Senior Manager, Governance, Risk, Compliance

Job not on LinkedIn

🔥 16 hours ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Virta Health

Virta Health

201 - 500 employees

🏥 Healthcare

⚕️ Healthcare Insurance

🧘 Wellness

Healthcare • Healthcare Insurance • Wellness

Virta Health is a healthcare company focused on reversing type 2 diabetes and promoting sustainable weight loss through a nutrition-first approach. The company offers personalized treatment plans that help individuals reduce or eliminate the need for diabetes medications. Virta collaborates with organizations and healthcare providers to deliver transformative outcomes in metabolic care. Their approach is evidence-backed, emphasizing the importance of lifestyle and dietary changes to achieve lasting health improvements and weight management.

📋 Description

• Maintain and mature Virta Health's information security compliance program, policies, procedures, and controls to address emerging risks as the organization scales. • Oversee Virta’s GRC function, scaling our platform (Vanta) to automate continuous evidence collection, ensuring audit-readiness and defending our HIPAA, HITRUST CSF, and SOC 2 certifications. • Partner directly with Sales and Customer Success to navigate enterprise customer evaluations and security reviews, communicating Virta's strong security compliance posture to external stakeholders. • Define and own Virta's security policy lifecycle, exception management processes, vendor risk assessments, and executive risk reporting. • Conduct regular risk assessments to identify vulnerabilities, assess potential impact, and guide business owners on mitigation. • Manage the administrative security queue for Virta employees. Design and optimize frictionless ticketing workflows (such as Zendesk or Jira) and SLAs for access governance reviews, SaaS tool compliance evaluations, and policy exception requests. • Collaborate closely with IT, Enterprise Security Engineering, and Product Development teams to ensure operational GRC policies map seamlessly into our technical architectures and evolving AI governance frameworks (e.g., ISO 42001, NIST AI RMF). • Champion a culture of security awareness across all levels of the organization. Design and deliver targeted training programs so employees understand their roles in maintaining compliance and data privacy.

🎯 Requirements

• 7+ years of dedicated experience in Cybersecurity GRC, IT Auditing, or Information Security Compliance, with at least 2+ years leading programs or managing teams in regulated environments (such as Healthcare or Digital Health). • Direct, hands-on experience managing and maintaining at least one of the major security and healthcare frameworks, specifically HITRUST CSF, HIPAA, and SOC 2. • Proven track record of leveraging modern SaaS GRC automation platforms (such as Vanta or Drata) to scale continuous compliance programs. • Outstanding client-facing communication skills with a track record of partnering with Sales/CS teams to navigate complex enterprise security evaluations, vendor questionnaires, and RFP processes. • Successfully designed and implemented repeatable AI-enabled workflows that address team bottlenecks and improve efficiency. • Ability to operate in gray areas, finding the right balance between corporate risk tolerance, operational efficiency, and regulatory requirements. • Strong cross-functional leadership skills with the ability to influence technical and non-technical business partners to align on security compliance objectives.

🏖️ Benefits

• Offers Equity

Apply Now

Similar Jobs

🔥 17 hours ago

Syneos Health

10,000+ employees

🏥 Healthcare

💼 Consulting

📦 Logistics

Senior Medical Editor managing regulatory documents at Syneos Health. Ensuring compliance with FDA, EU standards while leading a medical writing team.

🔥 20 hours ago

Empower

10,000+ employees

💸 Finance

💳 Fintech

👥 B2C

Senior Director leading Empower's Personal Trading and Code of Ethics program. Collaborating with various teams to strengthen compliance frameworks and navigate regulatory environments.

🔥 20 hours ago

Radian Generation

51 - 200

⚡ Energy

📋 Compliance

🔒 Cybersecurity

Manage compliance activities for NERC registered renewable energy projects as part of Radian Generation's commitment to support the lifecycle of renewable facilities.

🇺🇸 United States – Remote

💵 $100k - $130k / year

💰 Seed Round on 2016-05

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🔥 23 hours ago

HarmonyCares

1001 - 5000

🏥 Healthcare

⚕️ Healthcare Insurance

Compliance Advisor at HarmonyCares managing compliance program for healthcare operations. Collaborating with teams to ensure adherence to federal and state regulations and best practices.

🇺🇸 United States – Remote

💵 $80k - $130k / year

💰 Venture Round on 2021-11

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🕒 Yesterday

Humana

10,000+ employees

🏥 Healthcare

🛡️ Insurance

⚕️ Healthcare Insurance

Senior Compliance Professional ensuring adherence to regulations related to Medicare Pharmacy and Part D programs at Humana. Involves analysis, research, and compliance risk management.