Compliance Associate
Listed on 2026-10-05
-
Business
Regulatory Compliance Specialist
We are the leading player in the SaaS analytics and workflow space for dental practices, launched in 2015 to help dentists manage and grow their practices. Our best-in-class tech makes it more fulfilling to be a dental professional and easier to be a patient. Nearly 9,000 dental practices utilize our platform to practice smarter, generating an average top-line production increase of 50% in the first 12 months.
Whether a practice wants a comprehensive 2-year growth plan or simply a more effective Morning Huddle, we take the busy work out of growth. Our platform helps practices find patients, schedule them, follow up, collect payments, file their forms, design their treatment plans, and so much more. We seek an experienced compliance Associate who can help our organization by owning the day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks.
You’ll Do
You’ll own day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks. This role involves meaningful task execution and decision‑making responsibility as you demonstrate sound judgment and knowledge. If you’re motivated by learning, problem solving, and you like to take initiative, this is a role where you can grow in your practical experience. If you’re hungry to understand how corporate compliance works in real business situations, not just memorize the frameworks, this role is for you.
A candidate will feel successful in this role if they are a self‑starter that can work efficiently, open to continuous improvement efforts, accountable, and a friendly team player. This position will report to our Director of Security & Compliance.
This position is located in Pleasant Grove, UT with a hybrid schedule offering.
- Compliance Program Execution & Documentation
- Assist in building and documenting the elements of an effective compliance program.
- Coordinate the documentation of evidence across all frameworks using Drata; organize and maintain the compliance evidence library; ensure framework readiness on a continual basis through active monitoring.
- Conduct periodic compliance assessments/audits; document findings and remediation
- Maintain written policies and procedures; coordinate updates when regulations or business processes change
- Prepare compliance reports and summaries for internal stakeholders and external auditors
- Support external audits through administrative means, documentation requests, and interviews
- Communicate effectively with cross-functional employees, contractors, vendors, etc.
- Confirm customers meet Know Your Customer (KYC) requirements.
- Compliance Case Management & Communications
- Triage all incoming reports, concerns, or requests for guidance.
- Investigate incidents (determine scope for affected records, exposure window, data involved, customer, product, etc.) and document all findings.
- Manage the investigation to include requesting assistance from other departments, ensuring the investigation stays on track for resolution to ensure timely handling of all reports of potential compliance concerns.
- Monitor and respond to the Compliance e-mail inbox to ensure all communications are handled appropriately
- Third Party & Vendor Management
- Coordinate HIPAA Business Associate Agreement (BAA) setup, review, and signature process with the Director
- Maintain updated vendor list and coordinate documentation reviews
- Assess new vendors for compliance risk; determine if a BAA is required.
- Conduct ongoing assessments related to processing of patient health information (PHI) and payments data
- Privacy Requests
- Triage privacy rights requests (i.e. SARs, deletion requests, opt-out requests)
- Verify requester identity; assess and document scope of request
- Coordinate with…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).