Security & Compliance Architect

mpathic.ai

mpathic.ai

IT, Legal
USD 130k-170k / year + Equity
Posted on Feb 28, 2025

Job Description: Security and Compliance Architect

Keeping the human in AI. mpathic is a trusted leader in advancing clinical accuracy and quality through AI-powered oversight. Backed by over a decade of scientific validation, its comprehensive platform analyzes and interprets conversational and contextual data. By integrating human and AI analytics, it drives enhanced organizational efficiency, with patient safety as the top priority.

From a seed-stage, VC-backed start-up, our journey has been backed by notable investors including Next Frontier Capital, Illuminate, Portland Seed Fund, Full-Circle, WXR Fund, Graham & Walker, and First Row Partners.

The Security and Compliance Architect will play a central role in ensuring our platform, APIs, and products adhere to industry security standards and regulatory requirements. The role will collaborate closely with a cross-functional team to build and maintain a secure and compliant environment as we integrate AI solutions. A successful candidate for this position must possess a strong understanding of cybersecurity principles and experience with regulatory compliance, along with expertise in implementing robust security measures.

ABOUT YOU:

  • Proven Experience: 5+ years of experience in security and compliance, with a focus on ensuring compliance with frameworks like SOC 2, HIPAA, and GDPR.
  • Cybersecurity Expertise: Strong understanding of cybersecurity principles and best practices, with hands-on experience in implementing security controls.
  • Compliance Frameworks: Knowledge of relevant compliance frameworks like ISO 27001, NIST, HIPAA, PCI DSS.
  • Security Technologies: Experience with security technologies like firewalls, intrusion detection systems, SIEM, and data encryption.
  • Strong Analytical Skills: Ability to analyze security risks and prioritize mitigation strategies.
  • Excellent Communication: Ability to work collaboratively with cross-functional teams, including legal, operations, and product development.
  • Additional Skills: Programming or scripting skills for automation and analysis can be beneficial.

CORE RESPONSIBILITIES:

  • Compliance Assessment and Management: Regularly review and audit systems to identify potential compliance gaps against standards like SOC 2, HIPAA, GDPR, PCI DSS, etc.
  • Security Control Implementation: Design and deploy technical security controls such as access controls, encryption, data loss prevention, network segmentation, and vulnerability management to mitigate risks.
  • Policy Development: Collaborate with legal and compliance teams to create and maintain security policies and procedures aligned with industry regulations.
  • Risk Assessment and Mitigation: Identify potential security threats, evaluate their impact, and implement appropriate mitigation strategies.
  • Vendor Management: Oversee the security practices of third-party vendors to ensure compliance with company standards.
  • Incident Response: Participate in incident response activities by investigating security breaches and coordinating remediation efforts.
  • Documentation and Reporting: Maintain comprehensive documentation of security controls, compliance status, and risk assessments for audits and reporting purposes.

Life at mpathic:

Prioritizing Work-Life Balance

As a remote-first company, we emphasize work-life balance. In-person retreats, flexible work location policies, other benefits such as 100% funded healthcare benefits, flexible-managed PTO, training and education funding, are all part of life at mpathic.

At mpathic, we respect the whole person, acknowledging that quality benefits support a thriving workforce. Leading in the integration of AI with human communication, our efforts are centered on cultivating genuine connections, nurturing trust and facilitating collaborative success.

Promoting Inclusion and Diversity
At mpathic, we welcome underrepresented individuals in tech and outside of tech. Maybe you've been overlooked, faced a glass ceiling, a paperwork barrier, couldn't code switch exactly right, had to up-manage others while doing all the work, don't want to have to deal with feeling tired or like an outsider anymore. We are a tech company run by a psychologist in a tech environment that has a history of systemic problems; we are re-imagining start-up life together, intentionally.

Our workplace values include equality, transparency, and inclusion. We take pride in managing systemic bias within the company. Our Board of Directors and VCs are all 100% women or non-binary, and our company includes more than 60% persons of color.


mpathic is an Equal Employment Opportunity (EEO) employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, gender, national origin, disability status, protected veteran status, or any other characteristics protected by law. We believe in diversity and inclusion, and we welcome applicants from all backgrounds to join our team.

Compensation:

Base Pay + Equity + Benefits

A reasonable estimate of the salary range for this role is $130,000- $170,000. Any offered salary range is based on a wide array of factors including but not limited to skillset, experience, training, location, scope of role, management responsibility, etc.

Following our Equal Pay Commitment, we have salary banding and established vesting schedules for equity.

We’re excited to meet you!

To apply:

At this time, we require that all applicants are eligible to accept employment in the United States

Please share with us:

  • Resume or links that best showcase what you've built or done
  • Two references

We are looking for you. If you don't think you meet the qualifications for the jobs posted, but think you're a fit or want to get involved, send us a note at joinus@mpathic.ai or reach out to any team member on LinkedIn to say, "hi." We keep resumes on file and we're growing fast!