Senior Manager, Security & Compliance

Job not on LinkedIn

🔥 7 hours ago

🗽 New York – Remote

infoinfo

💵 $150k - $190k / year

⏰ Full Time

🟠 Senior

🚔 Compliance

🦅 H1B Visa Sponsor

infoinfo

👻 Ghost score 21%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Leap

Leap

11 - 50 employees

Founded 2023

🛡️ Insurance

💼 Consulting

🏥 Healthcare

💰 $1M Venture Round - LEAP HEALTH on 2024-03

Insurance • Consulting • Healthcare

Leap is the only transparent specialty infusion benefit solution for employers. It eliminates hidden drug markups and provides end-to-end coordination of specialty infusion care — from pharmacy sourcing to in-home nursing — to reduce specialty drug costs and simplify the patient experience. Leap serves self-funded employers, brokers/consultants, and patients with a tech-enabled care model that cuts infusion spending, improves engagement, and delivers in-year hard-dollar savings.

📋 Description

• Lead HITRUST certification from kickoff through completion, including gap assessment, control mapping, remediation, and assessor management • Own SOC 2 Type II end to end, including evidence collection, auditor relationship, and gap closure • Maintain HIPAA security and privacy controls, core policies, and BAA obligations • Review Leap’s security posture and deliver a prioritized improvement and tooling roadmap • Roll out controls, policies, and processes across the company • Partner with Engineering on implementation across GCP and the data stack • Assess new vendors and tools, including AI tools • Run ongoing third-party risk reviews • Complete security questionnaires, RFP security sections, and controls reviews • Determine security obligations in client and partner agreements • Build a response library and repeatable review process • Represent Leap with client and partner security teams • Select and manage the external security partner • Keep leadership informed on security posture, risk, and compliance status • Flag areas where security investment is needed

🎯 Requirements

• 7+ years in healthcare information security, governance/risk/compliance (GRC), or IT audit • Direct ownership of at least one full SOC 2 Type II audit cycle • Deep familiarity with SOC 2, HIPAA, and HITRUST frameworks • Experience building a security or compliance program from scratch, or owning one end to end as an early security hire at a startup or growth-stage company • Hands-on experience completing security questionnaires and representing a company with enterprise or health plan security teams • Working knowledge of HIPAA Security and Privacy Rules • Experience handling patient health data (PHI) in B2B healthcare • Technical depth in cloud infrastructure; GCP preferred • Knowledge of modern data stacks • Ability to review controls and advise engineers through implementation • Comfort making judgment calls that commit the company • Bonus: hands-on HITRUST certification experience • Bonus: health tech, digital health, or benefits experience • Bonus: experience with health plans and large self-funded employers • Bonus: ISO 27001 experience • Bonus: experience with Vanta, Drata, or Secureframe • Bonus: CISSP, CISA, CISM, or CRISC certification

🏖️ Benefits

• Equity/stock options • Competitive total rewards package • Benefits • Equal opportunity employer committed to diversity of perspectives, experiences, and identities • Application limit: up to 3 applications in any 90-day period • Applicants not extended an offer may reapply to the same role after 60 days

Apply Now

Similar Jobs

🔥 9 hours ago

Gainwell Technologies

10,000+ employees

💼 Consulting

📦 Logistics

⚕️ Healthcare Insurance

Compliance Advisor securing Gainwell Technologies’ healthcare technology environment and managing SOC, NIST, HIPAA, and access-control compliance. Guiding security teams and improving enterprise security procedures.

🔥 9 hours ago

Gainwell Technologies

10,000+ employees

💼 Consulting

📦 Logistics

⚕️ Healthcare Insurance

Compliance Advisor securing Gainwell Technologies’ healthcare technology environment. Managing audits, access controls, vulnerabilities, and corporate security compliance.

🔥 9 hours ago

Gainwell Technologies

10,000+ employees

💼 Consulting

📦 Logistics

⚕️ Healthcare Insurance

Compliance Advisor overseeing healthcare security audits, access controls, and vulnerability management at Gainwell Technologies. Supporting safer Medicaid and healthcare technology operations.

🔥 9 hours ago

Gainwell Technologies

10,000+ employees

💼 Consulting

📦 Logistics

⚕️ Healthcare Insurance

Compliance Advisor securing Gainwell’s healthcare technology environment. Managing audits, access reviews, threat controls, and security compliance programs.

🔥 11 hours ago

SOLV Energy

501 - 1000

🏭 Manufacturing

📦 Logistics

⚡ Energy

Senior CIP Compliance Analyst leading NERC cybersecurity compliance for SOLV Energy’s utility-scale solar, battery storage, and substation projects. Owning audits, evidence, reporting, remediation, and analyst mentorship.