Lead enterprise compliance program execution, including strategy, risk assessments, and policy governance.
Oversee compliance investigations, monitoring, auditing, and regulatory change management.
Provide guidance on federal and state healthcare regulations and emerging risks, partnering with senior leaders.
Oscar is a health insurance company built on a full-stack technology platform, focused on serving members. We started in 2012 and foster a culture of authenticity and belonging, with a mission to change healthcare.
Manage and maintain Virta's privacy compliance program, including policies, procedures, PIAs, and records of processing activities.
Act as primary point of contact for privacy inquiries from customers, prospects, and partners, supporting DPAs, BAAs, RFPs, and due diligence.
Drive cross-functional privacy initiatives, training, metrics, and incident response workflows to strengthen Virta's privacy posture.
Virta Health is on a mission to reverse metabolic disease in one billion people through virtual care, personalized nutrition, and technology. Backed by over $350 million from top-tier investors, the remote-first company partners with health plans and employers to help members restore their health.
Own and mature security, privacy, and compliance programs across HIPAA, SOC 2, and HITRUST.
Lead HITRUST certification end to end, including scoping, evidence collection, and assessor coordination.
Partner with Engineering, Product, SRE, and IT to integrate security into architecture, SDLC, and cloud infrastructure.
IntusCare is an end-to-end ecosystem built specifically to help PACE programs deliver exceptional care, strengthen financial performance, and stay compliant. It is a growing healthcare SaaS organization that empowers teams to improve outcomes for dual-eligible seniors.
Lead and develop the Compliance Governance team, setting priorities and building capabilities.
Own compliance risk assessment, policy governance, enterprise training, and compliance reporting.
Support regulatory examinations and provide credible challenge across the business.
Mercury is a fintech company building a complete banking and finance stack for startups and business owners. They value a fast-moving, collaborative culture with a modern approach to compliance and a commitment to diversity and belonging.
Develops, manages, and monitors corporate compliance programs that promote ethical behavior and mitigate risk.
Leads risk assessments, audits, and regulatory interactions, including preparing reports and responding to inquiries.
Builds relationships with internal and external stakeholders to drive compliant outcomes and manages operational compliance activities.
Omnicare is a leading provider of pharmacy services to long-term care facilities nationwide, supporting skilled nursing, assisted living, and other institutional care settings. The organization fosters a culture of care, innovation, and accountability, with a focus on quality and safety in everything it does.
Act as Daymark's first in-house lawyer and company-wide general counsel, reporting directly to the CEO.
Lead corporate governance, value-based care contracting, CPOM analysis, and regulatory compliance across states.
Build the legal function's playbook, including outside counsel strategy, privacy, and AI governance.
Daymark Health is a value-based oncology company redefining the cancer care experience for patients, providers, and health plans. Backed by leading investors, the fast-growing company operates a multi-state, hybrid care model with a collaborative culture.
Interpret federal and state regulations to ensure compliance and drive process improvements.
Analyze data in Excel to identify trends, savings, and process improvements.
SIHO Insurance Services provides health insurance administration and related services, focusing on payment integrity and regulatory compliance. The company operates in a managed care environment and emphasizes collaboration, professionalism, and adaptability among its employees.
Lead compliance programs including SOC 2, GDPR, CCPA/CPRA, and Shopify partner security requirements.
Own security policies, risk management, business continuity, and incident response.
Manage IT operations, endpoint security, and cloud security across the company.
Rebuy revolutionizes shopping with intelligent, personalized experiences for DTC brands. They are a fully remote team with a culture rooted in ownership, drive, and empathy.
Perform in-depth compliance audits to ensure adherence to local, state, and federal regulatory guidelines.
Identify potential compliance concerns and opportunities for documentation improvement.
Prepare and share detailed audit reports with physicians, advanced practice providers, and clinical leadership.
