×
Register Here to Apply for Jobs or Post Jobs. X

Security and Compliance Manager

Job in San Diego, San Diego County, California, 92189, USA
Listing for: SwiftCruit
Full Time position
Listed on 2026-08-13
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection
Salary/Wage Range or Industry Benchmark: 110000 - 165000 USD Yearly USD 110000.00 165000.00 YEAR
Job Description & How to Apply Below

About Clinically AI

Clinically AI is a rapidly scaling healthcare AI company transforming how behavioral health and healthcare organizations manage clinical documentation, compliance workflows, chart auditing, and operational efficiency through artificial intelligence.

Our platform helps clinicians, compliance teams, administrators, and healthcare organizations reduce administrative burden, improve documentation quality, strengthen audit readiness, and operate more efficiently. We operate at the intersection of AI, healthcare operations, workflow design, and real-world clinical execution, where adoption, trust, usability, and measurable outcomes matter.

The Opportunity

We are seeking a Security and Compliance Manager to own the day-to-day operation of our compliance program end to end, keeping our frameworks audit-ready, our policies current, and our workforce systems locked down.

This is a critical role for someone who can manage our compliance platform of record, drive remediation on failing controls to closure, and administer the workforce security layer (Google Workspace and MDM) that our compliance posture depends on. You will work closely with engineering, product, and executive leadership to keep the company continuously compliant as we scale at high velocity.

This is not a purely administrative, ticket-routing role. You should be comfortable owning remediation from detection to closure, operating with high rigor, and driving issues to resolution yourself rather than just flagging them, in a fast-moving startup environment.

We believe a successful compliance function is defined not by simply passing audits, but by continuous audit-readiness, strong workforce security hygiene, and trust earned with enterprise customers.

What You'll Own
  • Own our compliance platform of record — manage frameworks (SOC2 Type II, HIPAA, NIST, etc.), controls, tests, policies, and integrations.

  • Monitor compliance tests continuously; triage failures, remediate directly where possible, and drive owners to resolution where not.

  • Maintain and update security policies, procedures, and system documentation, ensuring they reflect actual practice and are reviewed/acknowledged on schedule.

  • Manage evidence collection and audit readiness, keeping automated evidence flowing and closing gaps in manual evidence before auditors ask.

  • Coordinate external audits (SOC2 Type II, HIPAA, NIST, ISO, etc.) end to end — auditor communication, evidence requests, findings, and remediation plans.

  • Administer Google Workspace, including user lifecycle management, access controls, 2FA/SSO enforcement, and audit log reviews.

  • Manage our MDM to ensure all endpoints are enrolled, encrypted, patched, and compliant with policy.

  • Track risk via risk assessments and the risk register, and lead mitigation planning with stakeholders.

What We're Looking For
  • Compliance Ownership
    :
    You treat a failing compliance test as a to-do item, not a ticket to route elsewhere — you drive remediation from detection to closure yourself.

  • Operational Rigor: You maintain accurate, up-to-date policies and documentation, and keep evidence collection running continuously rather than scrambling before an audit.

  • Security & IT Administration Fluency: You're comfortable administering Google Workspace and MDM tooling directly — user lifecycle, access reviews, and endpoint compliance are second nature to you.

  • Cross-Functional Collaboration: You partner effectively with engineering, product, and leadership, scoping remediation work and reporting compliance posture clearly to non-technical stakeholders.

  • High Ownership Mindset: You operate with follow-through in a high-velocity, fast-scaling environment, without needing heavy oversight.

Required Qualifications
  • 3+ years of experience in security compliance, GRC, IT security administration, or similar roles.

  • Hands-on experience administering a compliance automation platform (e.g., Vanta, Drata, or Secureframe), including frameworks, tests, policies, and remediation workflows.

  • Direct experience with SOC2 Type II and/or HIPAA compliance programs — evidence collection, audits, and continuous control operations.

  • Experience administering Google Workspace in a…

To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary