Governance, Risk, and Compliance Officer (Part-Time)

Reposted 22 Days Ago
Hiring Remotely in U.S.
Remote or Hybrid
Senior level
Artificial Intelligence • Healthtech • Software
Join Freed to build AI that gives clinicians their time back - so they can focus on care, not paperwork.
The Role
The Governance, Risk, and Compliance (GRC) Officer will own compliance functions, manage audit relationships, vendor compliance, and improve policy governance in a healthcare tech setting.
Summary Generated by Built In
ABOUT FREED:

Doctors are overworked, burnt out, and are quitting in masses.

At Freed, we combine clinician love with the latest AI tech and intense execution to create products that make clinicians happier.

Our first product is an AI scribe that automates medical documentation.

Since May of 2023, we have:

  • Acquired 26,000 paying and loving clinicians

  • Generated 100,000 patient notes daily and over 3 million monthly

  • Made thousands of clinicians happier

With the backing of Sequoia Capital and other world-class VC’s, we are rapidly expanding our product offering. Patient-facing assistants, patient insights, EHR integrations, and other products are being built and used by thousands of clinicians every day.

We are looking for entrepreneurs. Fast, ambitious, and smart individuals who want to take care of the people who care for our health. Expect intense, clinician-focused, and interesting co-workers who want to win.

With an office in San Francisco, we embrace a hybrid schedule that brings out the best in teamwork and innovation. Our teams come together in person three days a week to collaborate, connect, and have a little fun along the way.


ABOUT THE ROLE:

We are hiring a Fractional GRC Manager (part-time, ~20 hrs/week) to build and own our compliance function.

Freed operates in a highly regulated environment (SOC 2 Type 2, HIPAA) with PHI flowing across 150+ vendors. Today, compliance work is fragmented across senior leaders, creating inefficiencies, audit friction, and product delays.

This role will act as the single accountable owner for Governance, Risk, and Compliance, responsible for maintaining audit readiness, unblocking product and vendor workflows, and reducing the compliance burden on engineering and leadership.

This is a hands-on, embedded operator role - not advisory. You will work closely with Finance, Engineering, Infrastructure, Legal, and GTM teams.

HOW YOU'LL HAVE IMPACT:
  • Audit & Certification Ownership

    • Own SOC 2 and HIPAA programs end-to-end

    • Manage auditor relationships and streamline evidence collection

    • Maintain continuous audit readiness via Drata

    • Improve audit efficiency

  • Vendor Compliance & Risk Management

    • Own vendor compliance intake (BAAs, DPAs, security reviews)

    • Build and maintain a centralized vendor registry with PHI exposure mapping

    • Establish fast, repeatable onboarding processes

    • Partner with Engineering on vendor security assessments

  • Policy & Governance

    • Audit and remediate ~30 existing policies with outdated ownership structures

    • Replace “phantom roles” (e.g., Security Officer) with real owners

    • Establish a meaningful policy review cadence

    • Draft new policies (data retention, vendor management, access controls)

  • Compliance Operations

    • Own and operate Drata (controls, evidence, personnel tasks)

    • Manage Trust Center accuracy and external posture

    • Handle customer security questionnaires

    • Support Sales with compliance documentation for enterprise deals

  • Risk & Incident Support

    • Document PHI data flows and system boundaries

    • Support incident response from a compliance perspective

    • Stay current on HIPAA and regulatory developments

WHAT YOU WILL BRING:
  • 5+ years in GRC, security compliance, or related roles (startup experience strongly preferred)

  • Deep experience with SOC 2 and HIPAA (hands-on ownership, not advisory)

  • Strong familiarity with vendor risk management, BAAs, DPAs, and audits

  • Experience with tools like Drata or similar compliance platforms

  • Ability to operate independently in a fractional, high-ownership role

  • Strong judgment - able to make pragmatic tradeoffs, not over-engineer

NICE TO HAVES:
  • Exposure to HITRUST or ISO 27001 frameworks

  • Experience working cross-functionally with Engineering and GTM teams

  • Background in scaling compliance functions from early-stage

WHAT WE WILL BRING:
  • Competitive salary and equity in a high-growth company

  • Opportunity to make an immediate impact

  • Medical, dental, and vision coverage

  • Unlimited paid time off

  • Company-sponsored annual retreats

  • 401(k) plan to support your long-term financial goals

  • Commuter stipend for San Francisco-based employees

Skills Required

  • 5+ years in GRC, security compliance, or related roles
  • Deep experience with SOC 2 and HIPAA
  • Strong familiarity with vendor risk management, BAAs, DPAs, and audits
  • Experience with tools like Drata or similar compliance platforms
  • Ability to operate independently in a fractional, high-ownership role
  • Strong judgment - able to make pragmatic tradeoffs

What the Team is Saying

Karen
Noah
Daniele
Jonathan
Nikita
Darren

Freed Compensation & Benefits Highlights

  • Healthcare Strength Benefits materials emphasize top-tier health, dental, and vision coverage as core offerings. Coverage breadth is positioned as a central part of the package.
  • Equity Value & Accessibility Company communications highlight equity for all employees, making ownership a standard element of compensation. This signals broad accessibility to potential upside.
  • Parental & Family Support Public listings call out paid parental leave and an onsite mother’s room. Family-oriented amenities are explicitly included alongside core benefits.

Freed Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: San Francisco, CA
59 Employees
Year Founded: 2023

What We Do

At Freed, we’re on a mission to give clinicians their time back - because healthcare professionals should be caring for patients, not drowning in paperwork. Every year, doctors and clinicians spend thousands of hours documenting care. That’s time lost to late nights, burnout, and administrative overload. Freed is changing that. We’ve built a powerful, AI-driven medical scribe that listens in on clinician-patient conversations and automatically generates detailed, structured SOAP notes: fast, accurate, and fully customizable. No more typing through lunch breaks or finishing charts after hours. Freed is smart, secure, and actually helpful. It learns each clinician’s style and adapts accordingly. With features like Smart Visit Prep, Magic Edit, and Instant Patient Instructions, Freed is designed to fit seamlessly into a clinician’s day and give them back what they value most: time, focus, and peace of mind. We launched in 2023, and in just over a year, 20,000+ clinicians across more than 650 healthcare organizations have already joined the Freed movement. Why? Because it works. Clinicians report saving 2+ hours per day, finishing charts on time, and finally reclaiming their evenings. Our team is a unique blend of engineers, doctors, builders, and doers. We’re obsessed with the product, relentless about feedback, and deeply aligned around one clear purpose: making healthcare better by helping clinicians thrive. Backed by world-class investors and moving fast, we’re just getting started. If you’re excited about AI, healthcare, and building tools that make a real difference in people’s lives, you’ll love it here. Come help us build the future of care. 💙

Why Work With Us

We build Freed to solve a real, urgent problem: physician burnout from documentation overload. Our AI scribe saves doctors hours daily, improving care and work-life balance. Join Freed to work on meaningful tech with real impact, in a fast-growing, mission-driven team.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Freed Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Catch us in our sunny SF HQ Monday to Wednesday, where collaboration sparks, coffee flows, and big ideas take flight.

Typical time on-site: 3 days a week
HQSan Francisco, CA
Our SF HQ is bright, light-filled, and full of windows, coffee, and great snacks. Just steps from Montgomery BART, with nearby parking, it’s a perfect hub for collaboration, focus, and good vibes in the heart of the Financial District.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account