Governance, Risk & Compliance Analyst

2 hours, 10 minutes ago
Full-time
Senior
Legal
SWORD Health

SWORD Health

SWORD Health provides AI-powered digital physical therapy solutions designed to prevent pain, support recovery, and enhance overall health, while also aiming to transform the rehabilitation industry through innovative technology and clinical oversight.

Health Care Providers & Services
251-1K
Founded 2015
$324M raised

Description

  • Act as the primary subject matter expert for security and compliance inquiries, including security questionnaires, RFPs, and M&A due diligence.
  • Build and maintain a knowledge base to support accurate and efficient responses to partners and clients.
  • Own certification lifecycles end to end, including ISO 27001 and Cyber Essentials, and maintain year-round audit readiness.
  • Lead external audits and manage certification processes from start to finish.
  • Work with the GRC team to improve programs and keep control-to-process mappings robust and scalable.
  • Partner with the Quality Assurance & Regulatory Affairs team to align security frameworks with medical device compliance and AI Act requirements.
  • Collaborate with product teams on current and future initiatives to ensure security-by-design.
  • Work with Security, Product, Engineering, and IT teams to integrate security controls into workflows with minimal operational friction.
  • Provide subject matter expertise and support for security and compliance training and other GRC initiatives as needed.

Requirements

  • 5+ years of hands-on experience in GRC, with a track record of leading audits and maintaining internationally recognized security certifications.
  • Hands-on experience with at least three frameworks or standards, such as ISO 27001, SOC 2, HITRUST, NIS2, Cyber Resilience Act, FedRAMP, CMMC, NIST SP 800-171, NIST SP 800-53, GDPR, HIPAA, or PCI DSS.
  • Exceptional written and spoken English, with the ability to communicate complex security concepts clearly and authoritatively.
  • Strong understanding of how security controls apply to infrastructure and product environments, including mapping requirements to technical work instructions.
  • Ability to quickly learn new products or initiatives and define the appropriate compliance path forward.
  • Familiarity with the intersection of cybersecurity and privacy/regulatory frameworks, such as GDPR, AI Act, or medical device regulations.
  • Familiarity with medical device certifications and regulations, such as ISO 13485 and FDA Good Manufacturing Practices (GMP).
  • Proven experience using LLMs to speed up personal GRC workflows.
  • Strong plus: experience designing and implementing AI-driven automations or integrated workflows that replace manual processes and improve team productivity.
  • Experience working across teams such as Legal, Quality, and IT to align on compliance goals.
  • Must be based in Portugal and hold a valid EU visa; relocation assistance is not provided.

Benefits

  • Competitive salary with a total compensation range of €35,000 - €70,000 a year, including base, variable, and equity.
  • Health, dental, and vision insurance.
  • Meal allowance.
  • Equity shares / stock options.
  • Remote work allowance and work-from-home support.
  • Flexible working hours and a remote or hybrid work policy.
  • Discretionary vacation / unlimited vacation.
  • Access to a health and well-being program, including digital therapist sessions.
  • Snacks and beverages.
  • English classes.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Compliance Analyst

Binance 5K-10K Capital Markets

Binance is seeking a Compliance Analyst in Almaty to support legal and compliance operations for its global crypto business, with a focus on AML/CFT, customer due diligence, and regulatory reviews.

Blockchain
1 hour, 25 minutes ago

MLRO - UK

Binance 5K-10K Capital Markets

Binance is hiring a UK-based MLRO to oversee its AML, financial crime, and cryptoasset financial promotions compliance for a remote legal and compliance function.

Blockchain
1 hour, 40 minutes ago

Director, Compliance Officer

Foodsmart 51-250 Health Care Providers & Services

Foodsmart is hiring a remote Director, Compliance Officer to lead and scale compliance, privacy, and regulatory oversight for its healthcare and Medicaid-focused operations.

HIPAA
1 hour, 40 minutes ago

Senior Compliance Consultant

Planet Technologies 251-1K Internet Software & Services

Planet Technologies is seeking a Senior Compliance Consultant to support public-sector compliance projects by developing, assessing, and advising on compliance solutions for customer environments.

Azure HIPAA
2 hours, 10 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers