Compliance Program Lead: SOC 2, HIPAA & ISO 27001

Relaypro

Raleigh (NC)

On-site

USD 110,000 - 150,000

Full time

8 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Health, dental, and vision insurance
401(k) with company match
Generous PTO
Parental leave

Job summary

Relay is seeking a Compliance Manager to own our end-to-end compliance program, reporting to IT & Security leadership and partnering with cross-functional teams. You will manage the active certification portfolio (SOC 2 Type II, HIPAA, ISO 27001:2022, PCI DSS) and serve as the Drata subject matter expert.

This ownership role requires driving the certification calendar, control library, policy lifecycle, and vendor risk, while collaborating with department leaders to meet deadlines with

Qualifications

  • A degree in Computer Science, IT, or a security-related discipline, or equivalent certifications.
  • 5+ years in information security compliance, GRC, or audit with 2+ years managing certification programs.
  • Hands-on SOC 2 Type II audits end-to-end, including auditor management and remediation.
  • Knowledge of HIPAA security requirements, ISO 27001:2022, and PCI DSS.
  • Expertise with Drata or similar GRC platforms and auditor collaboration workflows.
  • Strong interpersonal and organizational skills; ability to drive cross‑functional execution.

Responsibilities

  • Own Relay's compliance certification portfolio end-to-end, including schedule and on-time completion.
  • Serve as Drata subject matter expert; map controls and manage evidence workflows.
  • Coordinate external auditors within Drata; manage fieldwork and remediation.
  • Run internal audit program; test controls and track findings to remediation.
  • Own policy management lifecycle and third-party vendor risk program.
  • Partner with department leaders to assign compliance responsibilities and timelines.
  • Support customer trust activities and security questionnaires.
  • Report posture, audit status, and metrics to security leadership.

Skills

Information Security
GRC
Audit management
Policy management
Vendor risk management
Communication skills
Project management

Education

Bachelor’s degree in Computer Science or security-related discipline
CRISC, CGRC, GRCP, CISM, or CISA certifications

Tools

Drata
Vanta
Secureframe
Hyperproof

Job description

Relay is seeking a Compliance Manager to own our end-to-end compliance program, reporting to IT & Security leadership and partnering with cross-functional teams. You will manage the active certification portfolio (SOC 2 Type II, HIPAA, ISO 27001:2022, PCI DSS) and serve as the Drata subject matter expert.

This ownership role requires driving the certification calendar, control library, policy lifecycle, and vendor risk, while collaborating with department leaders to meet deadlines with

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Compliance Program Lead: SOC 2, HIPAA & ISO 27001
Compliance Program Lead: SOC 2, HIPAA & ISO 27001

Relay • Raleigh (NC)

On-site
USD 110,000 - 140,000
100% Paid Insurance: Health, Dental, V
Paid Time Off
401(k) Matching
+2
Security & Compliance Lead: HIPAA & SOC 2 Expert
Security & Compliance Lead: HIPAA & SOC 2 Expert

Prompt • United States

Hybrid
USD 180,000 - 280,000
Competitive salaries
Remote/hybrid environment
Equity potential
+10
Security Compliance Program Lead
Security Compliance Program Lead

Centralreach-8 • Holmdel Township (NJ)

Hybrid
USD 100,000 - 120,000
Health benefits
401(k) matching
Paid parental leave
+1
Compliance & Audit Manager
Compliance & Audit Manager

Asprcmsolutions • Dallas (TX), Northern (KY)

Hybrid
USD 110,000 - 160,000
Senior Compliance & Risk Lead - HIPAA, SOC 2, Audit Ready
Senior Compliance & Risk Lead - HIPAA, SOC 2, Audit Ready

Socket.dev • Oklahoma

On-site
USD 90,000 - 130,000
Senior Compliance & Audit Lead — SOC 2, ISO 27001, HIPAA
Senior Compliance & Audit Lead — SOC 2, ISO 27001, HIPAA

Asprcmsolutions • Dallas (TX), Northern (KY)

Hybrid
USD 110,000 - 160,000
Remote Technology Compliance Lead (SOC 2, ISO 27001)
Remote Technology Compliance Lead (SOC 2, ISO 27001)

Electric Power Engineers, LLC • Austin (TX), Northern (KY)

Hybrid
USD 120,000 - 180,000
Health benefits
Generous PTO
Employee ownership
+1
Senior Compliance Leader — HIPAA, SOC 2 & HiTRUST
Senior Compliance Leader — HIPAA, SOC 2 & HiTRUST

Brado AI • United States

On-site
USD 180,000 - 280,000
Compliance Practice Lead - SOC 2, ISO 27001 & PCI
Compliance Practice Lead - SOC 2, ISO 27001 & PCI

New Charter Technologies • United States

Hybrid
USD 99,000 - 121,000
Security Compliance Program Lead - Hybrid, PTO & 401(k)
Security Compliance Program Lead - Hybrid, PTO & 401(k)

CentralReach • Holmdel Township (NJ)

Hybrid
USD 100,000 - 120,000
Health benefits
Paid time off
401(k) matching
+2