Security & Compliance Lead: HIPAA & SOC 2 Expert

Prompt

United States

Hybrid

USD 180,000 - 280,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Competitive salaries
Remote/hybrid environment
Equity potential
Flexible PTO
Sponsored lunches
Insurance benefits
Family and medical leave
Health, dental, vision
Pet insurance discounts
Commuter benefits
401k
Gym/fitness credits
HQ recovery suite

Job summary

Prompt is seeking a hands-on Senior Director, Security & Compliance to lead the company’s HIPAA/HITECH compliance and enterprise information security program. You will own risk management, policy governance, and certifications while partnering with Legal, Engineering, IT, and Product to implement technical controls.

The role demands deep healthcare compliance expertise, strong risk judgment, and the ability to translate complex issues into business impact.

Qualifications

  • 8+ years of experience in compliance, information security, risk management, or related disciplines with leadership responsibilities.
  • Deep practical knowledge of HIPAA/HITECH and healthcare compliance requirements.
  • Experience leading SOC 2 Type II or comparable certification programs.
  • Experience building governance, control environments, audit readiness, and cross-functional accountability.
  • Knowledge of cloud security, SaaS architecture, IAM, vulnerability management, and secure SDLC.

Responsibilities

  • Serve as Compliance Officer and HIPAA Security Officer.
  • Own HIPAA/HITECH compliance, risk analysis, risk-management plan, and safeguards.
  • Oversee SOC 2 Type II and other certifications, audits, attestations, and remediation.
  • Own policy framework, development, approval, and governance.
  • Establish clear ownership for controls and remediation tracking across the org.
  • Collaborate with Engineering, DevOps, IT, and Legal to align security with business needs.
  • Manage incident-response framework with Legal and Technical teams.
  • Lead third-party risk management, audits, RFPs/RFIs and security escalations.
  • Govern emerging technologies governance for sensitive data usage.
  • Continuously improve the operating model for compliance and security.

Skills

HIPAA/HITECH
SOC 2 Type II
Cloud security
IAM
Vulnerability management
Endpoint security
Secure SDLC
SaaS architecture
Governance
Executive communication
Cross-functional leadership

Education

CISSP
CISM
CRISC
CISA
CHC

Tools

Policy framework tooling

Job description

Prompt is seeking a hands-on Senior Director, Security & Compliance to lead the company’s HIPAA/HITECH compliance and enterprise information security program. You will own risk management, policy governance, and certifications while partnering with Legal, Engineering, IT, and Product to implement technical controls.

The role demands deep healthcare compliance expertise, strong risk judgment, and the ability to translate complex issues into business impact.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Director of IT & Security: HIPAA & SOC2 Leader
Director of IT & Security: HIPAA & SOC2 Leader

Praxis, Inc. • Dallas (TX)

Hybrid
USD 150,000 - 230,000
Unlimited vacation
401(k) with 4% match
Two Texas offices
+4
Security & Compliance Lead — HIPAA, SOC2, Equity & PTO
Security & Compliance Lead — HIPAA, SOC2, Equity & PTO

Clinically AI • San Diego (CA)

On-site
USD 110,000 - 165,000
Healthcare coverage
Unlimited PTO
401(k) with company match
+1
Director of IT & Information Security (HIPAA/SOC 2)
Director of IT & Information Security (HIPAA/SOC 2)

Take Command Health • Dallas (TX)

Hybrid
USD 210,000 - 290,000
ICHRA health benefits
Unlimited vacation
401(k) with 4% match
Head of Security - Hands-On Leader for HIPAA & SOC 2
Head of Security - Hands-On Leader for HIPAA & SOC 2

Verse Medical • New York (NY)

Hybrid
USD 150,000 - 190,000
Senior GRC Manager: Lead Practical HIPAA & SOC2 Compliance
Senior GRC Manager: Lead Practical HIPAA & SOC2 Compliance

Harris Computer • Maine

On-site
USD 130,000 - 150,000
We empower our employees to make a差 a
We have an award‑winning culture
We offer opportunity to learn
+2
Security Compliance Program Lead
Security Compliance Program Lead

Centralreach-8 • Holmdel Township (NJ)

Hybrid
USD 100,000 - 120,000
Health benefits
401(k) matching
Paid parental leave
+1
Healthcare IT Security & Compliance Lead (HIPAA & AI)
Healthcare IT Security & Compliance Lead (HIPAA & AI)

Premium Health Center • New York (NY)

Hybrid
USD 140,000 - 210,000
Paid time off
Medical, dental, and vision plans
Retirement plans
+1
HIPAA, SOC 2 & HiTrust Compliance Leader
HIPAA, SOC 2 & HiTrust Compliance Leader

Brado AI • St. Louis (MO)

On-site
USD 150,000 - 230,000
Security & Compliance Lead - SOC 2, ISO 27001, HIPAA-ready
Security & Compliance Lead - SOC 2, ISO 27001, HIPAA-ready

iFrame Corporation • San Francisco (CA)

Remote
USD 240,000 - 310,000
Senior GRC Manager - HIPAA, SOC 2 & Audit Leader
Senior GRC Manager - HIPAA, SOC 2 & Audit Leader

Harris Computer • Maryland

On-site
USD 130,000 - 150,000
Full benefits package
3 weeks vacation + 5 personal days
Employee stock ownership and RRSP
+1