Skip to content

Open nowPosted 24 hours agoWe saw it 107 min after it went up

Manager of Security and Compliance

IntusCare6 open roles

Where
Remote-USA
Work mode
Remote
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowManager of Security and ComplianceIntusCare · Remote-USA
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on IntusCare's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. IntusCare postings stay open a median of 4 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.5%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.1%30 days
This job: posted 24 hours ago

IntusCare median: 4 days open

The posting

About IntusCare: IntusCare is the only end-to-end ecosystem built specifically to help Programs of All-Inclusive Care for the Elderly (PACE) programs deliver exceptional care, strengthen financial performance, and stay compliant. IntusCare replaces outdated technology and manual workarounds with purpose-built solutions for care coordination, risk adjustment, population health, and utilization management. We empower teams to take control of their operations and improve outcomes for dual-eligible seniors- some of the most socially vulnerable and clinically complex individuals in the US healthcare system.

Role Overview:

Intus Care is seeking a Manager, Security & Compliance to lead the day-to-day execution and continued maturity of our security, privacy, and healthcare compliance program. This individual will own key compliance programs, security governance, risk management, audit readiness, and incident response while partnering closely with Engineering, Product, SRE, IT, Legal, and customer-facing teams. We are looking for someone who combines strong healthcare compliance knowledge with practical security experience and is comfortable being hands-on in a growing healthcare SaaS organization. The right candidate can translate regulatory and security requirements into practical controls, processes, and measurable outcomes.

Key Responsibilities:

- Own and continuously improve Intus Care's security and compliance programs across HIPAA, SOC 2, HITRUST, and applicable privacy requirements.

- Lead Intus Care's HITRUST certification end to end, including scoping, readiness assessment, evidence collection, assessor coordination, and corrective action plans.

- Lead internal and external audits, risk assessments, security reviews, penetration tests, evidence collection, and remediation efforts, moving evidence from point-in-time collection toward continuous, system-generated compliance.

- Manage Intus Care's external security and compliance partners, including the advisory firm supporting audit preparation, HITRUST assessors, and penetration testers. Direct their scope and priorities, hold them accountable to deliverables, ensure their findings translate into owned remediation, and keep advisory and assessment roles independent.

- Maintain the security and compliance roadmap, ensuring risks, vulnerabilities, audit findings, and control gaps have clear owners and resolution plans.

- Partner with Engineering, Product, the Platform team, SRE, and IT to integrate security into architecture, infrastructure, product development, and the SDLC, including security and PHI-handling standards and guardrails for AI-assisted development.

- Oversee critical controls including access management, logging and monitoring, encryption, vulnerability management, data retention, and vendor risk.

- Lead security incident responses, including investigation, communication, post-incident reviews, and corrective actions, as part of Intus Care's unified incident management process across SRE, Security, and IT.

- Maintain security policies, procedures, Business Associate Agreements (BAAs), data handling requirements, and breach response plans.

- Serve as the day-to-day lead for HIPAA Security Rule obligations, supporting Intus Care's designated HIPAA Security Official and partnering with the Privacy Officer on HIPAA and HITRUST attestations.

- Support customer security reviews, due diligence, onboarding, and security/privacy requirements during contract negotiations.

- Establish security and compliance metrics and provide leadership with visibility into risks, incidents, vulnerabilities, remediation progress, and audit readiness.

- Lead security awareness and compliance training, and manage, develop, and mentor the security and compliance team.

Requirements

- 7+ years of experience in information security, healthcare compliance, privacy, or risk management, preferably within healthcare SaaS or health technology.

- Strong knowledge of HIPAA, SOC 2, HITRUST, healthcare privacy requirements, and security control frameworks.

- Proven experience leading audits, risk assessments, compliance programs, and remediation activities, including directing external advisors and assessors.

- Proven experience leading at least one HITRUST certification (i1 or r2) end to end as the accountable owner, including scoping, evidence collection, assessor management, and corrective action plans.

- Practical understanding of cloud/SaaS security, identity and access management, vulnerability management, encryption, logging, data protection, and incident response.

- Experience partnering with Engineering and Product teams to incorporate security into technology and development processes.

- Experience with vendor risk management and third-party security assessments.

- Strong communication skills with the ability to translate security and regulatory requirements for technical and non-technical audiences.

- Experience working with healthcare technology, EMRs, clinical systems, or healthcare data environments.

Preferred Qualifications

- Experience with PACE, value-based care, Medicare/Medicaid, or regulated healthcare environments.

- Experience building or scaling security and compliance programs in a growing SaaS company.

- Experience securing cloud-native environments (Azure and Kubernetes/AKS preferred), including DevSecOps and security automation.

- Experience leading a small security/compliance team or cross-functional security initiatives.

- Relevant certifications such as CCSFP, CISSP, CISM, or HCISPP.

What Success Looks Like

The Manager, Security & Compliance will help build a security and compliance function that is proactive, measurable, audit-ready, and integrated into how Intus Care builds and operates its products. In the first year, success includes achieving HITRUST certification with findings remediated and running security incidents consistently through the unified incident process. Success in this role means maintaining strong audit and regulatory readiness, proactively identifying and reducing risk, driving vulnerabilities and findings through remediation, improving security visibility across the organization, and establishing security as a trusted partner to Engineering, Product, customers, and the business. Ultimately, this role will help ensure Intus Care can continue to innovate and scale while protecting sensitive healthcare information and maintaining the trust of our customers and the participants they serve.

Compensation:

The base salary range for this role is 130K-150K. We expect the ideal candidate to fall near the midpoint of this range, though final compensation will be determined based on experience, skills, and organizational needs.

Work location: This is a fully remote role based in the United States.

Sponsorship: This position is not eligible for sponsorship.

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against IntusCare's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on IntusCare's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    IntusCare's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.