[Hiring] Director of Legal, Risk & Compliance @Medicom Group

Remote Full-time
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more.

Role Description

Medicom is seeking a Director of Legal, Risk & Compliance (GRC) to lead the Company’s information security, regulatory compliance, and contractual risk management programs. As a healthcare data company, Medicom must meet the highest standards for data protection while supporting rapid product development and enterprise growth.

This role will own Medicom’s security and compliance frameworks (HIPAA, HITRUST, SOC 2, GDPR, FedRAMP readiness) while also serving as the primary reviewer of customer contractual obligations. The Director will partner closely with Engineering, Sales, Legal, and executive leadership to ensure security, compliance, and legal commitments are aligned and operationally achievable.
• Own and lead Medicom’s information security and compliance programs, ensuring adherence to HIPAA, HITRUST, SOC 2, GDPR, and evolving regulatory standards.
• Define, document, and continuously improve the company’s security control framework and risk management processes.
• Leadership sponsor for SOC 2 audits and other certification efforts, coordinating with third-party auditors and internal stakeholders.
• Prepare the organization for advanced frameworks and certifications, including FedRAMP readiness.
• Serve as chair of the Confidentiality & Security Team (CST), including meeting leadership and agenda setting.
• Review and assess customer MSAs, BAAs, and ISAs to ensure alignment with Medicom’s security controls and compliance posture.
• Partner with Sales and Legal during enterprise negotiations to balance commercial objectives with risk mitigation.
• Ensure ongoing compliance with contractual obligations, federal and state regulations, and customer procurement policies.
• Coordinate with external counsel as appropriate regarding legal contracts and compliance matters.
• Partner closely with Engineering to embed security and compliance requirements into product design and architecture.
• Act as a trusted advisor across the organization on security, compliance, and risk-related matters.

Qualifications
• 8–12+ years of experience in information security, governance, compliance, and legal within healthcare, health tech, or SaaS environments.
• CISSP strongly preferred (or equivalent advanced security certification).
• Deep working knowledge of HIPAA, SOC 2, HITRUST, GDPR, CCPA; FedRAMP experience strongly preferred.
• Experience leading audits, certifications, and regulatory assessments.
• Demonstrated experience reviewing and negotiating contractual language (MSAs, BAAs, DPAs, ISAs).
• Strong communication skills and ability to influence cross-functional stakeholders.

Equal Opportunity Employer Statement

Medicom Technologies is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.

Reasonable Accommodation Notice

If you require a reasonable accommodation in the application process, please contact

[email protected]

to discuss your needs.

Apply Now

Apply Now
Apply Now

Similar Opportunities

Experienced Registered Behavior Technician for In-Home ABA Therapy - Atlanta, GA

Remote Full-time

Immediate Hiring: Experienced Registered Behavioral Technician (RBT) for Clinic-Based ABA Therapy Services

Remote Full-time

Experienced Registered Behavioral Technician (RBT) - ABA Therapy for Children with Autism Spectrum Disorder

Remote Full-time

Experienced Registered Nurse - Telehealth: Providing Remote Care Coordination and Patient Support

Remote Full-time

Experienced Substitute Teacher for Riverside County Schools - Join Scoot Education's Innovative Team

Remote Full-time

Experienced Substitute Teacher for San Bernardino County - Flexible Schedules & Competitive Pay

Remote Full-time

Experienced School Year Instructional Coach for High-Dosage Tutoring Programs in Edgewater Park, NJ

Remote Full-time

Experienced School Year Tutor for K-8 Students in Math and Literacy - Mickleton, NJ

Remote Full-time

Experienced Secondary Social Studies Teacher for Kansas - Flexible Hybrid Remote Arrangement

Remote Full-time

USPS Office Helper

Remote Full-time

US Marketing Manager

Remote Full-time

Experienced Remote Data Entry Specialist – Aviation Industry Leader in Customer Service and Innovation

Remote Full-time

Experienced Bilingual Live Chat Representative – Delivering Exceptional Customer Support and Driving Client Satisfaction

Remote Full-time

Transaction Risk Investigator

Remote Full-time

Senior Visual Designer-Healthcare Agency-Contract

Remote Full-time

Immediate Hiring: Revenue Operations, Back Office Support

Remote Full-time

Facilities Manager (Midwest Region)

Remote Full-time

Remote Live Chat Customer Support Specialist – Full/Part‑Time – $70,000 Annual Salary – arenaflex Streaming Services

Remote Full-time

Auditor (Finance) – Associate

Remote Full-time

Senior Manager / Manager, Business Analytics & Planning (Customer Experience) – Strategic Leader in Data-Driven Decision Making for Enhanced Customer Experience at blithequark

Remote Full-time
← Back to Home