E-3 Visa Governance Risk And Compliance Jobs
Governance, risk, and compliance roles qualify as E-3 visa specialty occupations when tied to a relevant bachelor's degree in business, law, finance, or a related field. Australian professionals in GRC can secure E-3 sponsorship without entering a lottery, making the path to U.S. employment more predictable than most work visas.
Find E-3 Visa Governance Risk And Compliance JobsOverview
Showing 5 of 18+ Governance Risk And Compliance jobs










See all Governance Risk And Compliance Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new Governance Risk And Compliance roles.
Get Access To All Jobs
INTRODUCTION
Figma is growing our team of passionate creatives and builders on a mission to make design accessible to all. Figma’s platform helps teams bring ideas to life—whether you're brainstorming, creating a prototype, translating designs into code, or iterating with AI. From idea to product, Figma empowers teams to streamline workflows, move faster, and work together in real time from anywhere in the world. If you're excited to shape the future of design and collaboration, join us! Figma's GRC team helps build and maintain trust with our users, regulators, business partners, and the organizations that rely on Figma every day. We partner across the company to strengthen security, manage risk, maintain compliance, and scale the programs that support our continued growth. We're growing our team and looking for security, risk, and compliance professionals across several disciplines. Whether your expertise is in compliance, risk management, governance, GRC tooling, or customer trust, you'll have the opportunity to build programs, improve processes, and help shape how Figma scales security and trust.
ROLE AND RESPONSIBILITIES
Roles we hire for on this team:
* Compliance Management
- Lead compliance and certification programs across security and regulatory frameworks
- Manage audit cycles, partner with external assessors, and drive audit readiness initiatives
- Improve controls, processes, and evidence management practices across the organization
- Security Risk Management
- Build and maintain risk and controls frameworks that support Figma's security posture
- Assess, prioritize, and communicate security risks across the business
-
Develop third-party risk management strategies and enterprise risk reporting programs
-
Policy & Governance
- Manage the lifecycle of organizational security policies, standards, and procedures
- Drive policy awareness and stakeholder engagement across the company
-
Ensure governance practices align with regulatory requirements and business objectives
-
GRC Platforms & Enablement
- Select, implement, and optimize GRC platforms and supporting workflows
- Scale evidence collection, reporting, and program management capabilities
-
Identify opportunities to automate and streamline GRC operations
-
Customer Trust
- Support customer trust and business enablement activities across the sales lifecycle
- Manage security knowledge bases, customer-facing documentation, and trust publications
- Respond to customer security inquiries, audits, and questionnaires
This is a full time role that can be held from one of our US hubs or remotely in the United States.
What you'll do at Figma:
Lead compliance programs across frameworks such as SOC 2, ISO 27001, FedRAMP, SOX ITGC, GDPR, and NIS2
Manage external audits and certification activities while partnering with auditors and assessors
Build and maintain risk and controls frameworks, including common control frameworks that support multiple certifications
Conduct risk and gap assessments and drive remediation efforts across technical and business stakeholders
Improve control effectiveness and operational efficiency through rationalization and process optimization
Implement and optimize GRC platforms that scale evidence collection and program management
Maintain security policies and governance processes that align with organizational risk objectives
Support customer trust initiatives, including security questionnaires, audits, and customer-facing security communications
BASIC QUALIFICATIONS
We’d love to hear from you if you have:
4+ years of experience in information security, compliance, risk management, or a related field
Hands-on experience supporting security and compliance frameworks such as SOC 2, ISO 27001, FedRAMP, PCI-DSS, or SOX ITGC
Experience leading or supporting audits and partnering with external assessors
Demonstrated ability to conduct assessments, drive remediation efforts, and manage cross-functional initiatives
Exceptional written and verbal communication skills across technical, business, and executive audiences
Demonstrated ability to improve processes, manage competing priorities, and build strong cross-functional partnerships
PREFERRED QUALIFICATIONS
While it’s not required, it’s an added plus if you also have:
Operated in a public company environment with SOX ITGC requirements
Supported FedRAMP authorization, SSP development, 3PAO coordination, or continuous monitoring activities
Earned security or risk certifications such as CISA, CISSP, CISM, or CRISC
Implemented or administered GRC platforms such as Vanta, Drata, or similar tools
* Scaled security, compliance, or risk programs in a high-growth environment
At Figma, one of our values is Grow as you go. We believe in hiring smart, curious people who are excited to learn and develop their skills. If you’re excited about this role but your past experience doesn’t align perfectly with the points outlined in the job description, we encourage you to apply anyways. You may be just the right candidate for this or other roles.
COMPENSATION
Pay Transparency Disclosure
If based in Figma’s San Francisco or New York hub offices, this role has the annual base salary range stated below. Job level and actual compensation will be decided based on factors including, but not limited to, individual qualifications objectively assessed during the interview process (including skills and prior relevant experience, potential impact, and scope of role), market demands, and specific work location. The listed range is a guideline, and the range for this role may be modified. For roles that are available to be filled remotely, the pay range is localized according to employee work location by a factor of between 80% and 100% of range. Please discuss your specific work location with your recruiter for more information.
