Risk & Compliance Lead

Hi RasmusNashville, TN
$125,000 - $135,000Remote

About The Position

At Hi Rasmus, families, providers, and partners trust us with sensitive information every day. As we grow, protecting that trust becomes both an important responsibility and a critical part of how we scale. We're looking for a Risk & Compliance Lead to build the programs, processes, and partnerships that help us manage risk, meet regulatory requirements, and grow confidently. This is an opportunity to shape how risk and compliance evolve alongside our business—helping teams make thoughtful decisions, supporting our customers, and ensuring we're prepared for what's next.

Requirements

  • 5+ years of experience leading or supporting risk, compliance, privacy, security, or related programs within SaaS, healthcare technology, or another regulated industry.
  • Experience building or improving risk and compliance programs—not just maintaining them.
  • Experience supporting customer security reviews, vendor assessments, due diligence, enterprise procurement processes, and/or compliance-related customer agreements.
  • Working knowledge of HIPAA and experience applying privacy and security requirements in a practical business environment.
  • Experience preparing for or supporting security audits, certifications, or compliance assessments.
  • Strong written communication skills and the ability to translate complex requirements into clear, practical guidance.
  • Strong business judgment and the ability to work effectively across technical and non-technical teams.

Nice To Haves

  • Familiarity with GDPR, CCPA, or other privacy frameworks.
  • Experience with SOC 2, ISO 27001, HITRUST, NIST, or similar standards.
  • Experience working in healthcare, behavioral health, education, or another highly regulated industry.
  • Familiarity with HECVATs, VPATs, accessibility requirements, or enterprise procurement processes.
  • Experience working in a growing SaaS company where processes and priorities evolve quickly.

Responsibilities

  • Build Our Risk & Compliance Program: Create and continuously improve the policies, processes, and operating practices that support HIPAA, GDPR, CCPA, and other applicable requirements. Own and continuously improve Hi Rasmus' risk and compliance program, including our privacy and security compliance practices. Lead risk assessments, policy reviews, audit readiness, evidence management, and continuous improvement initiatives. Shape the long-term risk and compliance roadmap as the business grows. Build scalable programs that keep the organization prepared for evolving requirements and priorities.
  • Support Hi Rasmus’ Growth: Help customers and partners feel confident choosing Hi Rasmus. Develop and lead the process for customer security reviews, HECVATs, questionnaires, and due diligence requests. Develop and maintain our customer-facing Security Center and trust resources. Partner with Sales and Customer Success throughout customer evaluations and procurement processes. Help remove unnecessary risk and compliance friction while maintaining the standards our customers expect.
  • Own Terms, Agreements & Compliance Requirements: Create a consistent and scalable approach to the compliance and privacy requirements that support our growing customer base. Manage the review, application, and ongoing maintenance of Data Processing Agreements (DPAs), Business Associate Agreements (BAAs), security exhibits, and related terms. Ensure contractual terms and compliance requirements are applied consistently across our customer relationships. Partner with internal stakeholders and external legal counsel when interpretation or specialized legal guidance is needed. Maintain clear documentation and processes so contractual compliance obligations are understood and followed across the business.
  • Strengthen Compliance Operations & Culture: Build practical systems and shared practices that keep Hi Rasmus prepared, informed, and continuously improving. Maintain policies, standards, documentation, controls, and compliance evidence. Coordinate audits, assessments, certifications, and remediation activities. Develop and lead security awareness and compliance training. Create practical guidance that helps teams make informed decisions and understand their role in managing risk. Partner with external auditors, consultants, and compliance vendors. Use data, evidence, and clear prioritization to focus resources on the areas of greatest business and compliance risk. Partner with leaders to build a strong compliance mindset across Hi Rasmus.
  • Partner Across the Business: Risk and compliance are team efforts. You'll collaborate closely with Engineering, Product, Sales, Customer Success, Finance, and Leadership to identify risks early, solve problems collaboratively, and support thoughtful business decisions that help Hi Rasmus grow responsibly.

Benefits

  • 100% covered health, dental, and vision premium for employee-only standard plan (Family can join too, with a variable cost)
  • Employer Sponsored Short-Term Disability Coverage
  • Employer Sponsored Life Insurance
  • Optional group benefits: AD&D, long-term disability
  • Participation in a 401k plan through Empower
  • Professional development opportunities
  • Room for growth within the company
  • 10 vacation days
  • 5 sick days
  • 7 paid holidays
  • 3 floating holidays
  • All Parents/Caregivers: 6 weeks fully paid parental leave
  • Birthing Parents: Up to 14 weeks paid parental leave
  • Fully remote and flexible work environment
  • Opportunity to make a meaningful impact in the Autism healthcare space
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service