Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior Security Engineer - Governance, Risk & Compliance image - Rise Careers
Job details

Senior Security Engineer - Governance, Risk & Compliance

We Breathe Life Into Data

At Komodo Health, our mission is to reduce the global burden of disease. And we believe that smarter use of data is essential to this mission. That’s why we built the Healthcare Map — the industry’s largest, most complete, precise view of the U.S. healthcare system — by combining de-identified, real-world patient data with innovative algorithms and decades of clinical experience. The Healthcare Map serves as our foundation for a powerful suite of software applications, helping us answer healthcare’s most complex questions for our partners. Across the healthcare ecosystem, we’re helping our clients unlock critical insights to track detailed patient behaviors and treatment patterns, identify gaps in care, address unmet patient needs, and reduce the global burden of disease. 

As we pursue these goals, it remains essential to us that we stay grounded in our values: be awesome, seek growth, deliver “wow,” and enjoy the ride. At Komodo, you will be joining a team of ambitious, supportive Dragons with diverse backgrounds but a shared passion to deliver on our mission to reduce the burden of disease — and enjoy the journey along the way.

The Opportunity at Komodo Health

Our team is responsible for overseeing all aspects of security at Komodo Health. We implement and maintain security solutions to protect our systems and data, manage identity and access controls, and handle incident response. We also conduct security assessments, monitor for potential threats, and collaborate with other teams to ensure compliance with security policies and regulations. Our goal is to create a secure and resilient environment that supports the company's growth and innovation.

This role exists to enhance Komodo Health's security posture by ensuring effective governance, risk management, and compliance. The GRC Engineer will manage compliance initiatives, conduct risk assessments, and develop policies and procedures to protect sensitive data and maintain system integrity. This role will also contribute to continuous improvement in our GRC processes and ensure alignment with industry standards and regulations.

As a GRC Engineer, you will play a critical role in securing our systems and data while ensuring compliance with regulatory requirements. You will have the opportunity to work with cutting-edge GRC technologies, collaborate with cross-functional teams, and influence the development of our GRC strategy. Your work will directly impact the security and efficiency of our operations, providing a foundation for the company's continued growth and innovation.

Looking back on your first 12 months at Komodo Health, you will have…

  • Successfully implemented optimizations to our GRC framework that align with industry standards.
  • Conducted regular risk assessments and developed mitigation strategies.
  • Ensured continuous compliance with relevant regulations and internal policies.
  • Developed and implemented robust GRC policies and procedures.
  • Enhanced the company's overall security posture through effective governance and risk management practices.

You will accomplish these outcomes through the following responsibilities…

  • Develop and implement GRC policies and procedures.
  • Conduct regular risk assessments and audits.
  • Ensure compliance with industry standards and regulations.
  • Collaborate with cross-functional teams to address compliance issues.
  • Monitor and report on the effectiveness of GRC initiatives.
  • Provide GRC-related training and support to other teams.
  • Partner with HR to ensure alignment and integration between GRC systems and key HR systems, facilitating seamless onboarding and offboarding processes and maintaining accurate access controls.

What you bring to Komodo Health:

  • Strong experience with GRC frameworks and tools.
  • Proficiency in conducting risk assessments and audits.
  • Knowledge of regulatory requirements and compliance management.
  • Excellent communication and collaboration skills.
  • Strong problem-solving and analytical skills.
  • Experience with developing and implementing GRC policies and procedures.
  • Familiarity with AWS systems and services.

Additional skills and experience we’d prioritize (nice to have)…

  • Experience with GRC tools such as OneTrust
  • Experience collaborating between product teams, Legal and Compliance teams, and Security teams.
  • Familiarity with Azure systems and services.  
  • Familiarity with microservices architecture.
  • Knowledge of healthcare industry compliance requirements.
  • Previous experience in a healthcare or technology environment.

#LIRemote

Where You’ll Work

Komodo Health has a hybrid work model; we recognize the power of choice and importance of flexibility for the well-being of both our company and our individual Dragons. Roles may be completely remote based anywhere in the country listed, remote but based in a specific region, or local (commuting distance) to one of our hubs in San Francisco, New York City, or Chicago with remote work options. 

What We Offer

Positions may be eligible for company benefits in accordance with Company policy. We offer a competitive total rewards package including medical, dental and vision coverage along with a broad range of supplemental benefits including 401k Retirement Plan, prepaid legal assistance, and more. We also offer paid time off for vacation, sickness, holiday, and bereavement. We are pleased to be able to provide 100% company-paid life insurance and long-term disability insurance. This information is intended to be a general overview and may be modified by the Company due to business-related factors.

Equal Opportunity Statement

Komodo Health provides equal employment opportunities to all applicants and employees. We prohibit discrimination and harassment of any type with regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. 