Annual Base Salary Range: $153,000—$296,000 USD
Figma offers equity to employees, as well a competitive package of additional benefits, including health, dental & vision, retirement with company contribution, parental leave & reproductive or family planning support, mental health & wellness benefits, generous PTO, company recharge days, a learning & development stipend, a work from home stipend, and cell phone reimbursement. Figma also offers sales incentive pay for most sales roles and an annual bonus plan for eligible non-sales roles. Figma’s compensation and benefits are subject to change and may be modified in the future.
At Figma we celebrate and support our differences. We know employing a team rich in diverse thoughts, experiences, and opinions allows our employees, our product and our community to flourish. Figma is an equal opportunity workplace - we are dedicated to equal employment opportunities regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity/expression, veteran status, or any other characteristic protected by law. We also consider qualified applicants regardless of criminal histories, consistent with legal requirements.
We will work to ensure individuals with disabilities are provided reasonable accommodation to apply for a role, participate in the interview process, perform essential job functions, and receive other benefits and privileges of employment. If you require accommodation, please reach out to accommodations-ext@figma.com. These modifications enable an individual with a disability to have an equal opportunity not only to get a job, but successfully perform their job tasks to the same extent as people without disabilities. Examples of accommodations include but are not limited to:
Holding interviews in an accessible location
Enabling closed captioning on video conferencing
Ensuring all written communication be compatible with screen readers
Changing the mode or format of interviews
To ensure the integrity of our hiring process and facilitate a more personal connection, we require all candidates keep their cameras on during video interviews. Additionally, if hired you will be required to attend in person onboarding.
By applying for this job, the candidate acknowledges and agrees that any personal data contained in their application or supporting materials will be processed in accordance with Figma's Candidate Privacy Notice.
See all E-3 Visa Governance Risk And Compliance Jobs
Sign up for free to unlock all listings, filter by visa type, and get alerts for new E-3 Visa Governance Risk And Compliance Jobs.
Get Access To All JobsTips for Finding E-3 Visa Sponsorship in Governance Risk And Compliance
Align your credentials to specialty occupation
GRC roles require a direct connection between your degree and the position. A finance or law degree maps cleanly to compliance analyst roles. If your degree is in a broader field, document how your coursework and credentials specifically support the GRC function you're being hired for.
Target regulated industries with dedicated compliance teams
Financial services, healthcare, and energy companies maintain large in-house GRC functions and file E-3 visas regularly. Focus your search on employers in these sectors who have existing compliance departments, since they understand the LCA and sponsorship process better than general employers.
Search for E-3 sponsorship roles on Migrate Mate
Migrate Mate filters GRC roles by E-3 visa sponsorship history, saving you from approaching employers unfamiliar with the visa. Use Migrate Mate's E-3 filing service to handle your LCA and visa paperwork once you receive an offer.
Address Australian credential equivalency early
U.S. employers often don't recognize Australian three-year bachelor's degrees as equivalent to U.S. four-year degrees. Request a credential evaluation from a NACES-approved evaluator before interviews so your qualifications are confirmed as meeting USCIS specialty occupation standards.
Confirm your offer letter specifies specialty occupation duties
The DOL requires the LCA to reflect a genuine specialty occupation position. Your offer letter should describe GRC duties that require at minimum a bachelor's degree in a specific field, not just general business experience. Vague job descriptions are a common reason LCA certification is challenged.
Start the LCA filing immediately after accepting an offer
The DOL typically certifies LCAs within seven business days, but your employer must post the LCA notice at the worksite for ten consecutive business days before filing. Build this into your start date timeline so you don't delay your consulate appointment.
E-3 Visa Governance Risk And Compliance: Frequently Asked Questions
How do I find Governance, Risk, and Compliance jobs that offer E-3 sponsorship?
Migrate Mate is built specifically for Australian professionals seeking E-3 sponsorship and lets you filter GRC roles by employers with sponsorship history. Because the E-3 requires employer action (an LCA filing with the DOL), targeting companies already familiar with the process significantly improves your chances of a smooth offer and filing experience.
How much does it cost to get an E-3 visa?
Migrate Mate's E-3 filing service covers the entire process for $499, including the Labor Condition Application, visa document preparation, and consulate appointment guidance. Traditional immigration lawyers charge $2,000–$5,000+ for the same work. The E-3 has less paperwork than most work visas, so paying thousands for legal help is usually unnecessary.
Do GRC roles qualify as specialty occupations under the E-3 visa?
Yes, most GRC positions qualify when the role requires a bachelor's degree or higher in a specific field such as finance, law, accounting, or business administration. Roles like compliance analyst, risk manager, and governance officer consistently meet the USCIS specialty occupation definition, provided the employer's job description reflects that degree-level requirement.
How does the E-3 compare to the H-1B for Australian compliance professionals?
The E-3 is available exclusively to Australian citizens and has no lottery, unlike the H-1B visa which is subject to an annual cap and random selection. GRC professionals on the E-3 can start the process after receiving a job offer without waiting for a lottery result, and the visa renews in two-year increments indefinitely as long as employment continues.
Can I transfer my E-3 visa to a new GRC employer if I change jobs?
Yes, but the new employer must file a fresh LCA with the DOL and you'll need to obtain a new E-3 visa stamp at a U.S. consulate. There's no portability provision equivalent to H-1B AC21 protections, so plan for a gap between roles and avoid resigning from your current position until the new LCA is certified.