Security And Compliance Jobs in California
Security And Compliance jobs in California are among the most active in the country, concentrated in financial services, technology, healthcare, and defense contracting, with openings at every level from entry-level analyst through chief compliance officer. The largest hiring markets are San Francisco, Los Angeles, and San Diego, where employers such as Wells Fargo, Salesforce, and Kaiser Permanente maintain deep security and compliance functions. The most in-demand specialties include information security compliance, healthcare regulatory affairs, and financial industry regulatory oversight. Find a role that fits below and apply directly.
Find Security And Compliance JobsOverview
Showing 5 of 25+ Security And Compliance jobs











About us
Gimlet is building the next generation of AI infrastructure: large-scale AI datacenters and the orchestration platform that coordinates them. The future of AI will require vastly more compute than exists today. But as AI workloads become more complex and new hardware architectures emerge, simply deploying more GPUs isn't enough. The challenge is making increasingly diverse compute work together. Gimlet's platform intelligently partitions and routes workloads across heterogeneous hardware, enabling step-function improvements in performance and efficiency. Customers deploy through production-grade APIs without needing to think about hardware selection, placement, or optimization. We work with foundation labs, hyperscalers, and AI-native companies to power production workloads at massive scale and help define the infrastructure layer for the future of AI.
About This Role
Gimlet Labs is looking for a Head of Security and Compliance to build and own the security and compliance foundation for an AI company operating across rapidly evolving AI systems serving production scale traffic for top frontier labs and hyperscalers. This is a highly hands-on role for someone who can design the compliance program, implement the technical controls, and work directly with engineering to make security auditable, scalable, and practical. You will have significant ownership over the compliance stack, including policies, controls, evidence collection, audit readiness, vendor risk, and security tooling.
What You Will Work On
- Partner directly with engineering, infrastructure, and product teams to identify security risks and design practical controls across AI platforms, cloud infrastructure, networking systems, APIs, and software delivery pipelines.
- Build and operationalize security and compliance programs supporting frameworks such as SOC 2, ISO 27001, NIST CSF, NIST AI RMF, CSA CCM, and customer security requirements.
- Drive improvements to cloud and application security controls, including IAM, network segmentation, encryption, logging, secrets management, vulnerability management, and secure SDLC practices.
- Help define security approaches for AI systems, including model access controls, data protection, third-party AI tooling, auditability, and misuse prevention.
- Build scalable processes for audit evidence collection, risk tracking, remediation management, and security reporting across technical and non-technical stakeholders.
- Contribute to broader security and operational readiness efforts including vendor risk management, incident response preparedness, business continuity planning, and security policy development.
You may be a good fit for
- Experience in security risk, compliance, GRC, cloud security, or infrastructure security.
- Working knowledge of cloud platforms such as AWS, Azure, or Google Cloud.
- Familiarity with networking concepts including firewalls, VPC/VNet design, VPNs, DNS, TLS, routing, segmentation, and zero trust principles.
- Understanding of software security concepts, including secure SDLC, CI/CD, vulnerability management, secrets management, and API security.
- Experience with compliance frameworks such as SOC 2, ISO 27001, NIST, CIS Controls, or CSA CCM.
- Ability to document controls, gather evidence, assess gaps, and drive remediation with engineering teams.
- Strong written and verbal communication skills.
Strong candidates may also have
- Experience in an early-stage startup or high-ownership environment.
- Experience supporting AI, machine learning, data infrastructure, or SaaS platforms.
- Familiarity with AI governance frameworks such as NIST AI RMF or ISO/IEC 42001.
- Experience with Kubernetes, containers, infrastructure as code, and cloud-native security tooling.
- Certifications such as CISSP, CISA, CRISC, CCSP, CCSK, Security+, AWS Security Specialty, or Azure Security Engineer.
- Experience implementing or administering GRC platforms, SIEMs, CSPM tools, vulnerability scanners, and ticketing workflows.
Compensation Range:
$270K - $330K
See All 25 Security And Compliance Jobs in California
Find roles in California that match your experience and apply in just a few clicks.
Find Security And Compliance JobsSecurity And Compliance Jobs by City in California
Where California roles are concentrated, by current openings.
Security And Compliance Job Market in California
A snapshot from current California openings, updated as new roles post.
Who's Hiring
- Amazon6

