
π HIPAA Security & Compliance Lead
- AI
- HITRUST
- FedRAMP
- NIST
- AWS
- Azure
- Vulnerability Management
- SOC2
- HIPAA
- Node.js
- Python
- PostgreSQL
About Readily
AI Compliance Platform for Healthcare Organizations
The role
### About Readily30% of U.S. healthcare cost is **administration**. We're fixing that.Readily is building the **compliance layer for the healthcare industry**. Billion-dollar healthcare organizations turn to Readily to analyze regulations, conduct audits, and automate compliance readiness with AI.We're the **fastest-growing company in this space** - **10x** revenue YoY. And we're just getting started.There's an old Yorkshire saying: _"Where there's muck, there's brass."_ Healthcare compliance is messy. But in that mess lies an enormous opportunity. If you're hungry to take ownership and build systems that matter, this is it.### About the RoleWe're hiring our **first dedicated security & compliance hire** to take Readily through **HITRUST r2** and **FedRAMP** - end-to-end. This is a **hands-on founding role**, not a manage-from-above one. You'll work directly with the founders and own the entire program: scoping, controls, evidence, auditors, and the engineering implementation behind it.The healthcare enterprises we sell to demand the highest bar of security. Getting certified is what unlocks the next tier of deals - and you'll own that outcome. **Own the certification and the systems - not just the paperwork.**### What You'll Do* **Own HITRUST r2 and FedRAMP end-to-end** - scoping, control mapping (NIST 800-53 / HITRUST CSF), evidence collection, and managing the 3PAO / external assessor relationships.* **Implement the technical controls** across our AWS/Azure stack: hardening, logging, continuous monitoring, vulnerability management, and access controls.* **Write the policies and run the audit** - build the POA&M process and drive remediation to close.* **Stand up compliance automation** (OneLeet) so evidence collects itself.* **Be the point person for enterprise trust** - own security questionnaires and customer security reviews so deals don't stall.* **Partner with engineering** to bake security into how we ship, without slowing us down.### What We're Looking For* **Done it before:** You've taken a company through **FedRAMP and/or HITRUST** (SOC 2 plus one of these is a strong signal). You know where the bodies are buried.* **Genuinely hands-on:** Comfortable in AWS/Azure actually configuring controls - not just writing policy and delegating.* **Hunger:** High agency, a drive to stay at the edge, and a willingness to do whatever it takes.* **Efficiency-obsessed:** You automate the toil instead of grinding through it manually.* **Intellectually humble:** Low ego, high curiosity, collaborative.* **Biased toward action:** You act, you don't wait.**Bonus points:** You've worked with healthcare data (PHI/HIPAA) before.### Our StackReact, Node/Python, PostgreSQL, micro-services, AWS, Azure.### Why Join Readily* **True founding-team ownership.*** **Career-defining experience:** ship products that rewrite how the industry works.* Front-row to closing deals **with billion-dollar enterprises**.* **Hyper-growth environment** (10Γ YoY - you'll feel it).* A real chance to **fix healthcare's most expensive problem** with AI.* Weekly pickleball π + a team that loves to win together.π© If you want true ownership and to build the security backbone that unlocks healthcare's biggest enterprises - we'd love to talk.
π HIPAA Security & Compliance Lead Β· Readily