Senior Compliance Specialist
ExternalPrepare for this interview
EliteAI-generated questions, company research, and talking points tailored to this role
About the role
At Office Ally, we've been revolutionizing healthcare administration since our inception. What started as a clearinghouse focused on simplifying insurance claims processing for healthcare providers has grown into a full-suite healthcare technology company. We offer a range of affordable, cloud-based revenue cycle management solutions -from eligibility verification and claims management to revenue recovery and payment processing -that help healthcare organizations of all sizes streamline operations and reduce administrative burdens so they can focus on what matters most: patient care. In April 2026, Office Ally acquired Jopari Solutions, Inc, a leader in straight-through electronic claims processing for Property & Casualty (P&C), Commercial, and Government healthcare. Jopari brings deep industry expertise and innovative enterprise payment solutions that are transforming how disbursements are handled across the insurance ecosystem. Together, we are expanding our capabilities across the full healthcare transaction lifecycle, connecting claims, payments, and data exchange to deliver a more seamless and efficient experience for providers, payers, and partners. At the core of our company are four key values that guide our mission and work: Ownership : We take pride in our responsibilities, driving results and taking accountability for the success of our projects. Empowerment : We believe in giving our team the autonomy and support to make decisions that lead to innovative solutions. Innovation : We continuously seek new and better ways to improve healthcare administration, embracing creativity and forward-thinking technology. Transparent Communication : Open, honest communication is at the heart of our collaborations, internally and with our clients, ensuring alignment and trust. The Senior Compliance Specialist supports the organization's enterprise compliance, privacy, risk, and third-party oversight activities. This role is responsible for managing customer and vendor compliance questionnaires, supporting external audits and attestations (including SOC audits), monitoring regulatory requirements, and evaluating state and federal laws affecting healthcare operations, privacy, information security, and business practices. The ideal candidate possesses strong analytical skills, experience interpreting complex regulations, and the ability to translate compliance requirements into operational guidance. This position will work cross-functionally with Compliance, Legal, Information Security, Product, Operations, and executive leadership to maintain compliance readiness and support regulatory obligations.
Responsibilities
- Vendor & Customer Compliance Due Diligence
- Lead and coordinate responses to customer, partner, and vendor due diligence questionnaires, including security, privacy, compliance, and risk assessments.
- Manage responses for industry-standard assessments and frameworks, including but not limited to:
- SOC 1 / SOC 2
- HIPAA / HITECH
- HITRUST
- Shared Assessment AUP Full SIG
- NIST Cybersecurity Framework
- ISO 27001
- HECVAT and other customer-specific security/compliance assessments
- Gather supporting evidence, coordinate internal stakeholders, and maintain a repository of standard responses and supporting documentation.
- Identify response gaps and work with internal teams to drive remediation or clarification.
- SOC Audit & Control Support
- Coordinate activities supporting annual external audits and attestations, including SOC audits.
- Assist in collecting evidence, validating controls, and preparing documentation for auditors.
- Review SOC reports and control narratives to understand organizational obligations, risks, and remediation opportunities.
- Monitor compliance with internal controls and assist in control testing and documentation.
- Regulatory Research & Compliance Analysis
- Research, interpret, and analyze state and federal regulations impacting the organization.
- Monitor regulatory developments related to healthcare, privacy, cybersecurity, claims processing, electronic transactions, and data exchange.
- Review and summarize laws, regulations, guidance, and proposed rulemaking into business-friendly recommendations.
- Support assessments of operational impacts from new or changing requirements.
- Policy & Compliance Program Support
- Assist with drafting, reviewing, and maintaining organizational compliance policies, procedures, standards, and controls.
- Evaluate policies against regulatory and contractual obligations.
- Support risk assessments, compliance monitoring, and internal reviews.
- Maintain documentation supporting audits, customer reviews, and compliance evidence requests.
- Cross-Functional Collaboration
- Partner with Information Security, Legal, Operations, Product, and Business teams to evaluate compliance implications of new initiatives, vendors, products, and services.
- Participate in compliance-related meetings and provide subject matter support on regulat
Benefits
Your Match
How well this role fits your profile.
Company Intel
What employees say
Worked at officeally? Share your experience