listing-quality and freshness signals

The Travel Manager Americas is accountable for the strategy, operations, and optimization of the company’s corporate travel program across the Americas region, while also providing support for the regional leads. This role requires a consistent, cost‑effective, and employee‑centric travel experience while maintaining compliance with global travel & expense (T&E) policy and regional regulatory requirements. The role partners closely with Finance, HR, Procurement, Security, and regional business leaders to support business growth, traveler safety, and operational excellence. This role can be based remotely in the United States, or hybrid near one of our hub offices. Key Responsibilities Travel Program Strategy & Governance Own the Americas travel program, aligned to global T&E policy and mobility strategy Localize global travel policies for regional requirements (tax, labor, safety, visa, and regulatory) Act as the primary regional escalation point for travel‑related issues Supplier & Vendor Management Manage regional relationships with Travel Management Company (TMC)- Navan, Airlines, hotel chains, car rental providers Support sourcing, RFPs, and contract renewals in partnership with Procurement Track supplier performance against SLAs, cost targets, and traveler satisfaction metrics Financial & Cost Management Drive cost optimization through preferred supplier adoption and traveler behavior change Partner with Finance on budgeting, forecasting, and savings initiatives Monitor leakage, out‑of‑policy spend, and compliance trends Traveler Experience & Support Ensure a seamless, inclusive, and regionally relevant traveler experience Define traveler communications, guidance, and self‑service resources Oversee issue resolution related to disruptions, escalations, or complex bookings Risk, Duty of Care & Compliance Partner with Security and Legal to support duty of care obligations Ensure regional alignment with traveler tracking, emergency r

MongoDBAWSAzureAI
O
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team OpenAI’s Legal team plays a crucial role in advancing our mission by tackling innovative and fundamental legal issues in AI. The team includes professionals from diverse legal fields—technology, AI, infrastructure, privacy, IP, corporate, employment, tax, regulatory, and litigation—who collaborate closely with colleagues across the company. If you are passionate about being a technology lawyer working on cutting-edge challenges, you’ll thrive here. About the Role We’re seeking a senior lawyer to participate in commercial legal strategy and execution across OpenAI’s fast-growing infrastructure portfolio. This is a cross-functional role that will partner closely with procurement, supply chain, partnerships, finance, and product teams to structure, negotiate, and manage the transactions that will support OpenAI’s long-term infrastructure ambitions. We’re looking for an experienced infrastructure transactions lawyer who thrives in ambiguity and wants to help define the commercial playbook for infrastructure efforts in the AI era. This role reports to the Associate General Counsel for infrastructure. This role is based in San Francisco, CA. We use a hybrid work model of 3-days in the office per week and offer relocation assistance to new employees. In this role, you will: Own commercial legal strategy and risk management for OpenAI infrastructure transactions. Draft, negotiate, and advise on complex agreements with infrastructure suppliers, manufacturers, distributors, and technology partners. Support strategic partnerships involving AI infrastructure and hardware supply chains. Develop frameworks for procurement, licensing, and collaboration across the infrastructure ecosystem. Partner with finance and operations teams to align contract terms with business and compliance requirements. Collaborate with policy and regulatory colleagues on issues impacting global supply chains, export controls, and manufacturing. Build scalable, efficient contracting process

