GRC Specialist

Sully AI
US - RemotePosted 9 March 2026

Tech Stack

Job Description

GRC Specialist About Us At Sully.ai http://Sully.ai, We’re Building the Most Impactful Healthcare Company on Earth We believe that access to a great doctor is a basic human right. Today, that’s not a reality. Delays, misdiagnoses, administrative chaos, and burnout plague the system. Our Mission: One Human, One Doctor. We build AI teammates that augment clinicians — scribes, nurses, receptionists, translators — all powered by our own world-class models and deployed in real-world care. ABOUT THE ROLE - At Sully.ai http://Sully.ai, we're looking for a highly motivated and result-driven Security and Compliance Engineer who can take self-action and drive outcomes without needing direction. This individual will be responsible for identifying and resolving security and compliance risks that could potentially block customer acquisition and ensure that these risks do not block other teams from serving clients. They will be a key player in building and executing a Third Party Risk Management program, ensuring all user devices are fully compliant with security requirements, and creating a clear plan forward for contractor virtual environments. KEY RESPONSIBILITIES - Identify security and compliance risks that could potentially block customer acquisition, and resolve these risks without needing direction. - Build and execute a Third Party Risk Management program, ensuring all user devices are fully compliant with security requirements. - Create a clear plan forward for contractor virtual environments, ensuring compliance with security protocols. - Take initiative in finding and accurately capturing risk items, backing up findings with research and evidence. - Continuously look forward and build efficiencies and automations in daily tasks, driving predictable and repeatable revenue growth. - Collaborate with cross-functional teams to drive complex enterprise negotiations, ensuring compliance with security and compliance frameworks. - Develop and implement repeatable playbooks for outbound → demo → closed-won conversion, building high-performing sales teams and onboarding programs. - Drive and systematize revenue growth, increasing demo conversion and leading complex enterprise negotiations with high stakes and long sales cycles. HARD REQUIREMENTS - Mastery of security and compliance frameworks, with expertise in identifying and mitigating security risks. - Strong analytical and problem-solving skills, with the ability to find and resolve problems without needing direction. - Experience in building and executing Third Party Risk Management programs, ensuring compliance with security requirements. - Strong ability to operate independently in ambiguity, execute decisively, and be self-driven and highly motivated. - Experience in working with cloud-based security platforms, with a focus on building and executing security and compliance programs. - Strong technical skills, with expertise in security protocols, risk management, and compliance frameworks. KEY RESULTS (FIRST 90 DAYS) - Identify Security and Compliance items that could potentially block customer acquisition. - Resolve Security and Compliance risks to company objectives. - Build out a full Third Party Risk Management program leveraging in-place solutions. Add all current vendors to this platform. - Get all user devices fully compliant with security requirements. - Create a clear plan forward for contractor virtual environments. - Ensure Security and Compliance does not block other teams from being able to serve clients. Why Join Sully.ai http://Sully.ai? 🔥 Revolutionizing the antiquated $800B+ Healthcare market 🧠 50%+ of us are ex-founders. We hire A-players, not passengers ⚡️ Speed matters - we operate with urgency, autonomy, and ownership 🧪 You’ll work on real, first-of-their-kind problems at the edge of AI and medicine ❤️ Your work helps doctors reclaim their time - and patients get better, faster care Sully.ai is an equal opportunity employer ... (truncated, view full listing at source)