All roles

Governance, Risk, and Compliance Officer – Part-Time

Remote · USA Full-time New today

Job Description:

  • Own SOC 2 and HIPAA programs end-to-end
  • Manage auditor relationships and streamline evidence collection
  • Maintain continuous audit readiness via Drata
  • Improve audit efficiency
  • Own vendor compliance intake (BAAs, DPAs, security reviews)
  • Build and maintain a centralized vendor registry with PHI exposure mapping
  • Establish fast, repeatable onboarding processes
  • Partner with Engineering on vendor security assessments
  • Audit and remediate ~30 existing policies with outdated ownership structures
  • Replace “phantom roles” (e.g., Security Officer) with real owners
  • Establish a meaningful policy review cadence
  • Draft new policies (data retention, vendor management, access controls)
  • Own and operate Drata (controls, evidence, personnel tasks)
  • Manage Trust Center accuracy and external posture
  • Handle customer security questionnaires
  • Support Sales with compliance documentation for enterprise deals
  • Document PHI data flows and system boundaries
  • Support incident response from a compliance perspective
  • Stay current on HIPAA and regulatory developments

Requirements:

  • 5+ years in GRC, security compliance, or related roles (startup experience strongly preferred)
  • Deep experience with SOC 2 and HIPAA (hands-on ownership, not advisory)
  • Strong familiarity with vendor risk management, BAAs, DPAs, and audits
  • Experience with tools like Drata or similar compliance platforms
  • Ability to operate independently in a fractional, high-ownership role
  • Strong judgment - able to make pragmatic tradeoffs, not over-engineer

Benefits:

  • Competitive salary and equity in a high-growth company
  • Opportunity to make an immediate impact
  • Medical, dental, and vision coverage
  • Unlimited paid time off
  • Company-sponsored annual retreats
  • 401(k) plan to support your long-term financial goals
  • Commuter stipend for San Francisco-based employees

Apply tot his job Apply To this Job

Related roles

Sr. Loan Officer

Remote · USA Full-time

Chief Compliance Officer (CCO) - US

Remote · USA Full-time

Risk Analyst III (Remote)

Remote · USA Full-time

Intern, Legal / Compliance

Remote · USA Full-time

Consultant - Healthcare Compliance Auditor - HTS

Remote · USA Full-time

[Hiring] Contractor Compliance Analyst @RemoFirst

Remote · USA Full-time

Healthcare Compliance Expert - HEDIS

Remote · USA Full-time

Quality and Compliance Director – Medical Industry

Remote · USA Full-time

[Remote] Information Security Risk Analyst

Remote · USA Full-time

Strategic Credit & Fraud Risk Analyst – Net Loss Forecasting & Risk Analytics (Remote Work From Home)

Remote · USA Full-time

Experienced Work From Home Customer Service Representative Opportunity at arenaflex

Remote · USA Full-time

Support Engineering Team Lead | Remote | US

Remote · USA Full-time

Associate Manager, Category Strategy

Remote · USA Full-time

Experienced Part-Time Remote Data Entry Specialist – Contributing to arenaflex's Operational Efficiency

Remote · USA Full-time

Experienced Customer Service Representative – Remote Mountain/Pacific Time Zones

Remote · USA Full-time

Experienced Bilingual Machine Learning Data Associate - Italian (Remote) for Customer Engagement Technology at arenaflex

Remote · USA Full-time

Experienced Customer Service Specialist – Remote Opportunity at arenaflex

Remote · USA Full-time

Customer Support Engineer

Remote · USA Full-time

Entry Level Training Associate - Work From Home

Remote · USA Full-time

Customer Support Specialist - Experienced

Remote · USA Full-time