Director of Compliance

New York City Office

Apply now Apply later

Company Description

Today, when you go to your doctor and get referred to a specialist (e.g., for sleep apnea), your doctor sends out a referral and tells you, “They’ll be in touch soon.” So you wait. And wait. Sometimes days, weeks, or even months. Why? Because too often specialists and medical services are overwhelmed with referrals and the painstakingly manual process it takes to qualify your referral prevents them from getting around to it one time, or sometimes at all. Tennr prevents these delays and denials by making sure every referral gets where it needs to go, with the right info, at the right time. Powered by RaeLM™ Tennr reads, extracts, and acts on every piece of patient information so providers can capture more referrals, slash denials, and reduce delays.

Tennr is a NYC-based tech company that launched out of Y-Combinator and is backed by Andreesen Horowitz, Lightspeed Venture Partners, Foundation Capital, The New Normal Fund, and other top investors.

Role Description

We’re hiring a Director of Compliance to build and lead a cross-functional compliance program that spans both healthcare regulation and enterprise SaaS standards. This role will own policy development, internal controls, training, and audit readiness across the business. You’ll partner closely with Legal, Security, Product, and Customer-facing teams to proactively manage risk while enabling the company to scale with confidence.

You’ll be the primary owner of HIPAA compliance and commercial frameworks such as SOC 2, SOC 1, and ISO 27001—ensuring we meet the expectations of enterprise customers, regulators, and partners. This is a high-impact, high-ownership role that blends strategic policy design with hands-on execution. The ideal candidate is pragmatic, detail-oriented, and deeply comfortable operating across regulated environments and fast-moving startups.

Responsibilities

  • Build and maintain a comprehensive compliance program spanning healthcare (HIPAA) and commercial SaaS standards (SOC 2, SOC 1, ISO etc.).

  • Design, document, and enforce internal policies and controls that mitigate risk across legal, security, and operational domains.

  • Monitor changes in healthcare regulations and enterprise security standards, and update internal practices accordingly.

  • Own compliance-related documentation for internal use and external review, including security questionnaires, policies, attestations, and customer-facing materials.

  • Collaborate with Legal, Security, Product, and CX to embed compliance into onboarding, contracting, data handling, and day-to-day workflows.

  • Lead company-wide compliance training programs on topics such as privacy, data security, anti-harassment, and ethical conduct.

  • Oversee vendor risk management, including diligence, contracts, and ongoing compliance monitoring.

  • Serve as the primary liaison for audits, regulatory inquiries, and enterprise customer compliance reviews.

  • Build lightweight reporting systems to track compliance status, gaps, remediation progress, and escalations.

Candidate Qualification

Required

  • 6+ years of experience in compliance, risk, legal operations, or information security in a SaaS, healthcare, or regulated tech environment.

  • Deep familiarity with HIPAA and commercial compliance frameworks such as SOC 2, SOC 1, ISO 27001, and/or GDPR.

  • Proven ability to design and maintain internal controls, policy documentation, and audit readiness programs.

  • Experience running cross-functional compliance initiatives, including training, vendor risk management, and enterprise customer reviews.

  • Strong writing and organizational skills—able to create and manage detailed documentation for both internal and external use.

  • Excellent judgment, with the ability to assess legal and operational risk and escalate appropriately.

Nice to Have

  • Experience in both healthcare and SaaS environments.

  • Familiarity with payer-side compliance topics (e.g., Medicare FWA, state regulations).

  • Exposure to customer contracting workflows and negotiation support on compliance topics.

  • Comfortable working in a high-growth, startup environment with limited structure and high ambiguity.

Why Tennr?

  • Drive Impact: Play a crucial role in Tennr’s growth by ensuring the seamless execution of vital business development and partnership operations.

  • Accelerate Your Growth: Develop valuable skills and gain experience within a rapidly scaling company at the forefront of healthcare technology.

  • Innovate with Purpose: Join a passionate, high-caliber team leveraging cutting-edge AI to fundamentally transform healthcare.

  • Be Rewarded: Receive a competitive compensation package, including generous equity, top-tier healthcare benefits, and a 401k match.

  • Collaborate & Connect: Thrive in our vibrant NYC Chelsea office (4 days/week onsite preferred) with opportunities for occasional travel.

Benefits

  • New, spacious Chelsea office

  • Unlimited PTO

  • 100% paid employee health benefit options

  • Employer funded 401(k) match

  • Competitive parental leave

Ready to Drive Operational Excellence and Support Healthcare Innovation? If you are a highly organized, execution-focused professional passionate about supporting impactful partnerships and business development initiatives in a fast-paced, innovative environment, we want to hear from you. Apply today to help Tennr redefine healthcare through cutting-edge AI and effective collaborations!

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  0  0  0

Tags: Audits Compliance GDPR HIPAA ISO 27001 Monitoring Privacy Risk management SaaS SOC SOC 1 SOC 2

Perks/benefits: 401(k) matching Career development Competitive pay Equity / stock options Health care Medical leave Parental leave Startup environment Unlimited paid time off

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.