Compliance Associate

About Dental Intelligence
We are the leading player in the SaaS analytics and workflow space for dental practices, launched in 2015 to help dentists manage and grow their practices. Our best-in-class tech makes it more fulfilling to be a dental professional and easier to be a patient. Nearly 9,000 dental practices utilize our platform to practice smarter, generating an average top-line production increase of 50% in the first 12 months. Whether a practice wants a comprehensive 2-year growth plan or simply a more effective Morning Huddle, we take the busy work out of growth. Our platform helps practices find patients, schedule them, follow up, collect payments, file their forms, design their treatment plans, and so much more. We seek an experienced compliance Associate who can help our organization by owning the day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks. If the profile below sounds like you - let’s talk!


What You'll Do:

You'll own day-to-day Compliance execution across HIPAA, PCI DSS, SOC 2, and Privacy frameworks. This role involves meaningful task execution and decision-making responsibility as you demonstrate sound judgment and knowledge. If you're motivated by learning, problem solving, and you like to take initiative, this is a role where you can grow in your practical experience. If you're hungry to understand how corporate compliance works in real business situations, not just memorize the frameworks, this role is for you. A candidate will feel successful in this role if they are a self- starter that can work efficiently, open to continuous improvement efforts, accountable, and a friendly team player. This position will report to our Director of Security & Compliance.


Location:

This position is located in Pleasant Grove, UT with a hybrid schedule offering.


Outcomes you’ll own:

  • Compliance Program Execution & Documentation
    • Assist in building and documenting the elements of an effective compliance program.
    • Coordinate the documentation of evidence across all frameworks using Drata; organize and maintain the compliance evidence library; ensure framework readiness on a continual basis through active monitoring.
    • Conduct periodic compliance assessments/audits; document findings and remediation
    • Maintain written policies and procedures; coordinate updates when regulations or business processes change
    • Prepare compliance reports and summaries for internal stakeholders and external auditors
    • Support external audits through administrative means, documentation requests, and interviews
    • Communicate effectively with cross-functional employees, contractors, vendors, etc.
    • Confirm customers meet Know Your Customer (KYC) requirements.
  • Compliance Case Management & Communications
    • Triage all incoming reports, concerns, or requests for guidance.
    • Investigate incidents (determine scope for affected records, exposure window, data involved, customer, product, etc.) and document all findings.
    • Manage the investigation to include requesting assistance from other departments, ensuring the investigation stays on track for resolution to ensure timely handling of all reports of potential compliance concerns.
    • Monitor and respond to the Compliance e-mail inbox to ensure all communications are handled appropriately
  • Third Party & Vendor Management
    • Coordinate HIPAA Business Associate Agreement (BAA) setup, review, and signature process with the Director
    • Maintain updated vendor list and coordinate documentation reviews
    • Assess new vendors for compliance risk; determine if a BAA is required.
    • Conduct ongoing assessments related to processing of patient health information (PHI) and payments data
  • Privacy Requests
    • Triage privacy rights requests (i.e. SARs, deletion requests, opt-out requests)
    • Verify requester identity; assess and document scope of request
    • Coordinate with cross-functional teams to locate and compile response data
    • Track privacy request status and ensure fulfillment within timelines
    • Maintain record of all privacy requests and responses
  • Training & Awareness
    • Develop and deliver new hire, annual, and intermittent compliance training and awareness programs
    • Track training completion and maintain training records for audit purposes
    • Promote a culture of compliance, security, and privacy awareness across the organization
    • Assess training and awareness activity effectiveness for process improvement.
  • Regulatory Monitoring & Cross-Functional Support
    • Monitor HHS, state AG, and industry updates relevant to DI's compliance obligations to remain abreast of changes
    • Provide timely support to various departments and employees when compliance questions arise
    • Explain HIPAA, PCI, and Privacy requirements with appropriate business context


What You’ll Need to Get the Job Done:
Required

  • 2-4 years of experience in compliance, privacy, risk management, or related role
  • Familiarity with at least one compliance framework (HIPAA, SOC 2, CCPA, PCI DSS or similar)
  • Strong organizational skills; ability to manage multiple compliance frameworks and evidence sources
  • Attention to detail; ability to spot inconsistencies and gaps in processes or documentation
  • Comfort with learning. You don't need to know everything, but you need to be willing to research and ask questions.
  • Ability to work independently with limited supervision; self-starter who doesn't wait to be told what to do next.

Preferred

  • Bachelor's degree
  • Healthcare or SaaS experience
  • Working knowledge of HIPAA/Business Associate requirements
  • Experience with Drata, compliance automation tools, or audit management
  • Familiarity with incident response
  • Understanding of PCI DSS or cardholder data environment concepts
  • Experience with 3rd party/vendor compliance
  • SCCE/HCCA Certifications


What You'll Love About Dental Intelligence:

  • Flexible Paid Time Off + 10 company-wide paid holidays
  • Competitive Medical, Dental & vision offerings, with buy up plan options, AND we match your HSA contributions.
  • Fully Paid Parental Leave
  • 401K Retirement savings plan with company match up to 5.5% of your earnings+ unlimited access to personal financial advisors.
  • Learning & Development Reimbursement program
  • Company paid Life, Disability & AD&D
  • Mental Health support programs, Cellphone & Gym membership Discounts, Corporate Sundance Passes, and more!


Please Note: All offers of employment are contingent upon successful completion of a background check, which may include verification of education, employment history, and other credentials. By applying, you confirm that all information you have provided is accurate and complete to the best of your knowledge, and you understand that misrepresentation may result in disqualification or termination.

Security & Compliance

Pleasant Grove, UT

Compartir en:

Condiciones del servicioPrivacidadCookiesDesarrollado por Rippling