HIPAA Lead Security Specialist (12 months contract)

Remote Full-time
About the position Flo is the world’s #1 health & fitness app worldwide on a mission to build a better future for female health. Backed by a $200M investment led by General Atlantic, we became the first product of our kind to reach a $1B valuation in 2024 – and we’re not slowing down. With 6M paid subscribers and the highest-rated experience in the App Store’s health category, we’ve spent 10 years earning trust at scale. Now, we’re building the next generation of digital health – AI-powered, privacy-first, clinically backed – to help our users know their body better. As a key member of Flo’s Security Architecture team, you will lead the design and operation of our US Healthcare security controls. You will own the roadmap for HIPAA compliance and SOC2 Type II certification, partnering with Engineering and Legal to build a secure, compliant platform for millions of users. Responsibilities • Compliance Leadership: Lead annual SOC 2 and HIPAA certifications, managing interfaces with external auditors and professional services. • Policy & Risk: Define and maintain security policies; embed risk assessment activities within engineering processes and vendor management. • Operational Excellence: Partner with control owners to automate evidence gathering and ensure controls reduce friction rather than creating it. • Stakeholder Management: Serve as the primary Security POC for US regulators and partners; support the wider Security team with ISO 27001/27701 alignment. • Tooling: Manage and integrate GRC platforms to streamline compliance monitoring and reporting. Requirements • Experience: 7+ years in security/compliance (3+ in leadership), with a Bachelor’s degree in a related field. • Core Skills: Deep expertise in SOC 2 and HIPAA frameworks within a Cloud-based SaaS environment. • Technical Knowledge: Familiarity with PHI handling, GRC platforms, and compliance automation. • Soft Skills: Strong ability to translate complex compliance requirements into clear actions for engineering teams. Nice-to-haves • CISA/CISSP certifications; experience with NIST, HiTrust, Docker/Kubernetes, and DevSecOps. Benefits • Competitive salary and annual reviews • Opportunity to participate in Flo’s performance incentive scheme • Paid holiday, sick leave, and female health leave • Enhanced parental leave and pay for maternity, paternity, same-sex and adoptive parents • Accelerated professional growth through world-changing work and learning support • Flexible office + home working, up to 2 months a year working abroad • 5-week fully paid sabbatical at 5-year Floversary • Flo Premium for friends & family, plus more health, pension and wellbeing perks Apply tot his job
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

[Remote] Engineering Leader – AI & Machine Learning Operations (AIOps)

Remote Full-time

Experienced Remote Work Consultant - Empowering Job Seekers in the Evolving Landscape of Remote Work Opportunities

Remote Full-time

Experienced Remote Customer Service and Technical Support Representative – Delivering Exceptional Customer Experiences through Innovative Solutions and Technical Expertise

Remote Full-time

Advisor, Wealth Management and Retirement Plans

Remote Full-time

Experienced Content Moderator and Operations Business Associate - Full-Time Remote Work Opportunity with Wayfair

Remote Full-time

ERP Implementation PM (D365 F&O / SCM) (429556)

Remote Full-time

SOC Analyst Tier 1 3rd Shift IN HOUSE

Remote Full-time

Part-time Remote Data Entry Clerk - Accurate Data Management for blithequark

Remote Full-time

[Remote] Senior SEO Consultant

Remote Full-time

**Experienced Part-Time Remote Data Entry Specialist – Join Delta Airlines' Innovative Team and Shape the Future of Air Travel**

Remote Full-time
← Back to Home