- Bloom Energy1

- City and County of San Francisco1

- Decagon1

- Deckers America1

Top Industries Hiring
- Technology & Software8
- Energy2
- Fashion & Apparel2
- Electronics & Hardware1
- Food & Beverage1
What California Employers Look For
The qualifications that appear most often in security and compliance jobs across California.
- Relevant compliance certification such as CCEP, CRCM, or CISSP preferred by most California employers
- Bachelor's degree in business, law, information systems, or a related field typically required
- Demonstrated experience with California-specific regulations including CCPA and CMIA
- Proficiency with GRC platforms such as ServiceNow, Archer, or equivalent compliance management tools
- Ability to interpret and apply federal and California state regulatory frameworks across business units
- Strong written communication skills for policy documentation, audit reports, and regulatory correspondence
Security And Compliance Jobs in California: Frequently Asked Questions
How do you become a security and compliance in California?
Most security and compliance roles in California require a bachelor's degree in a field such as business administration, information systems, law, or finance, combined with relevant certifications. Widely recognized credentials include the Certified Compliance and Ethics Professional, the Certified Regulatory Compliance Manager, and for information security roles, the CISSP or CISM. California does not maintain a single state licensing board for compliance professionals, but employers in regulated industries such as healthcare and financial services often specify certifications aligned with California's own regulatory requirements, including CCPA compliance expertise.
How much do security and compliances make in California?
Security and compliances in California earn a median of about $138,570 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $66,070 for the lowest 10% to over $221,000 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire security and compliances in California?
Employers hiring security and compliances in California right now include Amazon, Bloom Energy, and City and County of San Francisco, based on current listings on Migrate Mate as of June 2026. California's dense concentration of regulated industries, from large health systems and financial institutions to major technology companies subject to state privacy law, means consistent demand across a wide range of employer types.
Which California cities have the most security and compliance jobs?
The cities with the most security and compliance openings in California are San Francisco, San Jose, and San Mateo. San Francisco's concentration of financial services firms and technology companies drives the highest volume of postings, while Los Angeles draws demand from entertainment, healthcare, and defense sectors, and San Diego's strong biotech and military contractor presence generates steady compliance hiring across those specialized industries.
Are there remote security and compliance jobs in California?
Yes, and more than most fields. Security and compliance work is primarily desk-based and analytical, which makes it well suited to remote and hybrid arrangements. About 24% of security and compliance openings tied to California are remote or hybrid as of June 2026, reflecting how widely this role has shifted toward distributed work since the pandemic. Policy review, regulatory monitoring, audit coordination, and training development are the functions most commonly performed fully remote.
How can I get hired as a security and compliance in California with little or no experience?
The most realistic entry path is moving from a closely adjacent role such as paralegal, internal auditor, risk analyst, or IT administrator, where you have already handled policy, controls, or regulatory documentation. Large California healthcare systems and financial institutions, including major hospital networks and regional banks, regularly bring on compliance associates and coordinator trainees who learn on the job. Earning a foundational certification such as the Certified in Healthcare Compliance or completing a California community college paralegal or business law program signals seriousness to hiring managers and compensates for limited direct compliance experience.
Where can I find and apply to security and compliance jobs in California?
You can find and apply to security and compliance jobs in California on Migrate Mate, which lists current California openings across industries and experience levels. Search the listings below to see what matches your background, then apply directly to the roles that fit.
See All 25 Security And Compliance Jobs in California
Find roles in California that match your experience and apply in just a few clicks.
Find Security And Compliance Jobs