Compliance Manager
$80kRightCapital Inc.
RightCapital is an innovative financial tech startup providing cutting-edge holistic financial planning software. We were recently voted by The Daily Finance as one of Connecticut's Best Fintech companies! We started as a group of entrepreneurs working from a garage in Connecticut to now having the 3rd largest financial planning technology company in the US. We have seen tremendous growth within this space, and have our eyes squarely set on growing this company to the next level as we help financial advisors add value to their clients! RightCapital is seeking an experienced Compliance Manager to lead both advisor-facing regulatory compliance and platform security compliance across our SaaS wealth-tech offering. This role sits at a pivotal intersection: you'll need to operate confidently in the established SaaS platform world of SOC 2, privacy, vendor risk, and financial-services regulatory considerations, while also helping steer the emerging, AI-enabled future we are building toward. You will orchestrate our SOC 2 Type II audit, serve as the primary point of contact for customer trust and vendor risk activities, and an embedded advisor to Product, Marketing, Sales, and Customer Experience on regulatory and privacy matters. You'll partner with engineering and IT, who own the technical controls, by coordinating evidence, surfacing gaps, and pushing for new controls when business or regulatory needs demand them. As AI becomes an increasingly meaningful part of what we deliver, you'll also help shape RightCapital's approach to emerging AI assurance and governance frameworks, including ISO/IEC 42001, the NIST AI Risk Management Framework, and evolving regulatory guidance from the SEC, FINRA, and state regulators, to position the company ahead of customer and regulator expectations. This role sits on our Operations team, reporting to the VP, Operations, as part of our combined Legal & Compliance function. Our mission is to enable RightCapital's growth through robust regulatory oversight, disciplined data stewardship, and a credible security and privacy posture. We protect the company, our advisor customers, and the end-clients whose data flows through our platform by anticipating regulatory change, validating that internal controls operate as designed, and serving as a trusted advisor to every team. You will set the bar for how RightCapital demonstrates trust to advisors, enterprise customers, regulators, and auditors by translating complex regulatory, privacy, and security requirements into practical guidance the business can act on, and ensuring our SOC reports and customer assurance posture keep pace with our growth.
- Understand how financial services regulations affect our advisor and RIA customer base and our platform, including FINRA, SEC, and Investment Adviser Act considerations as they intersect with the features and communications we deliver
- Partner with Product and Marketing teams as an embedded compliance consultant to review product enhancement proposals, feature releases, and public-facing statements for regulatory adherence and risk exposure
- Develop and maintain compliance guidelines and frameworks for Product and Marketing teams to ensure platform features, promotional materials, and customer communications meet necessary regulatory standards and industry requirements
- Develop and maintain a regulatory horizon-scanning process to monitor changes in FINRA, SEC, state privacy laws, and other relevant frameworks; translate impact into actionable guidance for the business
- Serve as a key operator and enforcer of RightCapital's privacy program, keeping day-to-day practices aligned with the privacy policy and applicable regulations, and driving the internal data inventory / data map, DSAR (data subject access request) intake and fulfillment, and privacy impact assessments for new features
- Enforce privacy requirements across teams, holding data-handling practices accountable to documented policy and escalating exceptions and risks as needed
- Engage with internal stakeholders including business units, information security, and product teams to assess transaction-specific risks, particularly related to data privacy regulations (CCPA and other applicable US state frameworks)
- Operationalize a 'data steward' approach to consumer-permissioned data flowing through the platform, ensuring downstream uses align with consents and contractual commitments
- Manage sub-processor disclosures and customer notifications required under DPAs
- Orchestrate the company's annual SOC 2 Type II audit, defining scope, building the audit calendar, managing the relationship with external auditors, coordinating PBC (prepared-by-client) requests, and driving the company across the finish line on time
- Coordinate evidence collection from control owners across engineering, IT, HR, product, operations, and management; track evidence freshness throughout the year so audits aren't a fire drill
