Tropic Square
Tropic Square
SecurityComplianceManager
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Security Compliance Manager at Tropic Square. Skills: Compliance transformation, Programme management, Cross-functional coordination, Stakeholder management. Own the compliance transformation programme. Deliver CRA compliance and EUCC certification programme”
What You'll Achieve.
Ensure the company and the product meet regulatory requirements; Deliver Tropic Square's CRA compliance and EUCC certification programme end-to-end; Ensure nothing falls through the cracks; Make the transformation actually happen; Ensure consultants get the inputs they need; Challenge outputs that are missing, off-scope, or not fit for purpose; Keep everyone ahead of upcoming requirements, risks, and decisions; Surface issues early and frame them clearly
Industry & Context.
Resolve blockers; Challenge consultant outputs constructively; Frame issues clearly: what is the risk, what are the options, what is your recommendation
What They're Looking For.
Must Have
Own the compliance transformation programme, Deliver Tropic Square's CRA compliance and EUCC certification programme end-to-end, Build the master plan, set milestones, track progress, report to the CEO, resolve blockers, and re-plan when needed, Drive internal execution, Coordinate across functions, Track risks, costs, and decisions, Get things done without formal authority, Coordinated cross-functional programmes before, Build trust quickly, Keep busy stakeholders aligned, Escalate without burning bridges, Make it easy for others to do what you need them to do, Manage expert advisors without being one yourself, Work with consultants: ask sharp questions, challenge outputs constructively, and turn their recommendations into internal action without losing anything in translation, Be structured and persistent, Maintain clarity on what needs to happen, who owns it, and by when, Communicate up and across with equal ease, Prepare a clear and concise executive summary for the CEO, Discuss technical topics with engineers in a way that builds trust, Learn fast
Nice to Have
Experience managing regulatory, certification, or compliance transformation programmes, Background in or exposure to cybersecurity, hardware, or semiconductor environments, Experience working in or closely with early-stage or scale-up companies, Familiarity with EU regulatory frameworks (CRA, NIS2, MDR, or similar), Prior experience managing external advisory or consulting relationships
What You'll Do.
Own the compliance transformation programme
Deliver CRA compliance and EUCC certification programme
Resolve blockers and re-plan
Drive internal execution
Coordinate engineering
Own internal action log and follow up
Manage advisory relationship
Turn consultant recommendations into internal tasks
Ensure consultants get inputs
Challenge consultant outputs
Coordinate across functions
Prepare CEO decision materials
Align stakeholders on priorities
Keep everyone ahead of requirements
Maintain live view of risk register
Surface issues early and frame them clearly
How You'll Work.
Team & Collaboration
Coordinate across functions; Run working groups; Align stakeholders on priorities; Keep busy stakeholders aligned; Communicate up and across with equal ease; Discuss technical topics with engineers
Communication Scope
Communicate up and across with equal ease; Prepare a clear and concise executive summary for the CEO; Discuss technical topics with engineers in a way that builds trust; Understand that how you communicate is just as important as the message itself
Process & Methodology
Build the master plan, Set milestones, Track progress, Resolve blockers, Re-plan when needed, Structured and persistent, Maintain clarity on what needs to happen, Who owns it, and by when, Manage programmes with many moving parts
Full Job Description
Tropic Square https://www.tropicsquare.com is building the world's first transparent, auditable security chip. Our engineering team knows how to build it. Now we need to make sure the company and the product meet the regulatory requirements that will define the market for the next decade. TROPIC02, our upcoming production chip, must comply with the EU Cyber Resilience Act, pass EUCC certification under the Common Criteria, and hold up to external audit. We have engaged a specialist advisory firm to provide the regulatory and certification expertise. What we need internally is a Security Compliance Manager who makes the transformation actually happen — owns the programme, drives execution across the company, and ensures nothing falls through the cracks between our engineering, legal, management, and external consultants. This is not a policy-writing role. It is a delivery role. 👉 WHAT YOU'LL DO - Own the compliance transformation programme. You’ll deliver Tropic Square's CRA compliance and EUCC certification programme end-to-end. You’ll build the master plan, set milestones, track progress, report to the CEO, resolve blockers, and re-plan when needed - Drive internal execution. Engineering teams documenting security architectures, process owners implementing SDL requirements, legal reviewing the Declaration of Conformity, operations setting up CSIRT procedures. You’ll coordinate them so everyone knows what is needed, by when, and why. You’ll own the internal action log and follow up relentlessly - Manage the advisory relationship. You’ll turn our external consultants’ recommendations on CRA, Common Criteria, IEC 62443, ISO 9001/27001/14001, and EUCC into clear internal tasks. You’ll ensure consultants get the inputs they need and challenge outputs that are missing, off-scope, or not fit for purpose - Coordinate across functions. Compliance transformation touches every part of the company: engineering, product, legal, finance, and leadership. You’ll run working group
Applying for this Security Compliance Manager role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Tropic Square?
Real rants from real employees. Read before you apply.