IT Compliance (GRC) Analyst

Reposted 8 Days Ago
2 Locations
In-Office or Remote
95K-105K Annually
Junior
Healthtech • Telehealth
The Role
The IT Compliance Analyst will support SOX and HIPAA compliance by maintaining IT controls, performing risk assessments, and managing vendor assessments.
Summary Generated by Built In

About us

LifeMD is a leading digital healthcare company committed to expanding access to virtual care, pharmacy services, and diagnostics by making them more affordable and convenient for all. Focused on both treatment and prevention, our unique care model is designed to optimize the patient experience and improve outcomes across more than 200 health concerns. 

To support our expanding patient base, LifeMD leverages a vertically-integrated, proprietary digital care platform, a 50-state affiliated medical group, a 22,500-square-foot affiliated pharmacy, and a U.S.-based patient care center. Our company — with offices in New York City; Greenville, SC; and Huntington Beach, CA — is powered by a dynamic team of passionate professionals. From clinicians and technologists to creatives and analysts, we're united by a shared mission to revolutionize healthcare. Employees enjoy a collaborative and inclusive work environment, hybrid work culture, and numerous opportunities for growth. Want your work to matter? Join us in building a future of accessible, innovative, and compassionate care.

About the role

We are seeking an inquisitive and collaborative IT Governance, Risk and Compliance (GRC) Analyst to support the IT compliance programs supporting SOX and HIPAA across our technology stack, including in-house developed systems and third-party SaaS platforms. You will help maintain control readiness, perform testing and evidence collection, and support risk and vendor assessments for internally developed systems and SaaS applications. 

Core Responsibilities

  • Support SOX and HIPAA controls by helping design, document, and maintain ITGCs and operational controls
  • Maintain documentation such as control narratives, flowcharts, risk and control matrices, and evidence repositories
  • Assist remediation efforts by coordinating with IT and business teams, validating remediation evidence, and tracking closure of deficiencies
  • Perform risk assessments and gap analyses for IT systems that handle PHI and financial data
  • Automate and monitor controls through scheduled reviews, scripts, or tooling to reduce manual effort and improve coverage
  • Support audits and vendor reviews by preparing workpapers, answering auditor questions, and helping with vendor control questionnaires
  • Perform vendor and third-party assessments for SaaS providers ensuring appropriate controls are in place and evidenced

Requirements

Basic Qualifications:

  • Bachelor’s degree in a related field or equivalent experience
  • Relevant experience with IT controls, IT audit, SOX testing, IT risk, HIPAA, or related functions
  • Practical understanding of HIPAA Security and Privacy requirements and how they apply to IT systems that handle PHI
  • Technical foundation with identity and access management, change management, SDLC, backup and recovery, and logging/monitoring
  • Hands-on experience collecting and organizing audit evidence and documenting control testing procedures

Preferred Qualifications:

  • Relevant certification(s) (CISA, CRISC, CPA, CHPS)
  • Healthcare or healthtech industry experience
  • Written and verbal communication skills with the ability to create concise documentation and explain technical details to nontechnical stakeholders.

Benefits
  • Annual Salary: $95K-$105K
  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (Roth 401k)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Unlimited PTO Policy
  • Paid Holidays
  • Short Term Disability
  • Training & Development

Top Skills

Backup And Recovery
Change Management
Hipaa
Identity And Access Management
Logging/Monitoring
Sdlc
Sox
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: New York, NY
108 Employees
Year Founded: 2016

What We Do

LifeMD is a leading direct-to-patient Telehealth company leveraging deep expertise in medicine, technology and marketing to elevate healthcare.

Our mission is to improve the health and happiness of our patients with healthcare that is honest, affordable, timely, and easy.

LifeMD exists to help patients, getting them the care and medications they need while helping them navigate the changing world of medicine. We’re elevating the healthcare experience through Telehealth. Our brands are intensely focused on our patients, constantly striving to deliver a better end-to-end healthcare experience through technology, and provide our patients a transparent, convenient and cost-effective platform to access the quality medical care, prescription medications and OTC products they need.

Already, we have treated more than 600,000 patients via our telehealth services and product lines, which include Shapiro MD, Rex MD and Nava MD. But these are just steps toward creating a platform that will span many different medical conditions and indications. We are building a comprehensive healthcare experience that offers primary care, gives patients direct contact with their personal physicians, responds quickly to their concerns, centralizes and leverages their medical histories, and meets their needs in the areas that most impact their quality of life. We are driven to create and provide the ultimate in healthcare.

Similar Jobs

Enverus Logo Enverus

Account Director

Big Data • Information Technology • Software • Analytics • Energy
Remote
United States
1800 Employees
120K-150K Annually

General Motors Logo General Motors

Sr. HR Technology Analyst (Talent Acquisition)

Automotive • Big Data • Information Technology • Robotics • Software • Transportation • Manufacturing
Remote or Hybrid
United States
165000 Employees
106K-141K Annually

CrowdStrike Logo CrowdStrike

Marketing Manager

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
USA
10000 Employees
130K-200K Annually

Rhymetec Logo Rhymetec

Cyber Security Analyst

Cloud • Information Technology • Consulting • Cybersecurity • Data Privacy
Easy Apply
In-Office or Remote
New York City, NY, USA
33 Employees

Similar Companies Hiring

Camber Thumbnail
Social Impact • Healthtech • Fintech
New York, NY
53 Employees
Sailor Health Thumbnail
Telehealth • Social Impact • Healthtech
New York City, NY
20 Employees
Granted Thumbnail
Mobile • Insurance • Healthtech • Financial Services • Artificial Intelligence
New York, New York
23 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account