AWSRestAIGo
O
📍 United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team OpenAI, in close collaboration with our capital partners, is building the world’s most advanced AI infrastructure ecosystem. The Power & Land team owns the energy strategy required to secure reliable, scalable, and economically resilient power for OpenAI’s global data center portfolio. About the Role The Power Trading Lead will own commodity hedging strategy and execution across OpenAI’s data center power portfolio. This role will translate large, dynamic electricity and fuel exposures into practical hedging, procurement, and risk-management strategies that protect infrastructure economics while preserving flexibility for growth. This is an individual contributor lead role and does not have direct reports initially. The role will work across power markets, utility tariffs, retail and wholesale supply structures, natural gas and power hedges, renewable and clean firm products, and portfolio risk analytics to support long-term compute growth. Key Responsibilities Develop and maintain OpenAI’s commodity hedging strategy across electricity, natural gas, and related energy exposures for data center operations and growth. Quantify portfolio exposure by market, site, load shape, tenor, tariff, and supply structure, and translate that exposure into clear hedging recommendations. Evaluate and execute hedging structures including fixed-price supply, forwards, swaps, options, retail supply products, congestion and basis risk mitigation, and related instruments where appropriate. Partner with utilities, suppliers, traders, banks, consultants, and market counterparties to source competitive products and improve risk-adjusted energy economics. Build decision frameworks for when to hedge, how much to hedge, and which risks to retain across different stages of site development, construction, and operations. Coordinate with finance, treasury, legal, procurement, energy regulatory, sustainability, and site-readiness teams to ensure hedging strategy aligns with broa

AWSRestAIGo
O
📍 United States· Full-time
✓ Quality checkedCompany trend -82%

About the Team OpenAI, in close collaboration with our capital partners, is embarking on a journey to build the world’s most advanced AI infrastructure ecosystem. The Stargate team is central to this mission, setting the core infra strategy and implementing this vision. From site selection to the buildout process, this team sits at the intersection of commercial, technical, strategy, and operations, interacting with teams and executives inside and outside of OpenAI. About the Role The New Geography and International Growth Lead will own the strategy for infrastructure expansion into new geographies, including market assessment, stakeholder engagement, and coordination across energy, policy, commercial, and other infrastructure workstreams. This role identifies and enables priority international growth opportunities while ensuring alignment with regional regulatory, operational, sustainability, and long-term infrastructure objectives. This is an individual contributor lead role and does not have direct reports initially. The role will translate ambiguous market-entry questions into clear recommendations, identify the conditions required for OpenAI to advance in new regions, and coordinate the cross-functional work needed to turn priority geographies into executable infrastructure options. Key Responsibilities Build market-entry frameworks for international infrastructure geographies, including power availability, land readiness, regulatory posture, commercial fit, and execution risk. Assess priority regions and countries against OpenAI’s long-term compute, energy, sustainability, policy, and operational objectives. Coordinate cross-functional geographic diligence with energy, policy, commercial, legal, finance, procurement, engineering, and site-readiness stakeholders. Lead early stakeholder mapping and engagement strategy with utilities, regulators, government entities, developers, capital partners, and other market participants. Translate regional findings into exe

AWSRestAIGo
C
📍 Hartford Farmington Ave Rogers, United States
✓ High-confidence listingCompany trend +340.2%
Quick readStrong listing-quality and freshness signals

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary We are seeking an experienced actuarial professional to support Medicaid managed care pricing evaluation, financial performance management, and strategic decision-making. This role requires a strong combination of actuarial expertise, business acumen, technical proficiency, and leadership capability. The successful candidate will serve as a key partner to market leadership, finance, and operational stakeholders while providing guidance and oversight to actuarial analysts supporting complex Medicaid markets. This position is ideal for an actuary with strong project management skills who can balance short-term deliverables and ad hoc requests with long-term strategic initiatives, thrive in a dynamic environment, and independently develop analyses to address emerging business questions. Medicaid Pricing and Actuarial Analysis • Lead actuarial evaluation of state capitation pricing and forecasting for Medicaid managed care programs. • Evaluate and interpret complex state rate-setting methodologies, risk adjustment programs, acuity adjustments, and regulatory requirements. • Assess revenue, medical cost, utilization, and margin drivers to identify emerging trends and business risks. • Summarize and communicate actuarial analysis for business leadership. Strategic Business Support • Partner with market, product, finance, and operations tea

SQLExcelPower BiProject Management
🔔

Get new regulatory risk group manager jobs in United States by email

Daily job updates · Unsubscribe anytime