Komodo Health Glassdoor Company Review
3.6 Glassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon Glassdoor star icon
Komodo Health DE&I Review
4.7 Glassdoor star iconGlassdoor star iconGlassdoor star iconGlassdoor star icon Glassdoor star icon
CEO of Komodo Health
Komodo Health CEO photo
Arif Nathoo
Approve of CEO

Average salary estimate

$135000 / YEARLY (est.)
min
max
$120000K
$150000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior Security Engineer - Governance, Risk & Compliance, Komodo Health

At Komodo Health, we are on a mission to reduce the global burden of disease, and we believe that smarter use of data is essential to this cause. As a Senior Security Engineer focused on Governance, Risk & Compliance (GRC), you will play a vital role in safeguarding the integrity of our systems and sensitive data. In this position, you'll develop and implement comprehensive GRC policies and ensure our compliance with industry regulations. Your expertise will drive initiatives that enhance our security posture, allowing us to not only meet but exceed the security needs of our healthcare partners. You’ll conduct regular risk assessments, collaborate with cross-functional teams to streamline compliance processes, and refine our GRC framework to align with current industry standards. Every day at Komodo is an opportunity to empower healthcare providers with the insights they need to improve patient care. You will work with cutting-edge GRC technologies, foster an environment of continuous improvement, and influence the overall GRC strategy of the company. The team has a supportive culture of growth, where everyone is encouraged to deliver their best and have fun along the way. Within your first year, you'll have contributed significantly to our mission — driving improvements in our governance and risk management processes and ensuring that we continue to operate within compliance across all facets of our organization. Join us, and help make a meaningful impact in the healthcare landscape while enjoying a fulfilling journey with our passionate team.

Frequently Asked Questions (FAQs) for Senior Security Engineer - Governance, Risk & Compliance Role at Komodo Health
What are the primary responsibilities of a Senior Security Engineer - Governance, Risk & Compliance at Komodo Health?

The Senior Security Engineer focused on Governance, Risk & Compliance at Komodo Health is responsible for developing and implementing GRC policies, conducting risk assessments, and ensuring compliance with industry standards. This role requires collaboration across teams to monitor security effectiveness and provide necessary training and support, all aimed at enhancing the company’s security posture.

Join Rise to see the full answer
What qualifications do you need to be a Senior Security Engineer - Governance, Risk & Compliance at Komodo Health?

To excel as a Senior Security Engineer - Governance, Risk & Compliance at Komodo Health, candidates should possess strong experience with GRC frameworks, be proficient in conducting risk assessments, and have knowledge of regulatory compliance. Excellent communication and problem-solving skills are essential, alongside familiarity with AWS systems. Additional skills in healthcare compliance and GRC tools like OneTrust will give candidates an edge.

Join Rise to see the full answer
How does the Senior Security Engineer - Governance, Risk & Compliance role impact Komodo Health's mission?

The Senior Security Engineer - Governance, Risk & Compliance role is crucial in safeguarding the sensitive data at Komodo Health. By ensuring compliance and managing risks effectively, this position directly supports our mission to reduce the burden of disease, ultimately enabling healthcare providers to access vital patient insights and improve care quality.

Join Rise to see the full answer
What tools and technologies will I use as a Senior Security Engineer - Governance, Risk & Compliance at Komodo Health?

In this role, you will work with various GRC tools and technologies, including OneTrust and AWS systems, to develop and implement security policies. You’ll also engage with data auditing technologies to ensure compliance, monitor for threats, and safeguard the organization's information assets.

Join Rise to see the full answer
What opportunities for growth can I expect as a Senior Security Engineer - Governance, Risk & Compliance at Komodo Health?

At Komodo Health, as a Senior Security Engineer - Governance, Risk & Compliance, you will be part of a culture that encourages personal and professional growth. You’ll have opportunities to lead projects, collaborate with diverse teams, and refine your skills in cutting-edge GRC technologies, setting the stage for career advancement within the company.

Join Rise to see the full answer
Common Interview Questions for Senior Security Engineer - Governance, Risk & Compliance
Can you describe your experience with GRC frameworks?

When answering this question, provide specific examples of GRC frameworks you have worked with, detailing how you implemented them, the challenges you faced, and the outcomes achieved. Highlight your understanding of adaptation based on industry standards.

Join Rise to see the full answer
How do you conduct risk assessments, and what tools do you use?

Discuss your methodology for conducting risk assessments, including qualitative and quantitative techniques. Mention any tools you prefer, elaborate on how you analyze findings, and how these assessments inform your GRC strategies.

Join Rise to see the full answer
Explain a time you identified a compliance issue and how you resolved it.

Provide a concrete example that outlines the issue, your analysis process, steps taken to resolve it, and the measures you implemented to prevent similar issues in the future. Emphasize collaboration with other teams.

Join Rise to see the full answer
What strategies do you employ to ensure continuous compliance?

Discuss practices such as regular audits, ongoing training, and use of compliance management tools. Highlight how you stay updated on regulatory changes and leverage technology to track compliance metrics.

Join Rise to see the full answer
How do you manage cross-functional collaboration in compliance projects?

Emphasize your communication skills, strategies for fostering teamwork, and tools you use to facilitate collaboration. Provide examples of successful projects that relied on effective teamwork across departments.

Join Rise to see the full answer
Can you detail your experience with audit processes?

Share specific examples of your role in audit processes, including planning, execution, and reporting. Discuss how audits helped improve operational processes and compliance in past positions.

Join Rise to see the full answer
How familiar are you with healthcare compliance requirements?

Articulate your understanding of healthcare regulations like HIPAA, and any relevant certifications or training you have. Use specific examples from your past work to showcase your knowledge in practice.

Join Rise to see the full answer
What challenges have you faced in implementing GRC policies?

Identify specific challenges, such as resistance to change or resource limitations. Explain how you overcame these challenges and the lessons learned that can improve processes in the future.

Join Rise to see the full answer
How do you stay current with security trends and regulations?

Discuss your methods for professional growth, such as attending conferences, participating in training, or following industry publications. Highlight the importance of continuous learning in security and compliance.

Join Rise to see the full answer
Why do you want to work as a Senior Security Engineer - Governance, Risk & Compliance at Komodo Health?

Share your passion for healthcare and how your skills align with Komodo Health's mission. Discuss your desire to contribute to meaningful work that reduces the burden of disease and improve the overall security landscape in healthcare.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User

Join Komodo Health as a Senior Product Manager to drive the developer experience in healthcare data insights.

Photo of the Rise User
Posted 10 days ago

Join Komodo Health as a Healthcare Data Support Engineer, where you will utilize your analytical skills to support client engagements in the healthcare ecosystem.

Photo of the Rise User
Posted 14 days ago
Posted 5 days ago

As a Sr. DevSecOps Consultant at GDIT, you will empower Public Sector clients through cutting-edge cloud-based solutions.

Photo of the Rise User
Posted 12 days ago

Join Care Access as an IT Operations Lead to enhance our IT systems in a fully remote role.

Photo of the Rise User
Posted 6 days ago

Become a pivotal part of Brightsolid's cybersecurity team as a Solutions Architect, enhancing cloud security for clients with cutting-edge technologies.

Ignite IT Hybrid No location specified
Posted 6 days ago

Become a key player in transforming legacy applications into cloud-native solutions with Ignite IT as a Cloud Application Architect.

Photo of the Rise User
Posted 6 days ago

Join Sherpa° as a Technical Fulfillment Specialist to optimize and manage their visa application automation systems.

Photo of the Rise User

Join GuidePoint Security as a Security Consultant to deliver professional cybersecurity services while working remotely.

Photo of the Rise User
KPN Remote Teleportboulevard, 1043 Amsterdam, Nederland
Posted 2 days ago

KPN is on the lookout for a skilled Security Risk Manager to enhance their risk management framework and ensure compliance within a collaborative team environment.

Komodo Health is an American healthcare company offering a platform that delivers patient-level insights by dynamically analyzing the broadest array of data across patients, practitioners, and health systems.

81 jobs
MATCH
VIEW MATCH
BADGES
Badge Family FriendlyBadge Flexible CultureBadge Future MakerBadge Work&Life Balance
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 4, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
37 people applied to Cybersecurity Intern at Dewberry
Photo of the Rise User
Someone from OH, Dayton just viewed Inventory Control Analyst II at Aretum
Photo of the Rise User
Someone from OH, Dayton just viewed Business Analyst (Supply Chain project) at Nagarro
Photo of the Rise User
Someone from OH, Dayton just viewed Sr. Logistics Analyst at Innio
Photo of the Rise User
47 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
36 people applied to IT Intern at USAA
Photo of the Rise User
Someone from OH, Cincinnati just viewed Forensic Nurse Examiner-Prn Shift Varies at TriHealth
Photo of the Rise User
Someone from OH, New Albany just viewed Junior Buyer at CSC Generation
Photo of the Rise User
Someone from OH, Columbus just viewed Financial Administrator Intern at Finalsite
F
Someone from OH, Columbus just viewed Part Time Support Lead at Five Below
Photo of the Rise User
Someone from OH, North Olmsted just viewed Art Director - Creative- KY at Photon
Photo of the Rise User
Someone from OH, Cleveland just viewed Account Executive, Army SOF/COCOMs at Pure Storage
Photo of the Rise User
Someone from OH, Kent just viewed IT Compliance Analyst I at Fidelity National Financial
Photo of the Rise User
Someone from OH, Dayton just viewed Music Production / Creative Intern at Landor
Photo of the Rise User
Someone from OH, Cleveland just viewed Double Remote Assistant (Central US) at Zirtual
S
Someone from OH, Cincinnati just viewed Product Manager - Remote at Substance
Photo of the Rise User
Someone from OH, Mason just viewed IT General Controls Tester at ING