Risk Compliance Analyst Jobs in San Francisco, CA
Risk Compliance Analyst jobs in San Francisco are concentrated in financial services, fintech, and healthcare, with major hiring clusters in the Financial District, SoMa, and Mission Bay. Employers actively posting include ivo, IREN, and Figma. Scan the live roles below and apply to whichever ones fit.
Find Risk Compliance Analyst JobsOverview
Showing 5 of 42+ Risk Compliance Analyst jobs











Thinking Machines Lab's mission is to empower humanity through advancing collaborative general intelligence. We're building a future where everyone has access to the knowledge and tools to make AI work for their unique needs and goals.
We are scientists, engineers, and builders who’ve created some of the most widely used AI products, including ChatGPT and Character.ai, open-weights models like Mistral, as well as popular open source projects like PyTorch, OpenAI Gym, Fairseq, and Segment Anything.
About the Role
We're looking for a GRC Lead who personally drives our certifications (SOC 2, ISO 27001, FedRAMP and others as we grow) from scoping through audit close, and runs our compliance processes day to day. You'll collect the evidence, write the control documentation, and sit across from the auditor yourself.
You'll work closely with security, legal, safety, and engineering to answer compliance and risk questions directly, using your own technical understanding of how our systems work. Day to day, you'll be managing audits, controls, and risk assessments. Alongside that, you'll be building the roadmap for what this function needs to look like in a year.
What You'll Do
- Own our certification roadmap end to end: scope each certification, build the control set, collect and organize evidence, and represent TML directly to auditors through to close.
- Manage recurring compliance processes on a set cadence: control testing, audit prep and response, risk register maintenance, and policy attestations.
- Answer compliance and risk questions from engineering, security, and product teams directly, by building enough technical fluency across our infrastructure, model deployment, and data handling to do so without escalating every question.
- Track regulatory and framework requirements relevant to an AI company (GDPR, EU AI Act, and similar) and translate them into specific, actionable controls.
- Identify gaps in current compliance coverage as the company adds new products, infrastructure, or jurisdictions, and propose what needs to change before it becomes a blocker.
- Build and maintain the tooling and documentation that make the next audit cycle faster than the last one.
- Plan a multi-quarter roadmap for the GRC function itself, while continuing to personally run the certifications and audits already on the books.
Skills and Qualifications
Minimum qualifications:
- 7+ years related experience across technology and cybersecurity Governance, Risk, and Compliance (GRC), with demonstrated breadth across all three disciplines.
- Experience leading a SOC 2, ISO 27001, FedRAMP or comparable certification from scoping through audit close.
- Hands-on experience collecting audit evidence and writing control documentation.
- Experience managing a recurring compliance process, such as control testing, risk register maintenance, or policy attestations.
- Experience learning new technical domains quickly and translating them for non-technical stakeholders.
Preferred qualifications:
We encourage you to apply even if you don't meet all preferred qualifications.
- Background as a software engineer or in a technical engineering role, now applied to GRC, evidenced by scripts, tools, or automations you've personally built for evidence collection, control testing, or audit workflows.
- Experience translating complex compliance requirements into scalable automation using AI agents and custom built tooling.
- Experience growing a GRC function's capability (new certifications, tooling, or processes) as a company scaled.
You'll Thrive in This Role if
- You want to run the certification yourself, end to end.
- You're the one in the room with the auditor, walking through evidence.
- You can hold this week's deadlines and next year's roadmap at the same time.
Logistics
- Location: This role is based in San Francisco, California.
- Compensation: Depending on background, skills and experience, the expected annual salary range for this position is $225,000 - $350,000.
- Visa sponsorship: We sponsor visas. While we can't guarantee success for every candidate or role, if you're the right fit, we're committed to working through the visa process together.
- Benefits: Thinking Machines offers generous health, dental, and vision benefits, unlimited PTO, paid parental leave, and relocation support as needed.
- As set forth in Thinking Machines' Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.
As set forth in Thinking Machines' Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.
Thinking Machines Lab will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of the California Fair Chance Act, the San Francisco Fair Chance Ordinance, and any other applicable state or local fair chance ordinance or law.
See All 42 Risk Compliance Analyst Jobs in San Francisco
Find roles in San Francisco that match your experience and apply in just a few clicks.
Find Risk Compliance Analyst JobsRisk Compliance Analyst Job Market in San Francisco
Who's Hiring



Top Industries Hiring
- Technology & Software11
- Energy4
- Investment & Asset Management4
Risk Compliance Analyst Jobs in San Francisco: Frequently Asked Questions
How do I get a risk compliance analyst job in San Francisco?
The strongest path in San Francisco runs through its dense financial services and fintech sectors, where banks, asset managers, payment processors, and crypto firms all maintain active compliance teams. Candidates with experience in regulatory reporting, AML, or operational risk get the most callbacks in the Financial District and SoMa. A CRCM, CIA, or CFE certification gives you a concrete edge over generalist applicants in this market.
Which companies hire risk compliance analysts in San Francisco?
San Francisco risk compliance analyst roles are posted by ivo, IREN, and Figma and others right now, based on current listings on Migrate Mate as of August 2026. The city's employer mix skews toward large regional banks, fintech platforms, insurance carriers, and health systems, all of which carry substantial compliance obligations.
Are there remote risk compliance analyst jobs in San Francisco?
Yes, though eligibility depends heavily on the role: analytical and reporting work tends to go remote more easily than positions requiring hands-on audits or in-person regulatory meetings. About 50% of risk compliance analyst openings tied to San Francisco are remote or hybrid as of August 2026, with the highest remote share among fintech and tech-sector employers based in SoMa and Mission Bay.
How can I get a risk compliance analyst job in San Francisco with little or no experience?
The most realistic entry point in San Francisco is a compliance coordinator or risk analyst associate role at a mid-size bank, credit union, or fintech startup, where teams are smaller and junior hires take on broader responsibilities earlier. Familiarity with BSA, AML workflows, or regulatory change management gets noticed by San Francisco hiring managers even without years of direct experience. Local fintech accelerators and financial services firms in SoMa frequently post entry-level compliance openings.
Which industries hire the most risk compliance analysts in San Francisco?
Most risk compliance analyst openings in San Francisco sit in Technology & Software, Energy, and Investment & Asset Management, per current listings on Migrate Mate as of August 2026. San Francisco's role as a hub for both traditional financial institutions and emerging fintech and crypto companies drives unusually concentrated compliance demand compared to other California cities.
Related Jobs in California
See All 42 Risk Compliance Analyst Jobs in San Francisco
Find roles in San Francisco that match your experience and apply in just a few clicks.
Find Risk Compliance Analyst Jobs