Compliance Specialist

Hightouch
Summary
Join Hightouch as our first dedicated compliance operations hire and be instrumental in maintaining and improving our compliance infrastructure across multiple regulatory frameworks. Manage employee onboarding and offboarding processes, oversee implementation and enforcement of MDM policies, and process access requests. Maintain data subject request software and workflows, manage third-party risk assessment questionnaires, and conduct preliminary vendor security assessments. Assist in maintaining ISO 27001 and SOC 2 compliance programs and collaborate with various teams to ensure compliance. This role reports directly to our Senior Counsel and requires foundational compliance experience and a strong understanding of privacy and security standards.
Requirements
- Bachelor's degree or comparable experience
- 1-3 years of experience in compliance, privacy, or risk management roles
- Working knowledge of GDPR, HIPAA, and other similar privacy regulations
- Familiarity with ISO 27001 and SOC 2 frameworks and requirements
- Strong attention to detail and organizational skills
- Excellent written and verbal communication abilities
- Ability to work independently and manage multiple priorities
Responsibilities
- Manage employee onboarding and offboarding processes within Hightouchโs compliance platforms
- Oversee implementation and enforcement of mobile device management (MDM) policies
- Process and monitor access requests across various systems and applications
- Maintain data subject request (DSR) software and workflow processes
- Manage cross-functional third-party risk assessment questionnaire responses
- Conduct preliminary vendor security assessments and maintain compliance documentation
- Assist in maintaining ISO 27001 and SOC 2 compliance programs
- Collaborate regularly with IT, IS, Engineering, Legal, and HR teams to ensure continued compliance with applicable laws
Preferred Qualifications
- CIPP or similar certification
- Experience with compliance management platforms like Vanta
- Previous experience in a fast-growing technology environment
- A track record of managing the goals of multiple stakeholders