Opala

Connecting data flow across healthcare so that every patient's experience is optimized.

Security and Compliance Manager

Security EngineerSecurity EngineerFull TimeRemoteTeam 11-50H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

112 days ago

Salary

$124K - $145K / year

Bachelor Degree6 yrs expEnglishCloud

Job Description

• Own and maintain the company’s Information Security Management System (ISMS) • Lead annual and recurring compliance certifications (SOC 2, HIPAA, HITRUST) • Respond to customer security questionnaires and due diligence requests • Oversee vendor risk management, including contracts, reviews, and security posture assessments • Manage MSP performance (IT and SOC/MDR) and ensure evidence feeds align with audit requirements • Mentor and guide other Engineers and Stakeholders in evidence collection, reporting, and process maturity • Define, implement, and maintain security policies, standards, and procedures • Serve as the main point of contact for auditors, regulators, and external security partners • Report compliance and risk posture to leadership and the board

Job Requirements

  • Bachelor’s degree in information security, risk management, or related field (or equivalent experience)
  • 6+ years of experience in security, compliance, or risk management roles, with 3+ years in a leadership capacity
  • Experience working with SOC 2, HIPAA, and HITRUST frameworks
  • Experience working in a Cloud-based SaaS Platform
  • Familiarity with healthcare data security and PHI handling
  • Experience with Drata's GRC and compliance automation platform
  • Strong organizational skills and ability to manage multiple audit and certification workstreams
  • Excellent written and verbal communication skills, with the ability to translate compliance requirements into clear actions for engineering and business teams
  • Hands-on experience modernizing segregation of duties in a highly regulated environment

Benefits

  • medical, dental, vision, life and AD&D insurance
  • EAP
  • short-term and long-term disability
  • 16 days PTO
  • 8 paid holidays
  • fully paid holiday closure
  • parental and family medical leave
  • 401k
  • stock options
  • annual bonuses and salary increases based on merit

Related Categories

Related Job Pages

More Security Engineer Jobs

Senior Security Engineer, Application Security

1Password

Productive businesses use 1Password to secure employees at scale.

Security Engineer112 days ago
Full TimeRemoteTeam 501-1,000Since 2009H1B Sponsor

Senior Engineer in Application Security at 1Password focusing on vulnerability management

RustGo
United States
$156K - $210K / year

Security Software Engineer, Workforce Security

Netflix

Where you come to do the best work of your life. Follow @WeAreNetflix on Twitter, IG, Facebook, & Youtube for more

Security Engineer112 days ago
Full TimeRemoteTeam 10,001+Since 1997H1B Sponsor

Security Software Engineer developing scalable technical security controls at Netflix

CloudETLJavaScriptNode.jsPythonSQLTypeScript
United States
$100K - $720K / year

Security Software Engineer, Detection Engineering

Netflix

Where you come to do the best work of your life. Follow @WeAreNetflix on Twitter, IG, Facebook, & Youtube for more

Security Engineer112 days ago
Full TimeRemoteTeam 10,001+Since 1997H1B Sponsor

Detection Engineer creating and improving detection frameworks for Netflix's security

AWSCloudJavaSQL
United States
$190K - $920K / year
Full TimeRemoteTeam 5,001-10,000H1B Sponsor

Technical Account Manager II driving customer impact in API Security

CloudCyber Security
United States