Lead the GRC function, developing and implementing enterprise-wide governance, risk management, and compliance frameworks that align with healthcare regulations (HIPAA, HITRUST, CMS, ACA, Medicare, Medicaid, PCI-DSS, SOC, NIST, MARS-E, and others).
Maintain oversight and optimization of GRC platforms and tools (e.g., AuditBoard), driving automation and workflow improvement.
Serve as the subject-matter authority for evolving regulatory requirements, business continuity planning, enterprise risk management, and third-party/vendor risk.
Oversee internal and external audits, responding to client, regulatory, and operational reviews, ensuring timely and effective resolution and communication.
Translate compliance requirements into organizational policies, reporting structures, and training programs that foster a culture of risk awareness and accountability.
Establish and manage the Project Management Office as a center of excellence, developing scalable frameworks, standards, and tools supporting a hybrid (Agile, Waterfall, Lean/Six Sigma) methodology environment.
Oversee intake, prioritization, resource allocation, and delivery of the enterprise project portfolio—ensuring projects meet timelines, budgets, and business objectives.
Apply risk-based thinking and GRC insight to project selection, resource planning, and execution, ensuring alignment with overall business strategy.
Mentor and lead project management staff, coach on effective project lifecycle management, risk tracking, and successful delivery practices.
Collaborate with executive sponsors and cross-functional stakeholders to communicate project status, risk mitigation measures, and value delivery transparently and persuasively.
Champion process improvement and innovation leveraging industry best practices and new technologies.
Build and lead high-performing, multidisciplinary GRC and PMO teams—providing direct mentorship, fostering talent development, and succession planning.
Promote an inclusive, collaborative, and high-accountability culture that values compliance excellence, continuous learning, and operational agility.
Advise and present to executive leadership and the Board on GRC and project management trends, risk analysis, KPIs, and strategic initiatives.
Engage in recruiting, hiring, and developing staff whose skills align with the company’s mission and values.
Requirements
Bachelor’s degree in Business, Law, Risk Management, Healthcare Administration, Computer Science, or related field.
10+ years of progressively responsible experience in governance, risk, compliance, and audit leadership, ideally within healthcare or health tech.
7+ years of experience of general project management experience such as leading compliance audits, vendor reviews, BCP Plans, etc.
Experience developing and administering GRC technology platforms (preferably AuditBoard) and enterprise project management tools (e.g., PPM, MS Project, SharePoint).
Management experience in regulated industries, collaborating with senior leadership and Boards on risk and project oversight.
Required: Certified Governance, Risk and Compliance Professional (GRCP)
Preferred: Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Agile Certified Practitioner (PMI-ACP) or Certified ScrumMaster (CSM), Lean Six Sigma Green Belt (or higher), Project Management Professional (PMP), Portfolio Management Professional (PfMP) or Program Management Professional (PgMP), Certified SAFe® Agilist or equivalent Agile framework certification, ITIL Foundation (for significant IT project environments), Prosci Certified Change Practitioner (or similar change management credential)
Benefits
For this position we offer a base pay of $180,000 - $200,000 plus equity (when applicable), variable/incentive compensation, and benefits.
Work from your home company with a one-time home office stipend
Comprehensive benefits package that includes health, vision and dental coverage for you, your spouse and dependents
Additional benefits, including a monthly wellness stipend and internet stipend, 401K w/ a match; immediately vested, employee assistance program, disability/life insurance, and parental leave
15 days to discretionary PTO based on YOS
9 additional paid holidays
Referral bonuses, discretionary bonus program, spot bonuses and professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Certified Governance, Risk and Compliance Professional (GRCP)Certified Information Systems Auditor (CISA)Certified in Risk and Information Systems Control (CRISC)Agile Certified Practitioner (PMI-ACP)Certified ScrumMaster (CSM)Lean Six Sigma Green BeltProject Management Professional (PMP)Portfolio Management Professional (PfMP)Program Management Professional (PgMP)ITIL Foundation