Senior Compliance Specialist

2 weeks, 6 days ago
Full-time
Senior
Cybersecurity
Spring Health

Spring Health

Spring Health is a company that offers a comprehensive and personalized mental healthcare solution for teams and families. They provide clinically proven technology and world-class providers to deliver precise care tailored to individual needs, elimina...

Health Care Providers & Services
1K-5K
Founded 2016
$366M raised

Description

  • Support compliance programs and readiness efforts for SOC 2 Type II, HITRUST, HIPAA, GDPR, ISO 27001, ISO 42001, and ITGC-SOX.
  • Execute audit and assessment activities including evidence collection, internal interview coordination, documentation review, and remediation tracking.
  • Partner with engineering, IT, security, and business teams to validate control design and operating effectiveness.
  • Assist with third-party risk management and supply chain compliance, including vendor due diligence and ongoing monitoring.
  • Contribute to customer assurance activities by drafting questionnaire responses and joining customer calls with senior team members.
  • Support Business Continuity and Disaster Recovery planning, documentation updates, and testing coordination.
  • Operate and maintain GRC tools to keep evidence accurate, complete, and audit-ready.
  • Perform internal control testing and risk assessments, document gaps, and support remediation follow-up.
  • Draft and maintain policies, procedures, and SOPs aligned to established frameworks.
  • Conduct continuous monitoring activities such as access reviews, control testing, and artifact updates.

Requirements

  • Bachelor’s degree plus 5+ years of experience in GRC, IT compliance, security, or a risk-focused role.
  • Hands-on experience supporting audits and assessments aligned to SOC 2, HITRUST, HIPAA, GDPR, ISO 27001, and SOX ITGCs.
  • Foundational experience supporting Business Continuity and Disaster Recovery activities, including documentation maintenance and testing coordination.
  • Working knowledge of control execution, evidence requirements, and audit processes.
  • Ability to operate independently within a defined scope while escalating complex or novel issues appropriately.
  • Strong organizational skills and attention to detail in managing documentation and deadlines.
  • Clear written and verbal communication skills and comfort collaborating across technical and non-technical teams.

Benefits

  • Target base salary of $125,000 to $138,000, plus equity and benefits.
  • Health, dental, and vision coverage starting on day one, with access to One Medical.
  • HSA and FSA plans, with Spring contributing up to $1K to HSAs depending on plan type.
  • Employer-sponsored 401(k) match of up to 2%.
  • Annual allotment of no-cost visits to Spring Health therapists, coaches, and medication management providers for employees and dependents.
  • Competitive paid time off, including vacation, sick leave, and company holidays.
  • Parental leave after 6 months of tenure: 18 weeks for birthing parents and 16 weeks for non-birthing parents.
  • Professional development reimbursement of up to $1,000 per year.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Local Contact Person Pharmacovigilance (LCPPV) - Freelance - PT Poland

Allucent 1K-5K Pharmaceuticals

Allucent is seeking a Local Contact Person for Pharmacovigilance (LCPPV) to support post-marketing safety compliance and local regulatory operations across Estonia, Latvia, and Poland on a freelance, part-time basis.

1 hour, 36 minutes ago

Screening Escalations Analyst

Binance 5K-10K Capital Markets

Binance is hiring a remote Screening Escalations Analyst in Asia to handle complex compliance screening escalations and support the management of financial crime, sanctions, and anti-bribery and corruption risks.

3 hours, 52 minutes ago

Compliance Analyst

Alphasense 51-250 Industrial Conglomerates

AlphaSense is hiring a Compliance Analyst for its India Compliance Review team to support global 24x5 review coverage and help protect expert call content from sensitive information while maintaining legal and regulatory compliance.

4 hours, 55 minutes ago

Director of Compliance - Product

Sezzle 251-1K Diversified Financial Services

Sezzle is hiring a Director of Compliance - Product to embed regulatory compliance into product development for its consumer lending, BNPL, and payment offerings.

Agile UX Design
6 hours, 58 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers