Governance, Risk, and Compliance Analyst

  • Remote - United Kingdom, Portugal

Remote

Cybersecurity

Mid-level

Job description

Sword Health is on a mission to free two billion people from pain as the world’s first and only end-to-end platform to predict, prevent and treat pain.

Delivering a 62% reduction in pain and a 60% reduction in surgery intent, at Sword, we are using technology to save millions for our 2,500+ enterprise clients across three continents. Today, we hold the majority of industry patents, win 70% of competitive evaluations, and have raised more than $300 million from top venture firms like Founders Fund, Sapphire Ventures, General Catalyst, and Khosla Ventures.

Recognized as a Forbes Best Startup Employer in 2023, this award highlights our focus on being a destination for the best and brightest  talent. Not only have we experienced unprecedented growth since our market debut in 2020,  but we’ve also created a remarkable mission and value-driven environment that is loved by our growing team. With a recent valuation of $2 billion, we are in a phase of hyper growth and expansion, and we’re looking for individuals with passion, commitment, and energy to help us scale our impact.

Joining Sword Health means committing to a set of core values, chief amongst them to “do it for the patients” every day, and to always “deliver more than expected” on behalf of our members and clients.

This is an opportunity for you to make a significant difference on a massive scale as you work alongside 800+ (and growing!) talented colleagues, spanning two continents. Your charge? To help us build a pain-free world, powered by technology, enhanced by people — accessible to all.

Introduction:

As a GRC Analyst, you will play a pivotal role in ensuring Sword’s compliance with complex regulatory frameworks while driving innovation and efficiency in our Governance, Risk, and Compliance (GRC) programs. You will take ownership of key compliance initiatives, like SOC 2 and ISO 27001. This role functions independently to lead audits and improve risk management processes across the organization. This is an exciting opportunity to join a team where you’ll have a direct impact on safeguarding patient data, managing risk, and ensuring that Sword meets the highest security and compliance standards in the industry.

What you’ll be doing:

  • Leading the implementation and maintenance of key compliance frameworks such as SOC 2, ISO 27001, HITRUST, and PCI-DSS;
  • Working closely with the Director of Risk and Compliance to continuously improve Sword’s GRC programs, driving initiatives to meet high compliance standards across Healthcare and AI;
  • Taking full ownership of specific compliance certifications and audits, ensuring timely and effective execution;
  • Mentoring and supporting junior team members, fostering a culture of continuous learning and improvement in the compliance function;
  • Conducting comprehensive risk assessments, including third-party vendor risk management, and proposing strategies to mitigate identified risks;
  • Spearheading internal and external audits for current and future compliance initiatives, ensuring accurate and efficient audit preparation and follow-up;
  • Developing and enhancing processes related to security questionnaires, client security assessments, and compliance training at all organizational levels.

What you need to have:

  • 5+ years of hands-on experience in Information Security certifications with proven success leading complex frameworks like SOC 2, ISO 27001, PCI-DSS, and HITRUST independently;
  • Demonstrated experience in conducting and leading audits and maintaining compliance in highly regulated and complex environments such as Healthcare and AI;
  • Excellent communication and leadership skills, with a demonstrated ability to mentor junior team members and communicate compliance requirements effectively to non-technical audiences;
  • Strong analytical and problem-solving skills, with a proactive calculated approach to mitigating compliance risks.
  • Self-starter approach with the ability to operate with minimal supervision

We’d Love to see:

  • A strategic mindset with the ability to identify process improvements and drive compliance initiatives across multiple teams;
  • Strong track record of implementing and/or improving Risk Management Programs, including third-party risk management;Experience with FedRAMP or similar government-focused compliance frameworks;
  • Practical knowledge of security practices, including Penetration Testing, DevSecOps, or other hands-on security skills that can enhance compliance work;
  • In-depth knowledge of relevant laws, regulations, and security standards, particularly in the healthcare sector;
  • Previous experience in a healthcare startup.
  • Demonstrated ability to balance long-term compliance strategy with short-term tactical needs

US - Sword Benefits & Perks:

• Comprehensive health, dental and vision insurance*

• Equity shares*

• Discretionary PTO plan*

• Parental leave*

• 401(k)

• Flexible working hours

• Remote-first company

• Paid company holidays

• Free digital therapist for you and your family

*Eligibility: Full-time employees regularly working 25+ hours per week

Portugal - Sword Benefits & Perks:

• Health, dental and vision insurance

• Meal allowance

• Equity shares

• Remote work allowance

• Flexible working hours

• Work from home

• Unlimited vacation

• Snacks and beverages

• English class

• Unlimited access to Coursera Learning Platform

*US Applicants Only: Applicants must have a legal right to work in the United States, and immigration or work visa sponsorship will not be provided.*

SWORD Health, which includes SWORD Health, Inc. and Sword Health Professionals (consisting of Sword Health Care Providers, P.A., SWORD Health Care Providers of NJ, P.C., SWORD Health Care Physical Therapy Providers of CA, P.C.*) complies with applicable Federal and State civil rights laws and does not discriminate on the basis of Age, Ancestry, Color, Citizenship, Gender, Gender expression, Gender identity, Gender information, Marital status, Medical condition, National origin, Physical or mental disability, Pregnancy, Race, Religion, Caste, Sexual orientation, and Veteran status.

Share this job:
Please let SWORD Health know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply