Source Job

The Sr. Manager, Governance Risk and Compliance (GRC) is responsible for overseeing Included Health's regulatory compliance, risk management, and governance programs. Ensuring compliance with healthcare regulations (HIPAA, HITECH, SOC 2), and building a robust GRC framework to protect PHI. This role plays a crucial role within the Governance, Risk & Compliance team, reporting directly to the Chief Information Security Officer.

HIPAA SOC 2 GRC Risk Management

10 jobs similar to Sr. Manager, Governance Risk and Compliance

Jobs ranked by similarity.

US

Lead and support customer security audits and respond to security questionnaires. Prepare, coordinate, and manage ISO 27001 audits. Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements.

OneStudyTeam specializes in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes.

$148,000–$222,000/yr
US

  • Conduct third party security and privacy reviews to reduce third party risks.
  • Identify business risks and recommend risk treatment options.
  • Collaborate with internal teams to improve third party due diligence processes.

Airtable is the no-code app platform that empowers people closest to the work to accelerate their most critical business processes.

India

Lead the design, implementation, and maturation of a comprehensive third-party risk program. Assess and monitor vendor security controls and ensure compliance with global standards. Collaborate across teams to strengthen security practices and drive program improvements.

We are currently looking for a Staff Security Assurance Engineer, Third Party Risk Management in India for a partner company.

  • Lead and mature LiveKit’s security and privacy compliance programs.
  • Own the day-to-day operations of compliance workflows.
  • Partner closely with Security and IT Engineers on controls design, documentation, governance, and audits.

LiveKit is revolutionizing the AI landscape by providing the network infrastructure that powers multimodal AI interfaces.

US

Plan and schedule remote security assessments for new and existing third-party relationships/engagements. Communicate Experian's third party risk management/security due diligence requirements to internal and external stakeholders. Identify information security deficiencies or risks at third parties and communicate with all stakeholders to obtain action plans, due dates, and documentation to evidence remediation of identified security risks/gaps.

Experian is a global data and technology company, powering opportunities for people and businesses around the world.

LATAM

Lead day-to-day activities for SOC 2 and other IT compliance engagements. Guide staff, engage with clients, and play a key role in the delivery of high-quality audits and readiness assessments. Identify control gaps and provide recommendations for remediation.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

Canada US Europe

As a Compliance and Risk Specialist, you will support the Compliance and Risk team by leading compliance initiatives. You will conduct risk assessments and remediation activities. You will contribute to the development of security strategies for systems deployed globally.

Canadian Bank Note Company (CBN) is a trusted leader in secure technology solutions for governments and businesses worldwide.

Latin America

  • Perform ITGC and application control testing across SOC 2, SOC 1, and HIPAA engagements.
  • Communicate with clients to request evidence, conduct walkthroughs, and clarify audit questions.
  • Document findings and support the preparation of client deliverables.

Insight Assurance is a security and compliance firm trusted by over 1,200 organizations for their SOC 2, PCI DSS, ISO 27001, and HIPAA audit needs.

US

Deliver successful consulting engagements across multiple Risk offerings while maintaining a high degree of customer satisfaction. Perform qualitative and quantitative risk assessments using industry-recognized frameworks. Provide advisory services to GuidePoint customers to help mature their cyber risk management and information security programs.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk.

  • Serve as a trusted Domain Expert/SME for client projects.
  • Provide high-level strategic guidance.
  • Share institutional knowledge and validate high-stakes GRC strategies.

REDE Consulting is a dynamic technology firm specializing in GRC (Governance, Risk, and Compliance) solutions across the finance and insurance sectors.