1

Weekend Governance Risk Compliance Jobs in Utah (NOW HIRING)

Governance, Risk & Compliance Lead

Draper, UT · On-site

$146K/yr

You will build our governance, risk, and compliance program from the ground up and carry us to certification against HITRUST CSF, ISO/IEC 27001, SOC 2 Type II, and ISO/IEC 42001, while keeping us ...

What you need to succeed * 5-8+ years of experience in Governance, Risk & Compliance (GRC), Information Security, Audit, Risk Management, or a related field. * Solid understanding of industry ...

A Cybersecurity / GRC Engineer supports the execution and continuous improvement of an organization's governance, risk, and compliance (GRC) program. This role operates under the direction of GRC ...

next page

Showing results 1-20

Weekend Governance Risk Compliance information

What are the key skills and qualifications needed to thrive as a Weekend Governance Risk Compliance professional, and why are they important?

To thrive as a Weekend Governance Risk Compliance professional, you need a strong understanding of risk management frameworks, regulatory requirements, and compliance standards, often supported by a relevant degree or certifications like CISA, CRISC, or CISSP. Familiarity with GRC tools (such as RSA Archer or ServiceNow), audit software, and documentation systems is typically required. Attention to detail, analytical thinking, and effective communication are essential soft skills for identifying risks and collaborating with stakeholders. These skills are crucial for ensuring organizations remain compliant, minimize risks, and maintain operational integrity during off-peak hours.

What is the difference between Weekend Governance Risk Compliance vs Weekend Compliance Officer?

AspectWeekend Governance Risk ComplianceWeekend Compliance Officer
CertificationsGRC certifications, ISO standardsCompliance certifications, industry-specific licenses
Work EnvironmentCorporate offices, financial institutionsRetail, manufacturing, or service settings
Job FocusRisk management, policy enforcement, governanceMonitoring compliance, audits, reporting

Weekend Governance Risk Compliance professionals focus on managing organizational risks and governance policies, often working in corporate or financial sectors. Weekend Compliance Officers primarily ensure adherence to industry regulations in various operational environments. Both roles require compliance knowledge but differ in scope and focus, with GRC roles emphasizing risk and governance frameworks.

How does working a weekend Governance, Risk, and Compliance (GRC) role differ from standard weekday positions in terms of responsibilities and team collaboration?

In a weekend GRC position, you will often be responsible for monitoring compliance activities that require coverage outside of typical business hours, such as responding to urgent risk events or ensuring ongoing regulatory adherence. While some tasks may be more independent, you’ll still collaborate closely with weekday teams through detailed handover reports, virtual meetings, and shared documentation. This structure allows for continuous oversight and can present unique challenges, such as quickly adapting to issues without immediate in-person support. However, it also offers the opportunity to develop strong problem-solving skills and gain visibility with leadership by managing critical incidents during off-hours.

What is a Weekend Governance Risk Compliance role?

A Weekend Governance Risk Compliance (GRC) professional is responsible for overseeing and managing an organization’s risk management, compliance, and governance programs during weekend hours. This role typically involves monitoring regulatory compliance, conducting risk assessments, and ensuring that internal controls are maintained outside of regular business hours. Weekend GRC professionals help organizations maintain continuous security and compliance coverage, address urgent risk issues that arise, and support incident response efforts when needed. Their work is crucial for industries that require 24/7 compliance and risk oversight.
What are the most commonly searched types of Governance Risk Compliance jobs in Utah? The most popular types of Governance Risk Compliance jobs in Utah are:
What are popular job titles related to Weekend Governance Risk Compliance jobs in Utah? For Weekend Governance Risk Compliance jobs in Utah, the most frequently searched job titles are:
What job categories do people searching Weekend Governance Risk Compliance jobs in Utah look for? The top searched job categories for Weekend Governance Risk Compliance jobs in Utah are:
What cities in Utah are hiring for Weekend Governance Risk Compliance jobs? Cities in Utah with the most Weekend Governance Risk Compliance job openings:
Governance, Risk & Compliance Lead

Governance, Risk & Compliance Lead

Xenter, Inc.

