
51 - 200 Mitarbeiter
Gegründet 2017
🏥 Gesundheitswesen
⚕️ Krankenversicherung
💳 Fintech
Healthcare • Healthcare Insurance • Fintech
Collectly ist ein Technologieunternehmen im Gesundheitswesen, das einen KI-gestützten finanziellen Assistenten anbietet, um den Abrechnungsprozess für Patienten zu optimieren. Die Plattform hilft Gesundheitsdienstleistern, das Engagement der Patienten zu verbessern, indem sie es ihnen erleichtert, ihre medizinischen Rechnungen zu verstehen und zu bezahlen, was zu schnelleren Zahlungen und höherer Patientenzufriedenheit führt. Collectly integriert sich in bestehende elektronische Gesundheitsakten und Praxisverwaltungssysteme, sodass Gesundheitseinrichtungen ihre Abrechnungsprozesse verbessern können, ohne ihre aktuellen Softwarelösungen ändern zu müssen.
🕒 vor 13 Tagen
🇺🇸 Vereinigte Staaten – Remote
💵 $190.000 - $220.000 / Jahr
⏰ Vollzeit
🟡 Mittelstufe
🟠 Senior
🚔 Compliance
👻 Geisterscore 9%
🗣️🇺🇸🇬🇧 Englisch erforderlich
Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

51 - 200 Mitarbeiter
Gegründet 2017
🏥 Gesundheitswesen
⚕️ Krankenversicherung
💳 Fintech
Healthcare • Healthcare Insurance • Fintech
Collectly ist ein Technologieunternehmen im Gesundheitswesen, das einen KI-gestützten finanziellen Assistenten anbietet, um den Abrechnungsprozess für Patienten zu optimieren. Die Plattform hilft Gesundheitsdienstleistern, das Engagement der Patienten zu verbessern, indem sie es ihnen erleichtert, ihre medizinischen Rechnungen zu verstehen und zu bezahlen, was zu schnelleren Zahlungen und höherer Patientenzufriedenheit führt. Collectly integriert sich in bestehende elektronische Gesundheitsakten und Praxisverwaltungssysteme, sodass Gesundheitseinrichtungen ihre Abrechnungsprozesse verbessern können, ohne ihre aktuellen Softwarelösungen ändern zu müssen.
• Own security and compliance end to end as the sole person in the function • Build a scalable security and compliance program without adding unnecessary operational drag • Answer customer security questionnaires • Complete AI governance questionnaires and responsible-AI reviews for the AI patient billing agent • Lead live security calls with prospects’ InfoSec teams • Manage health-system procurement portals, including Archer, ProcessUnity, and Venminder • Manage annual customer reattestation cycles • Handle customer security escalations, incident communications, and customer-facing RCAs • Host customers exercising right-to-audit clauses • Distribute SOC 2, HITRUST certification, penetration-test summaries, and subprocessor notices under NDA • Create and maintain a public trust center, standard security package, and answer library • Own HITRUST i1 and SOC 2 Type 2 readiness, evidence, auditor management, and remediation tracking • Own PCI DSS SAQs, collect processor AOCs, and define scope for card-present and card-not-present flows • Conduct the annual HIPAA Security Risk Analysis and maintain the risk register • Manage the penetration-test lifecycle, including scheduling, scoping, remediation tracking, and customer-facing summaries • Conduct quarterly user access reviews • Coordinate BCP/DR tabletops and annual testing • Administer Vanta and security scanners • Pull evidence from CI, infrastructure-as-code, identity provider, EDR, and cloud configuration systems • Reduce manually evidenced controls annually • Manage BAAs, security exhibits, DPAs, and the subprocessor inventory • Conduct tiered vendor security reviews and annual vendor reattestation • Maintain policies; manage security awareness, HIPAA training, phishing simulations, and completion tracking • Own the incident response program, including runbooks, tabletops, and incident coordination • Manage breach-notification timelines and contractual notification windows • Maintain a documented exception process with approver, expiry date, and compensating control • Serve as HIPAA Privacy Officer • Track state privacy laws including CCPA/CPRA and Washington My Health My Data • Establish AI governance for the AI patient billing agent, including model inventory, human oversight, and monitoring • Track emerging state rules on AI in healthcare and AI-generated patient communications • Do not own remediation engineering; DevOps owns findings and fixes • Do not own shipping decisions; document risk and escalate while the CTO sets priorities • Do not serve as a gate in design or code review
• Extensive experience in security compliance or GRC, including time in healthcare SaaS or another PHI-handling environment • Has run SOC 2 and HITRUST as an owner, not a contributor • Deep HIPAA fluency: Security Rule, Privacy Rule, Breach Notification Rule, BAAs, minimum necessary • Hands-on with Vanta or a comparable compliance automation platform • Strong knowledge of security frameworks; ability to apply unfamiliar frameworks independently • Ability to work with NIST AI RMF and ISO 42001 • Ability to write final-draft customer-facing prose • Ability to follow technical conversations involving architecture diagrams, infrastructure-as-code, access control models, and cloud configuration • Ability to reason about threat models and assess exploitability, mitigations, applicability, and escalation needs • Software engineering or security engineering background is a strong plus, though not required • PCI DSS in a payments context is a plus • Recognized certifications include CIPP/US, HCISPP, CISSP, and HITRUST CCSFP • Ability to actively research information during the working-session exercise
• Unlimited PTO • Fully paid medical, dental, and vision insurance for you and your dependents • Stock options • 401(k) with a generous company match • Contributions toward student loans
Jetzt Bewerben🕒 vor 13 Tagen
Compliance Specialist supporting broker-dealer compliance programs and registered representative supervision. Conducting regulatory reviews, audits, AML monitoring, and client inquiries.
🇺🇸 Vereinigte Staaten – Remote
💰 Private equity im 2012-07
⏰ Vollzeit
🟢 Junior
🟡 Mittelstufe
🚔 Compliance
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 13 Tagen
Regulatory Representative managing Globalstar’s satellite communications compliance and licensing. Coordinating FCC, ITU, spectrum, export-control, and agency matters across global markets.
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 13 Tagen
Regulatory labeling leader guiding global product compliance at Vertex, a biotechnology company investing in scientific innovation. Managing labels, governance, and health authority interactions across worldwide markets.
🇺🇸 Vereinigte Staaten – Remote
💵 $161.600 - $242.400 / Jahr
💰 Pre Seed Round im 2022-03
⏰ Vollzeit
🟠 Senior
🚔 Compliance
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 13 Tagen
Compliance Analyst supporting TP, a global digital business services provider, through compliance monitoring, audits, reporting, and controls testing. Improving compliance workflows with Google Workspace automation and dashboards.
🗣️🇺🇸🇬🇧 Englisch erforderlich
🕒 vor 14 Tagen
Accreditation compliance consultant supporting Navitus’ pharmacy benefit manager quality programs. Leading audits, accreditation readiness, corrective actions, and stakeholder education.
🗣️🇺🇸🇬🇧 Englisch erforderlich