Compliance Associate

United StatesUnited States·Pleasant Grovemid
OtherCompliance Associate
3 views0 saves0 applied

Quick Summary

Key Responsibilities

You'll own day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks.

Technical Tools
OtherCompliance Associate

Responsibilities

~2 min read

You'll own day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks. This role involves meaningful task execution and decision-making responsibility as you demonstrate sound judgment and knowledge. If you're motivated by learning, problem solving, and you like to take initiative, this is a role where you can grow in your practical experience. If you're hungry to understand how corporate compliance works in real business situations, not just memorize the frameworks, this role is for you. A candidate will feel successful in this role if they are a self- starter that can work efficiently, open to continuous improvement efforts, accountable, and a friendly team player. This position will report to our Director of Security & Compliance.

  • →Flexible Paid Time Off + 10 company-wide paid holidays
  • →Competitive Medical, Dental & vision offerings, with buy up plan options, AND we match your HSA contributions.
  • →Fully Paid Parental Leave
  • →401K Retirement savings plan with company match up to 5.5% of your earnings+ unlimited access to personal financial advisors.
  • →Learning & Development Reimbursement program
  • →Company paid Life, Disability & AD&D
  • →Mental Health support programs, Cellphone & Gym membership Discounts, Corporate Sundance Passes, and more!


Please Note: All offers of employment are contingent upon successful completion of a background check, which may include verification of education, employment history, and other credentials. By applying, you confirm that all information you have provided is accurate and complete to the best of your knowledge, and you understand that misrepresentation may result in disqualification or termination.

This position is located in Pleasant Grove, UT with a hybrid schedule offering.

  • Compliance Program Execution & Documentation
    • Assist in building and documenting the elements of an effective compliance program.
    • Coordinate the documentation of evidence across all frameworks using Drata; organize and maintain the compliance evidence library; ensure framework readiness on a continual basis through active monitoring.
    • Conduct periodic compliance assessments/audits; document findings and remediation
    • Maintain written policies and procedures; coordinate updates when regulations or business processes change
    • Prepare compliance reports and summaries for internal stakeholders and external auditors
    • Support external audits through administrative means, documentation requests, and interviews
    • Communicate effectively with cross-functional employees, contractors, vendors, etc.
    • Confirm customers meet Know Your Customer (KYC) requirements.
  • Compliance Case Management & Communications
    • Triage all incoming reports, concerns, or requests for guidance.
    • Investigate incidents (determine scope for affected records, exposure window, data involved, customer, product, etc.) and document all findings.
    • Manage the investigation to include requesting assistance from other departments, ensuring the investigation stays on track for resolution to ensure timely handling of all reports of potential compliance concerns.
    • Monitor and respond to the Compliance e-mail inbox to ensure all communications are handled appropriately
  • Third Party & Vendor Management
    • Coordinate HIPAA Business Associate Agreement (BAA) setup, review, and signature process with the Director
    • Maintain updated vendor list and coordinate documentation reviews
    • Assess new vendors for compliance risk; determine if a BAA is required.
    • Conduct ongoing assessments related to processing of patient health information (PHI) and payments data
  • Privacy Requests
    • Triage privacy rights requests (i.e. SARs, deletion requests, opt-out requests)
    • Verify requester identity; assess and document scope of request
    • Coordinate with cross-functional teams to locate and compile response data
    • Track privacy request status and ensure fulfillment within timelines
    • Maintain record of all privacy requests and responses
  • Training & Awareness
    • Develop and deliver new hire, annual, and intermittent compliance training and awareness programs
    • Track training completion and maintain training records for audit purposes
    • Promote a culture of compliance, security, and privacy awareness across the organization
    • Assess training and awareness activity effectiveness for process improvement.
  • Regulatory Monitoring & Cross-Functional Support
    • Monitor HHS, state AG, and industry updates relevant to DI's compliance obligations to remain abreast of changes
    • Provide timely support to various departments and employees when compliance questions arise
    • Explain HIPAA, PCI, and Privacy requirements with appropriate business context

Location & Eligibility

Where is the job
Pleasant Grove, United States
On-site at the office
Who can apply
US

Listing Details

First seen
October 3, 2026
Last seen
October 3, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
57%
Scored at
October 3, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

Compliance Associate