Baptist Health is a faith-based, not-for-profit health system in Northeast Florida, providing preventive and specialty care through 200+ locations and six hospitals. As the largest healthcare provider in the region, it fosters a welcoming workplace where every team member's voice is heard.
Oversee CMS and state audit readiness, live audit management, and corrective action plans.
Build internal monitoring, training, and reporting to foster a culture of compliance.
Collaborate with clinical and operations teams to integrate audit findings into improvements.
Habitat Health empowers older adults to experience more good days through the Program of All-Inclusive Care for the Elderly (PACE), delivering coordinated medical and social care in homes and communities. Supported by leading healthcare organizations and investors, the company is expanding its scalable model with a mission-driven culture focused on participant well-being.
Build trust with state healthcare regulatory boards and agencies to drive growth of the CE Broker solution.
Serve as the primary point of contact for assigned state partners, guiding operational efficiency and compliance.
Navigate multi-year government decision cycles with a consultative, relationship-first approach.
Propelus simplifies workforce compliance management across healthcare, providing technology and strategic partnerships that empower professionals, employers, and regulators. A trusted leader for over 20 years, the company serves millions with seamless compliance solutions and has been named a BuiltIn 2025 Best Places to Work.
Lead advanced compliance activities for healthcare administrative products including HSAs, FSAs, HRAs, and COBRA.
Apply expert regulatory judgment to risk assessments, compliance monitoring, investigations, and corrective actions.
Collaborate with stakeholders to integrate compliance requirements into strategic initiatives and leverage AI-powered tools.
HealthEquity empowers healthcare consumers by providing administrative solutions like HSAs, HRAs, FSAs, and COBRA. The company is a large, mission-driven organization that values inclusion and connects health and wealth for American families.
Own the compliance function as its sole occupant, reporting to the Head of Engineering and partnering with the Security Lead on policies, audits, and evidence.
Manage the Q&A library, customer security reviews, audit calendar, and third-party risk to keep Duvo reviewable for buyers and auditors.
Deliver precise, evidenced answers that stand up to hostile reviewers and keep the trust center and subprocessor list current.
Duvo builds an AI operations platform for large enterprises, enabling customers to create AI agents that automate business-critical processes across systems like SAP, spreadsheets, and supplier portals. The company is growing fast and values velocity, direct feedback, autonomy, and heavy use of AI tools.
Lead clinical quality and accreditation readiness for Pelago's care programs.
Run clinical audits and co-lead the Quality and Safety Committee.
Translate Joint Commission requirements into practical guidance and drive improvements.
Pelago is a specialty substance use and mental health care provider that combines technology with clinical expertise to deliver personalized treatment. They partner with employers and health plans and have supported over 750,000 members with substance use care.
Build and own the entity's FCRA compliance program from scratch, including policies and training.
Run consumer relations end-to-end: dispute intake, reinvestigation, file disclosure, and fraud alerts.
Serve as compliance point of contact for client diligence and regulatory matters.
SentiLink provides innovative identity and risk solutions for financial services and other markets. It is a fast-growing company backed by top investors and has earned recognition from major media outlets.
Supports and strengthens the Compliance program by providing advisory support to business stakeholders.
Conducts compliance investigations and assists with auditing and monitoring activities.
Advances policy governance and development, translating regulations into practical guidance.
Rula is a mental health company dedicated to providing evidence-based, compassionate care to treat the whole person. They are a remote-first organization with a culture that values diversity, equity, and inclusion, hiring in most U.S. states.
Own and mature internal and Managed GRC programs, including federal SSPs, POA&Ms, audits, and risk assessments.
Collaborate with CISOs, engineers, and control owners to translate compliance requirements into practical technical controls.
Lead and develop a GRC team while introducing automation and AI to improve scalability and consistency.
The company provides managed Governance, Risk & Compliance (GRC) and security assurance services, with a strong focus on federal security programs and frameworks like NIST, SOC 2, and CMMC. It supports a growing GRC team and emphasizes low-ego collaboration, automation, and AI-enabled approaches to scale delivery.