- Maintain the SOC 2 control matrix and mapping to internal policies, and ensure each control has a documented owner
- Identify and flag missing, weak, or outdated controls to engineering, IT, HR, product, operations, management, and leadership, including controls that may be needed for future SOC scope changes, new customer commitments, or frameworks we may choose to explore over time. This role does not implement or operate technical controls; it ensures the right controls exist and that gaps are visible and assigned
- Plan and facilitate tabletop exercises required to support SOC 2 and related programs, including business continuity (BCP), disaster recovery, and incident response simulations; document outcomes and track remediation
- Track and report SOC audit status, control gaps, and remediation progress to leadership on a recurring cadence
- Author and maintain customer-facing AI trust materials (Trust Center AI section, AI rider language, advisor FAQs) in partnership with Marketing and the Legal and governance team
- Serve as the company's internal SME on AI compliance questions from Product, Engineering, Sales, and customers
- Monitor and translate emerging AI regulation, including the Colorado AI Act, evolving US state laws, and SEC / FINRA AI-related guidance (predictive data analytics rule, marketing rule applications to AI), into actionable internal requirements
- Explore, over time, how AI-specific assurance considerations (e.g., emerging AICPA AI overlay guidance) might be reflected in our SOC 2 program in partnership with our external auditor
- Conduct AI vendor due diligence on model providers and AI sub-processors (training-data exclusion, security posture, sub-processor flow-down, ISO 42001 / SOC 2 review)
- Operate and maintain core components of RightCapital's AI governance program, including the AI policy, AI system inventory, AI risk tiering, and pre-launch review process for new AI features
- Help explore ISO/IEC 42001 (AI Management System, or AIMS) and contribute to shaping a potential roadmap as customer demand and business needs evolve
- Operationalize the NIST AI Risk Management Framework (Govern, Map, Measure, Manage) as the practical foundation for our AI risk practices
- Act as the primary point of contact for compliance inquiries from prospects and customers, including responding to vendor due diligence questionnaires, security assessments, and regulatory inquiries
- Respond to RFP, RFI, and security questionnaire requests related to compliance matters
- Expand and run a vendor / third-party risk management program, covering initial security and privacy due diligence on new vendors, periodic re-assessment of existing vendors, and a risk register escalated to leadership
- Review all technology and service-provider contracts with an information security and privacy lens, partnering with the Legal and governance team to ensure appropriate security, privacy, and audit-rights provisions are in place
- Maintain a centralized library of compliance artifacts (security questionnaires, certifications, policies, sub-processor list) and a self-serve Trust Center so Sales can answer common questions without escalation
- Conduct compliance reviews and audits to validate adherence to contractual commitments, data privacy regulations, and internal policies
- Author, maintain, and version-control internal compliance policies and standards (acceptable use, data classification, records retention, etc.) and drive annual policy review cycles
- Own the content of the annual compliance training curriculum (privacy, security awareness, code of conduct, regulatory refreshers), authoring and updating materials, defining audiences and cadence, and partnering with the internal trainer who delivers the sessions; track completion and refresh content as regulations evolve
- Partner with InfoSec on the incident response program, owning the legal/regulatory notification workstream (breach notification timelines, regulator communications, customer notices)
- Track and report compliance KPIs (questionnaire turnaround, audit findings, training completion, DSAR SLAs, vendor review backlog) to leadership on a recurring cadence
- Serve as the company's day-to-day liaison with external privacy counsel and compliance consultants
- Provide guidance and subject-matter expertise to internal teams on compliance requirements and best practices
- Bachelor's degree in Business Administration, Legal Studies, Information Security, or related field
- 5+ years of experience in compliance, privacy, audit, or regulatory roles, with direct exposure to SOC 2 Type II audit cycles
- Strong working knowledge of US data privacy regulations (CCPA and other state privacy frameworks) and their practical application
