Medicom Technologies Inc. Logo

Medicom Technologies Inc.

Director of Legal, Risk & Compliance

Posted 4 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United States
150K-180K Annually
Senior level
Remote
Hiring Remotely in United States
150K-180K Annually
Senior level
Lead Medicom's information security and compliance programs, ensuring adherence to regulatory standards like HIPAA and SOC 2, while managing risks and contractual obligations.
The summary above was generated by AI

About Medicom

Medicom is a leading enterprise imaging software company that solves longstanding interoperability challenges for clinicians, staff, patients, and researchers. Its core platform, Connect, supports diverse enterprise imaging interoperability use cases. These include access to prior and unread imaging studies, point-of-care workflows, patient access to images, orders, and results workflows for teleradiology, telestroke, and trauma, and cross-institution sharing of digital imaging. Medicom's Network is adopted by over 1,000 US healthcare institutions and backed by leading venture capital firms, such as UPMC Enterprises. Data and insights from the Medicom Connect network drive Medicom's Intellect offering, which helps clinicians and researchers advance patient care and develop new therapies.

About the role

Medicom is seeking a Director of Legal, Risk & Compliance (GRC) to lead the Company’s information security, regulatory compliance, and contractual risk management programs. As a healthcare data company, Medicom must meet the highest standards for data protection while supporting rapid product development and enterprise growth.


This role will own Medicom’s security and compliance frameworks (HIPAA, HITRUST, SOC 2, GDPR, FedRAMP readiness) while also serving as the primary reviewer of customer contractual obligations. The Director will partner closely with Engineering, Sales, Legal, and executive leadership to ensure security, compliance, and legal commitments are aligned and operationally achievable.


What you'll do

  • Own and lead Medicom’s information security and compliance programs, ensuring adherence to HIPAA, HITRUST, SOC 2, GDPR, and evolving regulatory standards.
  • Define, document, and continuously improve the company’s security control framework and risk management processes.
  • Leadership sponsor for SOC 2 audits and other certification efforts, coordinating with third-party auditors and internal stakeholders.
  • Prepare the organization for advanced frameworks and certifications, including FedRAMP readiness.
  • Serve as chair of the Confidentiality & Security Team (CST), including meeting leadership and agenda setting.
  • Review and assess customer MSAs, BAAs, and ISAs to ensure alignment with Medicom’s security controls and compliance posture.
  • Partner with Sales and Legal during enterprise negotiations to balance commercial objectives with risk mitigation.
  • Ensure ongoing compliance with contractual obligations, federal and state regulations, and customer procurement policies.
  • Coordinate with external counsel as appropriate regarding legal contracts and compliance matters.
  • Partner closely with Engineering to embed security and compliance requirements into product design and architecture.
  • Act as a trusted advisor across the organization on security, compliance, and risk-related matters.

Qualifications

  • 8–12+ years of experience in information security, governance, compliance, and legal within healthcare, health tech, or SaaS environments.
  • CISSP strongly preferred (or equivalent advanced security certification).
  • Deep working knowledge of HIPAA, SOC 2, HITRUST, GDPR, CCPA; FedRAMP experience strongly preferred.
  • Experience leading audits, certifications, and regulatory assessments.
  • Demonstrated experience reviewing and negotiating contractual language (MSAs, BAAs, DPAs, ISAs).
  • Strong communication skills and ability to influence cross-functional stakeholders.


Equal Opportunity Employer Statement

Medicom Technologies is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or protected veteran status.


Reasonable Accommodation Notice

If you require a reasonable accommodation in the application process, please contact [email protected] to discuss your needs.

Top Skills

Fedramp
Gdpr
Hipaa
Hitrust
Soc 2

Similar Jobs

An Hour Ago
Remote or Hybrid
New York, NY, USA
166K-207K Annually
Senior level
166K-207K Annually
Senior level
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
The Regional Director of Sales will lead a team of Enterprise Expansion Account Executives to drive growth and manage strategic sales initiatives across their territory, focusing on customer engagement and revenue generation.
Top Skills: Salesforce
An Hour Ago
Remote or Hybrid
Denver, CO, USA
90K-90K Annually
Entry level
90K-90K Annually
Entry level
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
The Sales Development Representative identifies and qualifies sales opportunities for APM software, partners with field sales, and conducts research to generate qualified leads.
Top Skills: Salesforce
An Hour Ago
Remote or Hybrid
Minneapolis, MN, USA
149K-186K Annually
Senior level
149K-186K Annually
Senior level
Artificial Intelligence • Big Data • Cloud • Information Technology • Software • Big Data Analytics • Automation
As a Strategic Enterprise Account Executive, you will manage enterprise-level accounts, focusing on sales growth and executive-level engagement while leveraging Dynatrace's APM solutions to drive revenue.
Top Skills: ApmObservabilitySales Technology

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account