Security and Compliance Manager at Clinically AI
Overview
Security and Compliance Manager leading compliance program end to end at Clinically AI. Own frameworks SOC2 Type II HIPAA NIST ensuring audit readiness and continuous compliance while scaling rapidly.
What You'll Do11
- 1Own compliance platform of record managing frameworks SOC2 Type II HIPAA NIST and integrate controls
- 2Monitor compliance tests continuously triage failures and remediate directly
- 3Maintain security policies procedures and documentation aligned with actual practice
- 4Manage evidence collection and audit readiness automating evidence flow
- 5Coordinate external audits SOC2 Type II HIPAA NIST ISO end to end
- 6Administer Google Workspace including user lifecycle management access controls and 2FA SSO enforcement
- 7Manage MDM solution ensuring endpoints enrolled encrypted patched and compliant
- 8Track risk via assessments and lead mitigation planning with stakeholders
- 9Drive remediation from detection to closure across all compliance domains
- 10Partner with engineering product and leadership to resolve compliance issues
- 11Operate with high rigor maintaining accurate documentation in fast moving environment
Requirements11
- 13+ years experience in security compliance GRC IT security administration or similar
- 2Hands-on experience administering compliance automation platform such as Vanta Drata or Secureframe
- 3Direct experience with SOC2 Type II and HIPAA compliance programs including evidence collection audits and continuous control operations
- 4Experience administering Google Workspace business environment user lifecycle security settings access controls
- 5Ability to manage MDM solution such as Kandji Jamf Mosyle for endpoint compliance
- 6Strong organizational skills owning remediation from detection to closure
- 7Healthcare or regulated data environment background preferred
- 8Familiarity with frameworks HITRUST ISO27001 NIST and ability to add new ones
- 9Experience supporting enterprise customer security reviews RFPs and partner compliance requirements
- 10Working knowledge of cloud environments GCP sufficient to coordinate remediation with engineering
- 11Certifications such as CISA CISM Security+ CCSK or equivalent practical experience
Salary Insight
Salary not disclosed in listing
Location
Required Skills
Similar open positions
Explore active roles that match your skills and interests.
Flo Health
VerifiedHIPAA Security Engineer
Lead design and operation of US Healthcare security controls as part of Security Architecture team. Own roadmap for HIPAA compliance and SOC2 Type II certification while partnering with Engineering and Legal to build secure compliant platform for millions of users.
Wellsky
VerifiedSr. Compliance Manager WellSky
Lead compliance programs ensuring healthcare and privacy regulatory alignment across state and federal laws. Manage policy development and internal controls while driving AI integration into compliance workflows. Report to the Compliance Committee and shape future of healthcare.
Actalent
VerifiedSecurity Compliance Analyst Remote
Security Compliance Analyst leads full certification lifecycle for ISO and SOC 2 Type 2 audits, bridging technical engineering teams and external auditors. This fully remote role involves owning end-to-end audit processes, defining technical requirements, and utilizing AI automation to streamline compliance tasks. The ideal candidate is a hands-on practitioner skilled in SaaS environments and capable of articulating technical controls to diverse stakeholders.
Coreforce
VerifiedDirector IT Compliance at Coreforce
Lead compliance programs for public safety technology at Coreforce in Atlanta. Drive GovRAMP and FedRAMP compliance while supporting innovative solutions. Seek a leader with 5+ years experience in cross-functional compliance initiatives.
Corridor
VerifiedCorporate IT Security Engineer, GRC & Endpoint Security
Own Corridor's internal IT, security, and GRC programs. You will manage employee onboarding, device management, identity, and compliance, ensuring a secure and productive environment as we scale. Collaborate with a small, senior team backed by $25M Series A and customers like ElevenLabs and Langchain. This role blends hands-on IT troubleshooting with strategic security implementation, offering direct impact on our security posture and tooling.
Translucent AI
VerifiedSenior Security Engineer Translucent AI
Senior Security Engineer at Translucent AI leads security and compliance for IT and software development practices within an agentic AI platform for healthcare finance. You will own security infrastructure in GCP and sub-processors while partnering with platform and product engineers to ensure secure rapid deployment.