ForgeApply · Job listing
Director, Compliance & AI Governance
Akasa
Apply in about a minute — without sacrificing quality.
ForgeApply autofills this application and tailors your resume to this exact posting. You review everything before it's sent. Free trial, no card required.
About this role
About AKASA
At AKASA, our mission is to build the future of healthcare with AI. As the leading provider of generative AI solutions for the healthcare revenue cycle, we help health systems comprehensively capture and communicate the full patient clinical journey. By empowering health systems to streamline their operations, they can focus on what matters most - delivering quality patient care. We have raised over $205M in funding from investors such as Andreessen Horowitz, BOND, and Costanoa Ventures.
This is the most exciting time to join AKASA. Revenue bookings for our new AI-native product suite have grown over 20x since launching in 2024. In this time, we have broken our record for the largest deal in company history three times consecutively. This growth is driven by the massive improvement we are generating for our customers across clinical quality and documentation accuracy, both top priority areas for health system leaders.
Our deployments have been recognized nationally as "one of the most comprehensive real-world uses of GenAI in healthcare finance to date" (link https://hitconsultant.net/2025/10/13/cleveland-clinic-deploys-genai-for-coding-and-cdi-across-enterprise-powered-by-akasa/). Our customer base represents more than $120B+ in net patient revenue and includes the most innovative health systems in the country, like Cleveland Clinic, Duke, Stanford, and Johns Hopkins.
Some of our recent recognitions include being named one of America's Top Startup Employers 2026 by Forbes, #1 most promising healthcare RCM startup of 2025 by Black Book Market Research, and one of the fastest-growing GenAI startups to watch by AIM Research. Our CEO was ranked among the “Top 50 Healthcare Technology CEOs” by the Healthcare Technology Report, and we have been certified as a “Great Place to Work” for the past 6 years in a row.
We’re building on this momentum to redefine what’s possible in healthcare. We’re looking for exceptional people to help us accelerate that reality.
ABOUT THE ROLE
We’re looking for a strategic, automation-minded Director of Compliance & AI Governance to own and evolve AKASA’s compliance program as we scale. This role is ideal for someone who has led compliance in a healthcare SaaS or AI environment and wants to build a modern, engineering-forward program rather than a paperwork factory. You’ll own our HITRUST, SOC 2, and HIPAA programs end to end, operationalize emerging AI governance frameworks like the NIST AI RMF, and drive the policy lifecycle across the company. The ideal candidate treats compliance as a product: automated evidence collection, continuous control monitoring, and policies people actually read and follow. You’ll join a small, high-leverage team with immediate ownership and room to build. You thrive in a fast-paced startup environment and are agile with an ownership mindset.
This is an on-site position that requires 3+ days a week in our South San Francisco HQ.
WHAT YOU’LL DO
- Own AKASA’s compliance certification portfolio end to end (including HITRUST CSF, SOC 2 Type II, and HIPAA) from control design and implementation through evidence collection, audit coordination, and remediation. Evaluate and pursue new certifications and attestations (such as ISO 27001, ISO 42001, and HITRUST AI) as customer and market needs evolve.
- Define compliance roadmaps and ensure org-wide adoption, driving cross-functional alignment and accountability on regulatory requirements.
- Build our AI governance program grounded in the NIST AI RMF, partnering with Engineering, Product, and Legal to establish model risk assessments, AI use policies, and documentation that meets enterprise health system expectations.
- Drive compliance automation as a first principle: implement and optimize GRC and continuous control monitoring tooling, automate evidence collection across our stack (Okta, Google Workspace, Kandji/Iru, SentinelOne, Nightfall, AWS), and use AI tools to streamline policy drafting, control mapping, and audit preparation.
- Own the full policy lifecycle, including authoring, review cadences, exception handling, attestation campaigns, and version control; ensuring policies are clear, practical, and mapped to the frameworks we certify against.
- Be the compliance face of AKASA for customers and prospects: lead security and compliance questionnaire responses, support enterprise sales cycles, manage customer audits, and maintain trust artifacts including BAAs, our trust center, and shared assessments. Find ways to automate these processes using AI first tooling.
- Oversee vendor and third-party risk management, the annual risk assessment, security awareness and HIPAA training programs, and incident response documentation and tabletop exercises in partnership with Security and IT.
- Partner with Legal and Security leadership on all security-related contractual obligations.
SKILLS & QUALIFICATIONS
- 8+ years experience in security compliance, GRC, or risk management, including 2+ years leading a team or function. Healthcare SaaS, health tech, or AI startup experience strongly preferred.
- Deep, hands-on expertise across HITRUST CSF (r2 preferred), SOC 2 Type II, HIPAA Security and Privacy Rules, and emerging AI governance frameworks like NIST AI RMF. You’ve run certification and audit cycles from start to finish and know how to translate AI governance standards into real controls for a company building on PHI.
- An automation-first instinct: hands-on experience with GRC and continuous control monitoring platforms (Vanta, Drata, Hyperproof, or similar), evidence collection automation, and a track record of using AI tools (ChatGPT, Claude) to push the boundaries of what a lean compliance function can do.
- End-to-end policy ownership: drafting, cross-framework mapping, and running review/exception/attestation cycles.
- Comfort in front of customers: enterprise security questionnaires, sales-cycle support, BAA/secu
Salary insight
The midpoint of this range ($168k) is about 17% below the median disclosed salary for San Francisco roles listed on ForgeApply ($202k across 6,449 jobs).
Based on live postings with disclosed pay on ForgeApply; refreshed daily. Not an estimate of this employer's offer.
Ready to apply to Akasa?
Apply in about a minuteSimilar jobs
- Senior Compliance Engineer, AI Governance — Trueanomalyinc · Denver, CO or Long Beach, CA or Washington, DC or SF Bay Area, CA
- Director, Compliance — Figure · Remote
- Director, Compliance — Dynetherapeutics · Remote
- Director, Compliance and Privacy — Pomelocare · Remote
- Director, Compliance Operations — Honor · Remote
- Director, AI Enablement & Security — Bloomreach · United States
- Director of Governance, Risk, and Compliance — Eliseai · New York City
- Director, AI Strategy & Transformation — Butterflymx · Remote
More like this: More jobs at Akasa · Browse all jobs