All roles

Governance, Risk, and Compliance Officer – Part-Time

Remote · USA Full-time New today

Job Description:

  • Own SOC 2 and HIPAA programs end-to-end
  • Manage auditor relationships and streamline evidence collection
  • Maintain continuous audit readiness via Drata
  • Improve audit efficiency
  • Own vendor compliance intake (BAAs, DPAs, security reviews)
  • Build and maintain a centralized vendor registry with PHI exposure mapping
  • Establish fast, repeatable onboarding processes
  • Partner with Engineering on vendor security assessments
  • Audit and remediate ~30 existing policies with outdated ownership structures
  • Replace “phantom roles” (e.g., Security Officer) with real owners
  • Establish a meaningful policy review cadence
  • Draft new policies (data retention, vendor management, access controls)
  • Own and operate Drata (controls, evidence, personnel tasks)
  • Manage Trust Center accuracy and external posture
  • Handle customer security questionnaires
  • Support Sales with compliance documentation for enterprise deals
  • Document PHI data flows and system boundaries
  • Support incident response from a compliance perspective
  • Stay current on HIPAA and regulatory developments

Requirements:

  • 5+ years in GRC, security compliance, or related roles (startup experience strongly preferred)
  • Deep experience with SOC 2 and HIPAA (hands-on ownership, not advisory)
  • Strong familiarity with vendor risk management, BAAs, DPAs, and audits
  • Experience with tools like Drata or similar compliance platforms
  • Ability to operate independently in a fractional, high-ownership role
  • Strong judgment - able to make pragmatic tradeoffs, not over-engineer

Benefits:

  • Competitive salary and equity in a high-growth company
  • Opportunity to make an immediate impact
  • Medical, dental, and vision coverage
  • Unlimited paid time off
  • Company-sponsored annual retreats
  • 401(k) plan to support your long-term financial goals
  • Commuter stipend for San Francisco-based employees

Apply tot his job Apply To this Job

Related roles

Mortgage Loan Originator - Hybrid (Leads Provided + Own Book)

Remote · USA Full-time

Managing Vice President, Chief Compliance Officer

Remote · USA Full-time

Chief Compliance Officer (CCO) - US

Remote · USA Full-time

Regulatory Affairs Manager (Remote)

Remote · USA Full-time

Collateral Risk Analyst

Remote · USA Full-time

Risk Analyst

Remote · USA Full-time

AML/BSA Special Risk Analyst

Remote · USA Full-time

Regulatory Affairs Assistant Manager

Remote · USA Full-time

AML KYC & Execution

Remote · USA Full-time

AML Analyst (US, ET)

Remote · USA Full-time

PV Coordinator

Remote · USA Full-time

Clinical Assessment Scientist - COA Lead - Sponsor-dedicated (Sweden, Spain, UK, South Africa, Portugal, Denmark)

Remote · USA Full-time

Experienced Virtual Assistant / Airbnb Customer Support Specialist for arenaflex's Short-Term Rental Division - Contract to Hire Opportunity

Remote · USA Full-time

Remote Online Chat Moderator – $25-$35/Hour | No Experience Needed | Flexible Work From Home

Remote · USA Full-time

Experienced Live Chat Support Associate – Remote Customer Experience Specialist

Remote · USA Full-time

Technology Risk Assurance & Cybersecurity Assurance Manager

Remote · USA Full-time

Part-Time Personal Assistant in Mid City (HYBRID - 25 hrs/week)

Remote · USA Full-time

Peoplesoft HCM Business Analyst & Functional Lead (Remote)

Remote · USA Full-time

Experienced Customer Service Representative (Remote) – Delivering Exceptional Travel Experiences for arenaflex

Remote · USA Full-time

Senior Theme Park Operations Manager

Remote · USA Full-time