All roles

Governance, Risk, and Compliance Officer – Part-Time

Remote · USA Full-time New today

Job Description:

  • Own SOC 2 and HIPAA programs end-to-end
  • Manage auditor relationships and streamline evidence collection
  • Maintain continuous audit readiness via Drata
  • Improve audit efficiency
  • Own vendor compliance intake (BAAs, DPAs, security reviews)
  • Build and maintain a centralized vendor registry with PHI exposure mapping
  • Establish fast, repeatable onboarding processes
  • Partner with Engineering on vendor security assessments
  • Audit and remediate ~30 existing policies with outdated ownership structures
  • Replace “phantom roles” (e.g., Security Officer) with real owners
  • Establish a meaningful policy review cadence
  • Draft new policies (data retention, vendor management, access controls)
  • Own and operate Drata (controls, evidence, personnel tasks)
  • Manage Trust Center accuracy and external posture
  • Handle customer security questionnaires
  • Support Sales with compliance documentation for enterprise deals
  • Document PHI data flows and system boundaries
  • Support incident response from a compliance perspective
  • Stay current on HIPAA and regulatory developments

Requirements:

  • 5+ years in GRC, security compliance, or related roles (startup experience strongly preferred)
  • Deep experience with SOC 2 and HIPAA (hands-on ownership, not advisory)
  • Strong familiarity with vendor risk management, BAAs, DPAs, and audits
  • Experience with tools like Drata or similar compliance platforms
  • Ability to operate independently in a fractional, high-ownership role
  • Strong judgment - able to make pragmatic tradeoffs, not over-engineer

Benefits:

  • Competitive salary and equity in a high-growth company
  • Opportunity to make an immediate impact
  • Medical, dental, and vision coverage
  • Unlimited paid time off
  • Company-sponsored annual retreats
  • 401(k) plan to support your long-term financial goals
  • Commuter stipend for San Francisco-based employees

Apply tot his job Apply To this Job

Related roles

Sr. Loan Officer

Remote · USA Full-time

Chief Compliance Officer (CCO) - US

Remote · USA Full-time

Risk Analyst III (Remote)

Remote · USA Full-time

Intern, Legal / Compliance

Remote · USA Full-time

Consultant - Healthcare Compliance Auditor - HTS

Remote · USA Full-time

[Hiring] Contractor Compliance Analyst @RemoFirst

Remote · USA Full-time

Healthcare Compliance Expert - HEDIS

Remote · USA Full-time

Quality and Compliance Director – Medical Industry

Remote · USA Full-time

[Remote] Information Security Risk Analyst

Remote · USA Full-time

Strategic Credit & Fraud Risk Analyst – Net Loss Forecasting & Risk Analytics (Remote Work From Home)

Remote · USA Full-time

Experienced Data Entry Specialist – Remote Work Opportunity with arenaflex

Remote · USA Full-time

Talent Management Lead

Remote · USA Full-time

Experienced Remote Customer Service Specialist (Voice/Non-Voice) – Freelance Marketplace Support

Remote · USA Full-time

Mail Room Coordinator- 9-month temporary role, onsite in Portland, Oregon

Remote · USA Full-time

Experienced Part-Time Remote Customer Service Representative – Delta Airlines

Remote · USA Full-time

Experienced Data Entry Clerk – Remote Part-time Opportunity with arenaflex

Remote · USA Full-time

Fractional Part-time Executive Director

Remote · USA Full-time

Technical Application Specialist (East Region)

Remote · USA Full-time

Concierge Customer Service Representative – Remote Opportunity at arenaflex

Remote · USA Full-time

Project Manager (12 month term)

Remote · USA Full-time