All roles

Governance, Risk, and Compliance Officer – Part-Time

Remote · USA Full-time New today

Job Description:

  • Own SOC 2 and HIPAA programs end-to-end
  • Manage auditor relationships and streamline evidence collection
  • Maintain continuous audit readiness via Drata
  • Improve audit efficiency
  • Own vendor compliance intake (BAAs, DPAs, security reviews)
  • Build and maintain a centralized vendor registry with PHI exposure mapping
  • Establish fast, repeatable onboarding processes
  • Partner with Engineering on vendor security assessments
  • Audit and remediate ~30 existing policies with outdated ownership structures
  • Replace “phantom roles” (e.g., Security Officer) with real owners
  • Establish a meaningful policy review cadence
  • Draft new policies (data retention, vendor management, access controls)
  • Own and operate Drata (controls, evidence, personnel tasks)
  • Manage Trust Center accuracy and external posture
  • Handle customer security questionnaires
  • Support Sales with compliance documentation for enterprise deals
  • Document PHI data flows and system boundaries
  • Support incident response from a compliance perspective
  • Stay current on HIPAA and regulatory developments

Requirements:

  • 5+ years in GRC, security compliance, or related roles (startup experience strongly preferred)
  • Deep experience with SOC 2 and HIPAA (hands-on ownership, not advisory)
  • Strong familiarity with vendor risk management, BAAs, DPAs, and audits
  • Experience with tools like Drata or similar compliance platforms
  • Ability to operate independently in a fractional, high-ownership role
  • Strong judgment - able to make pragmatic tradeoffs, not over-engineer

Benefits:

  • Competitive salary and equity in a high-growth company
  • Opportunity to make an immediate impact
  • Medical, dental, and vision coverage
  • Unlimited paid time off
  • Company-sponsored annual retreats
  • 401(k) plan to support your long-term financial goals
  • Commuter stipend for San Francisco-based employees

Apply tot his job Apply To this Job

Related roles

Sr. Loan Officer

Remote · USA Full-time

Chief Compliance Officer (CCO) - US

Remote · USA Full-time

Risk Analyst III (Remote)

Remote · USA Full-time

Intern, Legal / Compliance

Remote · USA Full-time

Consultant - Healthcare Compliance Auditor - HTS

Remote · USA Full-time

[Hiring] Contractor Compliance Analyst @RemoFirst

Remote · USA Full-time

Healthcare Compliance Expert - HEDIS

Remote · USA Full-time

Quality and Compliance Director – Medical Industry

Remote · USA Full-time

[Remote] Information Security Risk Analyst

Remote · USA Full-time

Strategic Credit & Fraud Risk Analyst – Net Loss Forecasting & Risk Analytics (Remote Work From Home)

Remote · USA Full-time

Director, Account Development- Global (Remote - US or Canada)

Remote · USA Full-time

Experienced Live Chat Agent – Delivering Exceptional Customer Experiences in a Remote Setting

Remote · USA Full-time

Regional Human Resources Manager

Remote · USA Full-time

Research Scientist 5 - Content Promotion and Distribution

Remote · USA Full-time

Executive Loan Officer (Boise, ID)

Remote · USA Full-time

Work From Home Remote Entry Level -Focus Group Position

Remote · USA Full-time

Experienced Full Stack Data Entry Specialist – E-commerce and Market Development

Remote · USA Full-time

Compliance and Risk Manager Remote, USA - Legal, Regulatory and Compliance - Americas

Remote · USA Full-time

Experienced Part-Time Remote Amazon Chat Specialist – Delivering Exceptional Customer Service with arenaflex

Remote · USA Full-time

Remote GRC (Governance, Risk, and Compliance) and Data Privacy Consultant

Remote · USA Full-time