Compliance Analyst – US Compliance Programs

🕒 May 20

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Spellbook

Spellbook

11 - 50 employees

🤖 Artificial Intelligence

☁️ SaaS

Artificial Intelligence • SaaS • Legal

Spellbook is an innovative AI companion designed specifically for commercial lawyers, offering advanced legal tools to streamline and enhance the process of drafting and reviewing contracts. It allows users to draft from scratch or saved libraries, review and redline contracts to catch risks, compare contracts against industry standards, and get quick answers to complex legal questions. Trusted by over 2,600 law firms and in-house teams worldwide, Spellbook integrates with popular platforms such as Word and is powered by advanced AI models like GPT-4. It enhances efficiency for legal professionals across various areas, including real estate, intellectual property, mergers and acquisitions, and more, by providing a secure and compliant service.

📋 Description

• Implement and maintain US compliance program initiatives across government, healthcare, financial services, and enterprise SaaS customer requirements. • Drive readiness, implementation, and ongoing maintenance for frameworks such as TX-RAMP, GovRAMP, FedRAMP, HIPAA, SOC 2, and other security or privacy compliance obligations. • Manage compliance operations in platforms like Vanta — evidence collection, control monitoring, policy tracking, vendor documentation, employee compliance tasks, and audit-readiness workflows. • Coordinate with external auditors, assessors, consultants, legal advisors, and certification bodies through every phase of an engagement. • Lead government compliance initiatives, including control mapping, gap assessments, documentation packages, system descriptions, policy updates, and customer-facing compliance responses. • Maintain compliance artifacts including policies, procedures, risk registers, control narratives, system inventories, access reviews, training records, and audit evidence. • Track regulatory, framework, and customer requirement changes and translate them into practical updates to internal controls and workflows. • Partner with Sales and Customer Success on security questionnaires, public sector procurement requirements, and regulated customer due diligence. • Define repeatable compliance workflows for intake, triage, ownership, escalation, documentation, reporting, and remediation. • Use AI, automation, and compliance tooling to reduce manual work, improve evidence quality, and accelerate program execution. • Support with other responsibilities and projects as required.

🎯 Requirements

• Experience in compliance, security assurance, GRC, audit, risk management, privacy, or a related function — ideally supporting a SaaS, cloud, AI, legaltech, fintech, healthtech, or public sector environment. • Familiarity with security and compliance frameworks such as SOC 2, ISO 27001, NIST 800-53, NIST CSF, HIPAA, FedRAMP, TX-RAMP, or GovRAMP. • Hands-on experience collecting audit evidence, maintaining control documentation, tracking remediation, and supporting internal or external assessments. • Experience using compliance automation or GRC platforms such as Vanta, Linear, or similar tools. • Strong ability to read framework requirements, customer obligations, and regulatory guidance and convert them into actionable project plans. • Experience partnering with technical teams to understand systems, access controls, data flows, infrastructure, cloud environments, and security control implementation. • Excellent written and verbal communication skills, with the ability to explain compliance requirements in plain English to technical, legal, business, and executive audiences. • Highly organized and comfortable managing multiple compliance workstreams, deadlines, audits, and stakeholder dependencies at the same time. • Pragmatic at distinguishing high-priority compliance risks from lower-impact administrative issues, and able to move with urgency in ambiguous environments. • US Citizenship and a non-expired US Passport or state-issued REAL ID driver's license.

🏖️ Benefits

• Access our company-paid group benefits for you and your family, with $1,000 towards mental health support • Disconnect during our holiday closure and take advantage of our generous time off policies throughout the year • Enjoy monthly paid meals, an annual wellness allowance to support your well-being and parental leave top-ups as your family grows • Secure your stake in our success; you’ll receive competitive stock option grants as a pivotal early employee

Apply Now

Similar Jobs

🕒 May 20

Community Memorial Healthcare

1001 - 5000

⚕️ Healthcare Insurance

🤝 Non-profit

🧘 Wellness

Governance, Risk & Compliance Analyst Lead at Cottage Health implementing and managing security governance programs. Collaborating with the team to mitigate security risks and manage audits.

🕒 May 20

Brello Health

51 - 200

💊 Pharmaceuticals

👥 B2C

🧘 Wellness

Compliance Analyst ensuring marketing compliance for FDA-regulated compounded drugs. Reviews marketing materials, conducts audits, and promotes ethical marketing practices.

🕒 May 20

Parexel

10,000+ employees

⚕️ Healthcare Insurance

🧬 Biotechnology

💊 Pharmaceuticals

Senior Regulatory Consultant responsible for strategic regulatory guidance across cross-functional teams in the healthcare sector. Ensuring compliance with FDA advertising and promotion regulations while leading risk assessment discussions.

🕒 May 20

Brown & Brown Insurance

10,000+ employees

💸 Finance

Technology Risk & Compliance Analyst managing technology risk and compliance across the Retail Technology portfolio. Partnering with stakeholders to ensure regulatory alignment and enforce compliance standards.

🕒 May 20

Unchained

51 - 200

💸 Finance

₿ Crypto

🔐 Security

US Regulatory Manager at Unchained ensuring compliance with U.S. financial services regulations. Involves collaboration across departments for effective risk management and policy implementation.