Senior Compliance Manager, Analytics & Program Effectiveness
Moloco · Menlo Park, California, United States
USD 144,000 to 200,000 a year
About Moloco:
Moloco is an AI-native performance advertising company, bringing the power of AI advertising to the open internet. Founded in 2013 by machine learning engineers who had built AI advertising systems inside the world's largest technology companies, Moloco began from a shared mission: to build that same engine for the open internet.
Today, Moloco is one company with two businesses, built on the same compound AI system. Moloco Ads is our AI-native performance advertising platform, helping mobile app marketers acquire, retain, and re-engage high-value users across the open internet. Moloco Commerce Media is our AI-native retail media platform, enabling retailers and marketplaces to turn their platforms into thriving ad businesses. Both are powered by CARA (Compound Ad Recommendation Architecture), the AI system behind every Moloco product.
At Moloco, we bring together those who've already solved hard problems and those with the drive to. Here, we work on some of the complex problems in AI advertising, at a scale and level of sophistication very few companies can offer. Come build what's next.
The Impact You’ll Be Contributing to Moloco:
The Senior Compliance Manager, Analytics & Program Effectiveness within the Enterprise Compliance Office (ECO) leads the design, measurement, and continuous improvement of Moloco’s global compliance program, turning regulatory, policy, and governance requirements into clear frameworks, workflows, evidence standards, reporting, and metrics. This hands-on role owns the compliance metrics framework and carries program ownership for defined ECO initiatives, making compliance scalable, auditable, measurable, and easier for business teams to execute.
This role reports to the Enterprise Compliance Officer and partners across Legal, Security/GRC, Product, Engineering, People, Finance, business teams, Internal Audit, and Compliance Champions. You’ll gather inputs, validate information, influence outcomes, drive issues, action items, and commitments to closure, escalate risks or delays early, and build working expertise at the intersection of compliance, operations, and data-driven decision-making across privacy, product and advertising compliance, third-party risk, enterprise-wide policies and governance, training, regulatory tracking, and other compliance domains.
This role is based near our Menlo Park, CA office and follows a hybrid in-office schedule.
The Opportunity:
- Lead the build and day-to-day operation of defined ECO services, translating regulatory, policy, and governance requirements into clear frameworks, artifacts, and repeatable processes, and continuously improving program infrastructure (playbooks, templates, trackers, repositories, workflows) to reduce rework and friction over time.
- Design, build, and own the compliance metrics framework and dashboards that demonstrate program efficacy (KPI/KRI definitions, data sources, thresholds, owners, data-quality process), including comprehensive program effectiveness and Compliance Champion network metrics, and produce recurring Risk Committee, Board, and executive reporting (e.g., quarterly posture reports, Board-ready dashboards) that turns data into clear narratives, trend analysis, and recommended actions, not just numbers.
- Set documentation and evidence standards and oversee the quality of audit-ready documentation and evidence maintained by the ECO and control owners: complete, accurate, version controlled, traceable from risk to control to evidence, and easy to retrieve for governance, audit, and executive review.
- Analyze compliance data, documentation, evidence, and workflows and independently investigate issues and open questions (with thoughtful follow-ups) to identify gaps, inconsistencies, trends, and leading indicators; drive practical solutions that close documentation, control, or process gaps and improve effectiveness, quality, efficiency, and operational rigor.
- Support risk, policy, and regulatory services: maintain the consolidated risk register and provide data-driven input to enterprise, product/feature-level, and market-entry or acquisition risk assessments and prioritization; support the policy and standards lifecycle and exceptions and risk-acceptance process (policy inventory, review cadence, ownership, exceptions tracked through approval, expiry, and renewal); and, with Legal, support the regulatory inventory and obligations register and track regulatory-change implementation (owners, milestones, evidence of completion).
- Own issue management and remediation, tracking issues, remediation items, and commitments to closure (owners, severity, timelines, dependencies, decisions, closure evidence, escalations) and reporting on aging, overdue items, and root-cause trends.
- Run program governance for defined initiatives (materials, status updates, metrics, dashboards, RAID logs, decision registers, other artifacts) and support ECO forums such as the Executive Risk Committee and First-Line Compliance Champion Committee.
- Design and operate the standardized ECO intake, triage, and routing workflow, including enterprise escalation criteria, and use intake data (volume, cycle time, SLA performance, handoffs, rework drivers) to inform prioritization and capacity and resourcing planning.
- Lead use of AI-assisted tools for analysis, monitoring, and reporting, and set controls that flag tool-output errors, anomalies, or inconsistencies before they are relied upon.
- Support audit and regulatory readiness: compile the compliance evidence pack, control narratives, and known-issues and remediation tracker, and serve as day-to-day compliance contact for Internal Audit and external reviewers.
- Lead implementation and operation of third-party risk management tools, processes, and platforms, overseeing tracking of third-party reviews, merging and maintaining counterparty data, developing analytics and reporting, monitoring risk indicators, and driving mitigation and remediation follow-through.
How Do I Know if the Role is Right For Me?
- A bachelor’s degree in business, law, risk, compliance, political science, data/information science, or a related field; an advanced degree or certification (e.g., CCEP, CRISC, CIPM, CRMA, PMP) is a plus.
- 8+ years of experience in compliance, legal operations, risk, audit, privacy, security governance, program or project management, or regulatory operations, preferably in a technology, media, or AdTech environment; high-growth or startup experience is a plus.
- Experience leading compliance, audit readiness, regulatory, or remediation programs, including overseeing evidence coordination, documentation review, status tracking, and issue management, and building or scaling a compliance operating model, program, or function (not just executing individual tasks), with working knowledge of the three-lines-of-defense model and second-line oversight versus first-line control execution.
- Demonstrated track record owning compliance or risk metrics, analytics, and reporting, including designing KPI/KRI frameworks and executive dashboards that measure program effectiveness rather than just activity (metrics, thresholds, data lineage, data-quality controls) and presenting results to senior leaders, committees, or a Board.
- Strong program leadership in a fast-paced, global, matrixed environment with multiple stakeholders and competing priorities: managing parallel initiatives, workplans, owners and dependencies, momentum, and issue resolution, and leading through influence, including senior stakeholders without direct authority.
- Analytical mindset to review data, documentation, evidence, and workflows, identify gaps, inconsistencies, root causes, and improvements, and recommend clear actions.
- Strong documentation, record-keeping, and communication skills, with attention to detail, accuracy, completeness, and consistency, and the ability to produce clear materials for cross-functional te