Draper, UT • On-site

$146K/yr

Full-time

Posted 13 days ago


Job description

About Xenter
Xenter is advancing a new generation of medical technologies-from diagnostic tools that help identify conditions earlier to procedural innovations designed to support more cost-effective treatment options across a broad patient population. By improving how conditions are identified and how procedures are performed, Xenter provides clinicians with real-time insight to support more precise and consistent decision-making. These products are designed with a strong focus on data, validation, and continuous improvement.
Building on this foundation, Xenter is developing a connected clinical intelligence platform that captures and organizes data across procedures and care settings. This platform enables health systems to expand access to advanced diagnostic tools while helping address barriers to care. Over time, this approach is designed to support more efficient care delivery and lower the total cost of care-creating value for providers, health systems, and patients.
At Xenter, you'll join an entrepreneurial team where innovation moves quickly, ideas become reality, and every employee has the opportunity to help shape technologies with the potential to change healthcare worldwide. You'll work alongside industry leaders, influence the direction of a rapidly growing company, and help bring breakthrough technologies from concept to commercialization.
We are hiring a GRC Lead, reporting to our Chief Risk and Information Security Officer (CRISO), to own security, compliance, and privacy assurance across the company. You will work hand in hand with our privacy, security, and compliance legal counsel to build a program that operates within the confines of the regulatory requirements governing our products and data. You will build our governance, risk, and compliance program from the ground up and carry us to certification against HITRUST CSF, ISO/IEC 27001, SOC 2 Type II, and ISO/IEC 42001, while keeping us aligned with HIPAA, FDA cybersecurity expectations, and applicable privacy regulations.
This is a hands-on role first and a leadership role second. In year one you will personally write policies, run risk assessments, gather evidence, and sit across the table from auditors. As the program and the company scale, you will hire and lead the GRC team that grows around you.
What You'll Do
Own the certification roadmap - define and execute the path to HITRUST CSF, ISO/IEC 27001, SOC 2 Type II, and ISO/IEC 42001, including readiness assessments, gap remediation, and external audit management.
Build a unified control framework - maintain a single control set mapped across HITRUST, ISO 27001/27701, SOC 2, HIPAA, FDA premarket and postmarket cybersecurity guidance, and state and international privacy laws, so evidence is collected once and reused everywhere.
Design scalable controls - favor controls that enable velocity rather than create friction, scale with company growth, and reduce audit burden through automation and evidence reuse.
Partner with legal counsel - build the program alongside our privacy, security, and compliance legal counsel, ensuring policies, controls, and practices stay within the confines of the regulatory requirements that apply to us.
Run the risk program - stand up enterprise risk management: risk register, risk treatment, third-party and vendor risk, and product security risk in partnership with quality and regulatory teams.
Write and operationalize policies - author the policy library, select and administer compliance automation tooling, and drive continuous control monitoring and evidence collection.
Secure a diverse technology footprint - partner with engineering across very different surfaces: cloud infrastructure, a consumer mobile app, silicone manufacturing operations, and edge computing hardware living on hospital networks.
Be the face of trust to hospitals - lead responses to hospital security reviews, customer security questionnaires, MDS2 forms, and BAA negotiations; make it easy for health systems to say yes to Xenter.
Lead privacy - own HIPAA compliance, GDPR, CCPA and other state privacy law obligations for our consumer app, data mapping, and privacy impact assessments.
Govern AI responsibly - establish AI governance under ISO/IEC 42001 in partnership with our data science and product teams as AI capabilities ship in our products.
Build the human layer - run security awareness training, incident response exercises, and business continuity and disaster recovery planning and testing.
Scale the team - define the GRC hiring plan, recruit and mentor analysts and managers, and report program health, risk posture, and certification progress to executive leadership.
What You Bring
• 7+ years in information security, compliance, or GRC, with 3+ years leading framework implementations end to end - not just maintaining programs someone else built.
• You have taken an organization through first-time HITRUST CSF certification and/or ISO 27001 certification, plus SOC 2 Type II; working familiarity with ISO/IEC 42001 or a strong point of view on AI governance.
• Healthcare or medical device industry experience strongly preferred, including HIPAA, FDA cybersecurity guidance (e.g., Section 524B premarket requirements), and the realities of hospital IT security review.
• Comfort operating across cloud (AWS/Azure), mobile, embedded and edge devices, and manufacturing environments - you can hold a credible conversation with each of those engineering teams.
• A track record of being an early or first GRC hire: building from zero, staying hands-on, then hiring and leading a team as the company grows.
• Clear, confident communication with executives, auditors, engineers, and hospital CISOs alike.
Certifications
One or more of the following (or equivalent) is a strong plus: CISSP, CISM, CISA, CRISC, HITRUST CCSFP, ISO/IEC 27001 Lead Implementer or Lead Auditor, CGRC, CCSP/CCSK, CIPP or CIPM.
Location
This role is based full-time in our Draper, Utah office. We build physical products alongside the teams that design, manufacture, and support them, and this role works best shoulder to shoulder with those teams.