About the role:
- Ensure Garner's compliance across security frameworks such as ISO 27001, SOC 2, HITRUST, and HIPAA.
- Run internal audits, guide external assessments, and partner with teams across Engineering, Product, People, and Legal.
What you will do:
- Manage and support compliance certifications including SOC 2, HITRUST, and ISO 27001 audits.
- Serve as the subject matter expert on compliance frameworks and primary contact for external auditors.
- Manage Garner's Security and Privacy trust center and maintain risk register.
The ideal candidate has:
- 5+ years of experience in GRC, IT audit, or information security compliance.
- Prior experience with HITRUST, SOC 2, and ISO 27001 audits.
- A GRC Engineering mindset with experience using scripting and LLMs to automate tasks.
Garner
Garner transforms the healthcare economy by partnering with employers to redesign healthcare benefits using data-driven insights. It is a fast-growing healthcare technology company with a mission-driven team focused on making healthcare more affordable and high-quality.