Sully.ai Logo

Sully.ai

GRC Specialist

Posted 7 Days Ago
Remote
Hiring Remotely in US
Senior level
Remote
Hiring Remotely in US
Senior level
Lead identification and remediation of security and compliance risks, build and run a Third Party Risk Management program, ensure device and contractor environment compliance, automate processes, and support enterprise negotiations to prevent security from blocking customer acquisition.
The summary above was generated by AI

About Us
At Sully.ai, We’re Building the Most Impactful Healthcare Company on Earth

We believe that access to a great doctor is a basic human right. Today, that’s not a reality. Delays, misdiagnoses, administrative chaos, and burnout plague the system.

Our Mission: One Human, One Doctor. We build AI teammates that augment clinicians — scribes, nurses, receptionists, translators — all powered by our own world-class models and deployed in real-world care.

Our Traction

  • 450+ organizations signed 16 months

  • AI agents cut admin by ~2.8 hours daily and reduce onboarding 85%.

  • 5M+ Clinical Tasks completed to date, serving 36+ specialties.

  • Raised $25M from YC, Eric Yuan, Amity, Semper Virens

  • Patented AI architecture (MedCon-1) outperforms GPT-4.5, Gemini, Claude on clinical reasoning tasks

Sully requires A-players capable of 4 months = 1 year output.

About the Role
  • At Sully.ai, we're looking for a highly motivated and result-driven Security and Compliance Engineer who can take self-action and drive outcomes without needing direction. This individual will be responsible for identifying and resolving security and compliance risks that could potentially block customer acquisition and ensure that these risks do not block other teams from serving clients. They will be a key player in building and executing a Third Party Risk Management program, ensuring all user devices are fully compliant with security requirements, and creating a clear plan forward for contractor virtual environments.

Key Responsibilities
  • Identify security and compliance risks that could potentially block customer acquisition, and resolve these risks without needing direction.

  • Build and execute a Third Party Risk Management program, ensuring all user devices are fully compliant with security requirements.

  • Create a clear plan forward for contractor virtual environments, ensuring compliance with security protocols.

  • Take initiative in finding and accurately capturing risk items, backing up findings with research and evidence.

  • Continuously look forward and build efficiencies and automations in daily tasks, driving predictable and repeatable revenue growth.

  • Collaborate with cross-functional teams to drive complex enterprise negotiations, ensuring compliance with security and compliance frameworks.

  • Develop and implement repeatable playbooks for outbound → demo → closed-won conversion, building high-performing sales teams and onboarding programs.

  • Drive and systematize revenue growth, increasing demo conversion and leading complex enterprise negotiations with high stakes and long sales cycles.

Hard Requirements
  • Mastery of security and compliance frameworks, with expertise in identifying and mitigating security risks.

  • Strong analytical and problem-solving skills, with the ability to find and resolve problems without needing direction.

  • Experience in building and executing Third Party Risk Management programs, ensuring compliance with security requirements.

  • Strong ability to operate independently in ambiguity, execute decisively, and be self-driven and highly motivated.

  • Experience in working with cloud-based security platforms, with a focus on building and executing security and compliance programs.

  • Strong technical skills, with expertise in security protocols, risk management, and compliance frameworks.

Key Results (First 90 Days)
  • Identify Security and Compliance items that could potentially block customer acquisition.

  • Resolve Security and Compliance risks to company objectives.

  • Build out a full Third Party Risk Management program leveraging in-place solutions. Add all current vendors to this platform.

  • Get all user devices fully compliant with security requirements.

  • Create a clear plan forward for contractor virtual environments.

  • Ensure Security and Compliance does not block other teams from being able to serve clients.

Who Thrives Here

  • Entrepreneurial to your core: You think in outcomes, thrive in chaos, and take ownership without limits

  • Mission-obsessed: You’re here to save lives, not just ship features — patients and doctors are your why.

  • Impact-driven & fast-moving: You sprint toward hard problems and ship with sharp judgment.

  • Elite teammate: You raise the bar through high standards, direct feedback, and craft excellence.

Why Join Sully.ai?
🔥 Revolutionizing the antiquated $800B+ Healthcare market

🧠 50%+ of us are ex-founders. We hire A-players, not passengers

⚡️ Speed matters - we operate with urgency, autonomy, and ownership

🧪 You’ll work on real, first-of-their-kind problems at the edge of AI and medicine

❤️ Your work helps doctors reclaim their time - and patients get better, faster care

Sully.ai is an equal opportunity employer. In addition to EEO being the law, it is a policy that is fully consistent with our principles. All qualified applicants will receive consideration for employment without regard to status as a protected veteran or a qualified individual with a disability, or other protected status such as race, religion, color, national origin, sex, sexual orientation, gender identity, genetic information, pregnancy or age. Sully.ai prohibits any form of workplace harassment. 

Similar Jobs

2 Hours Ago
Remote or Hybrid
San Francisco, CA, USA
Mid level
Mid level
Artificial Intelligence • Fintech • Payments • Business Intelligence • Financial Services • Generative AI
As a GRC Specialist, you will manage security controls, ensure compliance, and collaborate with teams to mitigate risks and develop policies.
Top Skills: AutomationCloud EnvironmentsInformation SecurityIso 27001Pci-DssSoc2
21 Days Ago
Remote
USA
Senior level
Senior level
Security • Software
As a Senior GRC Specialist, you will guide customers through compliance frameworks, enable cross-functional teams, and ensure audit readiness.
Top Skills: Fda CfrFedrampGdprHipaaHitrustIso 27001Soc 2Us Privacy
19 Minutes Ago
Easy Apply
Remote or Hybrid
USA
Easy Apply
105K-127K Annually
Mid level
105K-127K Annually
Mid level
Artificial Intelligence • Cloud • Information Technology • Machine Learning • Software • Big Data Analytics • Automation
The Territory Executive will manage mid-sized accounts, drive growth through consultative selling, and engage C-level executives to expand PagerDuty's Operations Cloud usage.
Top Skills: MeddiccSalesforce

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account