Quick Summary
You'll own day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks.
Responsibilities
~2 min readYou'll own day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks. This role involves meaningful task execution and decision-making responsibility as you demonstrate sound judgment and knowledge. If you're motivated by learning, problem solving, and you like to take initiative, this is a role where you can grow in your practical experience. If you're hungry to understand how corporate compliance works in real business situations, not just memorize the frameworks, this role is for you. A candidate will feel successful in this role if they are a self- starter that can work efficiently, open to continuous improvement efforts, accountable, and a friendly team player. This position will report to our Director of Security & Compliance.
- →Flexible Paid Time Off + 10 company-wide paid holidays
- →Competitive Medical, Dental & vision offerings, with buy up plan options, AND we match your HSA contributions.
- →Fully Paid Parental Leave
- →401K Retirement savings plan with company match up to 5.5% of your earnings+ unlimited access to personal financial advisors.
- →Learning & Development Reimbursement program
- →Company paid Life, Disability & AD&D
- →Mental Health support programs, Cellphone & Gym membership Discounts, Corporate Sundance Passes, and more!
Please Note: All offers of employment are contingent upon successful completion of a background check, which may include verification of education, employment history, and other credentials. By applying, you confirm that all information you have provided is accurate and complete to the best of your knowledge, and you understand that misrepresentation may result in disqualification or termination.
This position is located in Pleasant Grove, UT with a hybrid schedule offering.
- Compliance Program Execution & Documentation
- Assist in building and documenting the elements of an effective compliance program.
- Coordinate the documentation of evidence across all frameworks using Drata; organize and maintain the compliance evidence library; ensure framework readiness on a continual basis through active monitoring.
- Conduct periodic compliance assessments/audits; document findings and remediation
- Maintain written policies and procedures; coordinate updates when regulations or business processes change
- Prepare compliance reports and summaries for internal stakeholders and external auditors
- Support external audits through administrative means, documentation requests, and interviews
- Communicate effectively with cross-functional employees, contractors, vendors, etc.
- Confirm customers meet Know Your Customer (KYC) requirements.
- Compliance Case Management & Communications
- Triage all incoming reports, concerns, or requests for guidance.
- Investigate incidents (determine scope for affected records, exposure window, data involved, customer, product, etc.) and document all findings.
- Manage the investigation to include requesting assistance from other departments, ensuring the investigation stays on track for resolution to ensure timely handling of all reports of potential compliance concerns.
- Monitor and respond to the Compliance e-mail inbox to ensure all communications are handled appropriately
- Third Party & Vendor Management
- Coordinate HIPAA Business Associate Agreement (BAA) setup, review, and signature process with the Director
- Maintain updated vendor list and coordinate documentation reviews
- Assess new vendors for compliance risk; determine if a BAA is required.
- Conduct ongoing assessments related to processing of patient health information (PHI) and payments data
- Privacy Requests
- Triage privacy rights requests (i.e. SARs, deletion requests, opt-out requests)
- Verify requester identity; assess and document scope of request
- Coordinate with cross-functional teams to locate and compile response data
- Track privacy request status and ensure fulfillment within timelines
- Maintain record of all privacy requests and responses
- Training & Awareness
- Develop and deliver new hire, annual, and intermittent compliance training and awareness programs
- Track training completion and maintain training records for audit purposes
- Promote a culture of compliance, security, and privacy awareness across the organization
- Assess training and awareness activity effectiveness for process improvement.
- Regulatory Monitoring & Cross-Functional Support
- Monitor HHS, state AG, and industry updates relevant to DI's compliance obligations to remain abreast of changes
- Provide timely support to various departments and employees when compliance questions arise
- Explain HIPAA, PCI, and Privacy requirements with appropriate business context
Location & Eligibility
Listing Details
- First seen
- October 3, 2026
- Last seen
- October 3, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 57%
- Scored at
- October 3, 2026
Signal breakdown
Browse Similar Jobs
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
No spam. Unsubscribe at any time.