Senior Director, Clinical Compliance
Job description
Senior Director, Clinical Compliance at Openloop Health.
About the role
The Senior Director, Clinical Compliance at Openloop Health is responsible for establishing and maintaining an enterprise-wide compliance program that ensures the organization can operate with integrity across all jurisdictions in which it provides services. This role requires a strategic leader who can translate complex regulatory landscapes into actionable frameworks for a rapidly scaling technology organization. The successful candidate will exercise judgment and ownership over critical risk areas, ensuring that policies and procedures are not only written but are living documents that drive consistent behavior. You will act as a key advisor to executive leadership, translating regulatory requirements into operational controls. This position demands a proactive mindset focused on building resilient processes rather than simply reacting to issues as they arise. You will be instrumental in fostering a culture of compliance that supports innovation while protecting the organization and its stakeholders.
Key facts
What you'll do
- Assume end-to-end ownership of the compliance program, driving demonstrable regulatory readiness across every legal regime applicable to a multi-state telehealth operation.
- Act as the named responsible executive in all regulator-facing documentation and communications, serving as the primary liaison with oversight bodies.
- Design, implement, and oversee the full compliance program architecture, applying the seven elements framework to ensure comprehensive coverage of all regulatory obligations.
- Author, manage, and govern the full lifecycle of policies and standard operating procedures, ensuring proper version control, stakeholder attestation, and timely retirement of outdated documentation.
- Lead the development and execution of HIPAA Privacy and Security programs, directing the organization's response to breaches from initial detection through notification and regulatory documentation.
- Provide strategic support to the GDPR Data Protection Officer function, ensuring cross-border data transfer mechanisms and privacy controls are robust and auditable.
- Establish and manage the intake, triage, investigation, and reporting processes for the hotline and case management system, including root-cause analysis and corrective action planning.
- Build and maintain an effective exclusion and sanction screening program, ensuring ongoing monitoring and rapid response to any list changes or regulatory updates.
- Develop and administer a conflict-of-interest management framework, including oversight of Stark Law and non-monetary compensation tracking to mitigate referral risks.
- Direct a team of functional managers, providing leadership, development, and performance management for roles such as Healthcare Investigations, Policy & Governance, Exclusion & Sanction Screening, and HIPAA & Privacy Compliance.
- Oversee the work of the Conflict of Interest Program Administrator and the Stark Law & Non-Monetary Comp Analyst to ensure accurate data collection and analysis.
- Prepare comprehensive reports for the board of directors and senior leadership, providing clear visibility into compliance program status, enterprise risk posture, and the status of corrective action plans.
- Design, deploy, and continuously improve a compliance training curriculum that meets the needs of a diverse workforce and clinician network, fulfilling the requirements of OIG Element 3.
Requirements
You must possess a minimum of years of progressive experience in healthcare compliance or health law, with a proven track record of owning and managing end-to-end compliance programs. Your expertise must include deep, working knowledge of the Office of Inspector General Seven Elements framework and how to apply them in a dynamic, technology-driven environment. You have direct ownership of HIPAA Privacy and Security program implementation, policies, and incident response activities. You bring strong GDPR experience to the role, with a clear understanding of data subject rights, lawful processing bases, and international data transfer requirements. You have managed and developed compliance teams across multiple states, demonstrating the ability to lead professionals in a technology-forward healthcare or pharmacy-adjacent setting. You hold or are actively pursuing professional compliance credentials such as CHC, CHPC, or CCEP, which validate your expertise and commitment to the field. You project executive presence and sound judgment, earning the trust of stakeholders as the appropriate individual to sign regulatory documentation. You are a high-integrity professional and a low-ego collaborator, skilled at influencing peers across Legal, Product, Security, and Clinical departments without direct authority. You thrive in ambiguous situations, balancing attention to detail with the ability to see the strategic picture. You communicate effectively, tailoring your message for diverse audiences, from the boardroom to the frontline workforce.
Nice to have
Only items explicitly stated as preferred in the source material are reflected here, including preferred credentials and specific experience requirements that signal strong alignment with the position.
Practical notes
Note: Own end-to-end accountability for OpenLoop's compliance program and demonstrable regulatory readiness across every regime governing a multi-state telehealth company.
For Senior Director, Clinical Compliance at Openloop Health, Serve as named responsible executive in regulator-facing documentation.
Own compliance program design and oversight across all seven OIG elements, including written standards, training and education, and program oversight.
Own policy and SOP lifecycle-authoring, versioning, attestation, and retirement across all OpenLoop subsidiaries.
Own HIPAA Privacy and Security programs; manage breach response from detection through notification and documentation.
For Senior Director, Clinical Compliance at Openloop Health, Support GDPR Data Protection Officer function.
Oversee hotline and investigation program-intake, triage, root-cause analysis, corrective action, and self-disclosure workflow.
For Senior Director, Clinical Compliance at Openloop Health, Own exclusion and sanction screening program.
Administer conflict-of-interest program and Stark Law and non-monetary compensation tracking program.
Manage Healthcare Investigations Manager, Policy & Governance Manager, Exclusion & Sanction Screening Lead, and HIPAA & Privacy Compliance Manager.
Oversee Conflict of Interest Program Administrator and Stark Law & Non-Monetary Comp Analyst.
Prepare board and leadership reporting on program status, risk posture, and open corrective actions.
Design and maintain compliance training curriculum across workforce and clinician network (OIG Element 3).
- years in healthcare compliance or health law with end-to-end compliance program ownership.