Compliance Lead

United StatesFull-timePosted about 2 hours ago
Description
About Fullscript We’re an industry-leading health technology company on a mission to help people get better. We started in 2011 with one simple idea. Make it easier for practitioners to access the products they trust so they can deliver better care. That simple idea grew into a platform that powers every part of care. Today, more than 125,000 practitioners use Fullscript for clinical insights, lab interpretations, patient analytics, education, and access to high-quality supplements. Over 10 million patients rely on Fullscript to stay connected to their care plans and follow through on treatment. We build tools that make care smarter and more human. Tools that save time, simplify decisions, and help practitioners stay closely connected to the people they care for. When everything they need is in one place, they can focus on what matters most: helping people get better. This is your invitation. Bring your ideas, your grit, and your care for people. Join us and shape the future of care.

Privacy, trust, and responsible innovation sit at the center of everything we build. As our Compliance Lead, you'll help shape how privacy and data governance scale across a rapidly growing health technology platform serving licensed practitioners and their patients across North America.

You'll work at the intersection of healthcare, AI, product development, and regulatory compliance, partnering closely with Product, Engineering, Security, Data, Clinical, and Customer Support teams. This role is ideal for someone who enjoys translating complex regulations into practical business decisions, influencing cross-functional stakeholders, and enabling innovation while protecting patient trust.


What You'll Do

Product Governance and Growth Support

  • Partner with Product and Engineering on new features, architecture, and user flows to ensure privacy-by-design is integrated before launch, not retrofitted after.

  • Lead privacy review of AI features and AI vendors, including model training restrictions, PHI usage controls, transparency disclosures, and pre-launch governance checkpoints.

  • Support clinical research, outcomes tracking, and de-identification workflows so that secondary uses of data are governed under documented standards.

  • Triage and respond to fast-moving product and commercial requests with calibrated, written guidance.

  • Privacy Operations and System Support

  • Own day-to-day execution of core privacy operations alongside the Senior Director of Compliance, with the ability to operate independently on assigned workstreams.

  • Operate Fullscript’s OneTrust environment for vendor reviews, data mapping, PIAs, consumer rights requests, and reporting, including configuration of new workflows as the program scales.

  • Lead privacy incident response activities, including intake, triage, coordination with cross-functional stakeholders, documentation, and tracking remediation efforts through resolution.

  • Business Enablement and Compliance Monitoring

  • Build trusted working relationships with stakeholders across the business so that privacy is engaged early on new initiatives rather than at the end.

  • Translate HIPAA, PIPEDA, Quebec Law 25, CPRA, and other applicable US state privacy laws into plain-language guidance, playbooks, and training materials the business can use without further interpretation.

  • Maintain ongoing monitoring of Fullscript’s privacy posture, surface emerging risk areas to the Senior Director of Compliance.


  • What You Bring

  • 7+ years of dedicated, hands-on privacy experience, specifically in roles requiring deep cross-collaboration.

  • Proven track record of working closely with Product and Engineering teams to embed data protection and privacy guardrails directly into features, technical solutions, and product designs.

  • Must have direct experience working within the US healthcare industry (HIPAA).

  • Proven, direct experience working within OneTrust.

  • Deep understanding of US and Canadian privacy landscapes, with the ability to confidently navigate and apply requirements.

  • Experience and strong foundational knowledge regarding the privacy implications of AI.

  • Exceptional ability to build relationships across a business and communicate compliance requirements clearly and simply.

  • A pragmatic, solution-oriented Individual Contributor who thrives on autonomy and fast business growth.


  • Why Fullscript Great work happens when people feel supported, trusted, and inspired. At Fullscript, we stay curious and keep finding smarter ways to make care better. We grow together, take on new challenges, and focus on impact. We put people first, work as a team, and leave egos at the door. What to Know Before You Apply We’re grateful for the interest in joining Fullscript. To make sure your application reaches our hiring team, please apply directly through our careers page.

    A quick note: Due to the high volume of applications, we’re not able to respond to phone or email inquiries about application status. If there’s a match, our team will reach out directly. Fullscript is an equal opportunity employer committed to creating an inclusive workplace. Accommodations are available upon request at [email protected]. All offers are contingent on successful background checks conducted in compliance with federal, state, and provincial laws. We use AI tools to support parts of the hiring process, including screening and reviewing responses. Final hiring decisions are always made by people and follow all applicable privacy and employment laws in Canada and the U.S. Learn More www.fullscript.com @fullscriptHQ on instagram Let’s make healthcare whole
    Apply Now
    Take the next step in your career
    Apply for this Position
    Links