Job Description
📋 Description Lead and mature the Governance, Risk, and Compliance program, including security policies Manage and optimize automated compliance operations using modern GRC platforms to support Maintain and strengthen compliance programs across frameworks such as HIPAA, HITRUST, and SOC 2 Partner with commercial teams to support enterprise security evaluations, customer questionnaires Own security risk management processes, including risk assessments, exception management, vendor Design efficient workflows for employee security requests, SaaS reviews, access governance, and 🎯 Requirements 7+ years of experience in cybersecurity GRC, information security compliance, IT auditing, or 2+ years of experience leading security compliance programs, teams, or initiatives within regulated Hands-on experience managing security frameworks including HITRUST CSF, HIPAA, and SOC 2. Proven experience implementing and scaling compliance automation platforms such as Vanta, Drata, or Strong understanding of security governance, risk assessments, policy management, audit processes Experience supporting enterprise security reviews, customer questionnaires, RFPs, and external 🎁 Benefits Competitive compensation range of $161,500 - $209,000 per year, based on experience Remote-first work environment with flexibility to work from various locations across the United Comprehensive benefits package designed to support employee health and well-being. Opportunities to work on meaningful healthcare technology initiatives with large-scale impact. Professional growth opportunities within a fast-paced, innovative environment. Exposure to advanced security, compliance automation, and AI-driven operational practices.