$161,500 – $209,000
Listed on Virta Health’s own careers site. You apply with them directly — we never stand between you and the employer.
What this role is
Lead governance, risk, and compliance operations at a digital health company, automating security frameworks like HIPAA and HITRUST while partnering with sales teams on customer evaluations. This role suits experienced compliance professionals ready to scale GRC automation in a healthcare setting and influence cross-functional teams on security priorities.
Our summary, not Virta Health’s wording. The full posting is on their site.
What they ask for
Required
- 7+ years in cybersecurity GRC, IT auditing, or information security compliance
- 2+ years leading programs or managing teams in regulated environments such as healthcare
- Direct experience managing and maintaining HITRUST CSF, HIPAA, and SOC 2 frameworks
- Proven use of SaaS GRC automation platforms like Vanta or Drata
- Strong client-facing communication skills for enterprise security evaluations and RFP processes
- Experience designing AI-enabled workflows to improve team efficiency
- Ability to balance risk tolerance, operational efficiency, and regulatory requirements
- Cross-functional leadership skills with technical and non-technical stakeholders
Nice to have
- Background in digital health specifically