Director of Compliance
The Director of Compliance designs, oversees, and monitors Commure’s corporate compliance program for its AI healthcare platform. Responsibilities include risk assessments, policy development, training, auditing, and advising on healthcare laws such as HIPAA, Anti-Kickback, Stark, FDA SaMD, and information blocking. Requires 6-10 years healthcare compliance leadership experience.
About the job
What You'll Do
- Chair the Corporate Compliance Committee with cross-functional representation from Legal, HR, Engineering, Product, Security, and Sales.
- Develop, implement, and maintain policies, procedures, and controls for the compliance program, focusing on Health IT-specific risks.
- Conduct regular comprehensive risk assessments, including HIPAA/HITECH, data security, Anti-Kickback Statute, Stark Law, information blocking, and FDA SaMD regulations.
- Develop and track corrective action plans to resolve compliance issues.
- Establish and execute an annual compliance work plan with auditing and monitoring activities.
- Develop and report key compliance metrics and data analytics to senior leadership and the Board’s Audit Committee.
- Direct and oversee creation and delivery of compliance training for employees, executives, board members, and vendors.
- Manage the compliance hotline and promote effective lines of communication for reporting concerns.
- Monitor compliance program effectiveness and implement continuous improvements.
- Maintain expert knowledge of evolving healthcare regulations and advise on impacts of new laws.
- Liaise with senior management to integrate compliance into business operations and evaluate compliance-related performance.
What You Have
- Bachelor’s degree required; JD or relevant Master’s (MBA, MHA) strongly preferred.
- CHC or similar compliance certification highly desirable.
- 6-10 years in healthcare regulatory and compliance role, with leadership experience, preferably in Health IT, SaaS, or medical device company.
- Proven ability to develop and implement compliance policies, procedures, and training programs.
- Expert knowledge of U.S. healthcare regulatory landscape, including HIPAA, HITECH, Anti-Kickback Statute, and state/federal data privacy laws (e.g., CCPA/CPRA).
- Demonstrated experience with FDA regulations for digital health/SaMD and ONC Cures Act (information blocking, interoperability) is a significant plus.
- Exceptional leadership, communication, interpersonal, organizational, and strategic planning skills.
- Analytical thinker with strong problem-solving in a fast-paced tech environment.
- Deep commitment to teamwork and continuous improvement.
Skills
HIPAA, Hitech, Anti-Kickback Statute, Stark Law, Fda Samd, Onc Cures Act, CCPA, Cpra, Compliance Training, Risk Assessment, Healthcare Compliance, Regulatory Compliance
Similar jobs
Legal jobsLeads Astra’s enterprise compliance, financial-crimes, payments, privacy, GRC, and assurance programs while advising executives, the Board, product teams, and bank partners. Requires 8+ years of financial-services compliance experience, BSA/AML leadership, sponsor-bank expertise, and a bachelor’s degree.
Leads tax workstreams across acquisitions, reorganizations, investments, and infrastructure transactions, advising Corporate Development, Legal, and Finance. Requires a JD or CPA and substantial transactional tax experience, with preferred depth in M&A, REITs, joint ventures, and technology or data center transactions.
Leads Legal Operations and serves as the Chief Legal Officer’s operational proxy, overseeing legal technology, AI adoption, budgets, vendors, analytics, and cross-functional initiatives. Requires 10+ years in legal or strategic business operations, executive partnership experience, and a bachelor’s degree.
Leads and builds AirOps’s legal function, advising executives and cross-functional teams on commercial transactions, AI and data issues, corporate matters, and risk. Requires 10+ years of legal experience, sophisticated technology transactions expertise, and California practice eligibility.
Leads commercial transactions and builds scalable contracting infrastructure while advising the company on privacy, AI regulation, compliance, and broader legal risks. Requires a JD, state bar membership, and at least five years of technology-focused legal experience.