- Working familiarity with at least one major InfoSec framework (SOC 2, ISO 27001, NIST CSF) and the control concepts underpinning them
- Working familiarity with at least one AI governance framework (ISO/IEC 42001, NIST AI RMF, or equivalent) and the practical controls underpinning AI risk management
- Proven ability to manage multiple complex projects simultaneously in a fast-paced environment
- Experience in SaaS wealth-tech, fintech, or financial services
- Understanding of how FINRA, SEC, and Investment Adviser Act regulations affect financial-advisor customers and the platforms that serve them
- Familiarity with SOC 2 Type II, ISO 27001, or other information security and assurance standards
- Certification in compliance, privacy, or audit (CCEP, CRCM, CIPP/US, CIPM, CISA)
- Experience supporting or quarterbacking a SOC 2 audit cycle end-to-end, including managing external auditors
- Experience standing up an AI governance program in a regulated industry, including AI policy, AI system inventory, and pre-launch risk review
- Familiarity with ISO/IEC 42001, NIST AI RMF, and emerging US state AI regulation (e.g., Colorado AI Act)
- Exposure to SEC / FINRA guidance on AI in financial services (predictive data analytics rule, AI applications to the marketing rule)
- Certification in AI governance or AI risk (e.g., IAPP AIGP, Artificial Intelligence Governance Professional)
- Experience facilitating tabletop exercises (BCP, DR, incident response)
- Experience administering or operating within a GRC / trust platform (SafeBase and Drata preferred; OneTrust, AuditBoard, Vanta, or similar also valued)
- Experience reviewing technology contracts (DPAs, MSAs, vendor security addenda) for security and privacy risk
- Outstanding written and verbal communication skills, with the ability to convey complex regulatory, privacy, and security concepts clearly to diverse audiences, including auditors, customers, and executive leadership
- Proven business insight coupled with sharp critical thinking and risk assessment capabilities
- Track record of building collaborative relationships with cross-functional teams, especially engineering and IT
- ...emerging standards.Evaluate business processes and transactions for accuracy, reliability, and compliance with SEC filings.Prepare and present audit reports to senior management, highlighting key risks and actionable recommendations.Maintain oversight of audit findings...Suggested
- Job OverviewHubbell is seeking an Import Compliance Specialist, to execute Hubbell’s import compliance activities.Reporting directly to the Manager, Import Compliance, the Import Compliance Specialist is responsible for ensuring Hubbell’s operations follow trade compliance...Suggested
- ...can truly know and help our clients, communities, and each other.CliftonLarsonAllen, LLP is hiring an Audit & Assurance Director or Manager to join CLA's growing Northeast Region. This is an in-office position based out of one of our Pittsburgh or Connecticut office...SuggestedFull timeWork at office
- ...to the table, so we can truly know and help our clients, communities, and each other.CLA is currently seeking an Assurance Director/Manager to join our growing Non-Profitpractice.How you’ll create opportunities in this Assurance Director/ Manager role: Manage and develop...SuggestedFull time
$100k - $130k
PPG's Aerospace Business is looking for a Trade Compliance Manager to join our team! As the Trade Compliance Manager (TCM) you will be responsible for the interpretation and application of complex, technical export control regulations. You will need to develop a thorough...SuggestedWork experience placementWork at officeRemote workMonday to ThursdayFlexible hours- ...forward. If you're looking to step up your career, JLL Workplace Management is the perfect professional home. At JLL, you'll have a chance... ...Director in driving operational excellence, contractual compliance, governance effectiveness and continuous improvement across the...Full timeContract workRemote work
$105k - $174k
...Discover your opportunities at Yale!OverviewThe Associate Director of Compliance & Continuous Improvement in Sponsored Projects Financial... ...Strong attention to detail and follow through with an ability to manage multiple tasks.2. Strong customer service skills and ability to...Contract workWork at office2 days per week- ...strategic and hands-on leadership for all aspects of product quality, compliance, and continuous improvement across Lex Innovation’s three U.S.... .... This includes full responsibility for the company’s Quality Management System (QMS), oversight of all customer and regulatory audits,...For subcontractorFlexible hours
- ...Corporate office , located in Shelton, CT seeks an experienced Compliance and Administrative Coordinator. Summary The Corporate... ..., legal, finance, accounting and marketing, as well as management of tenant issues for an affiliate real estate holdings company...Full timeFlexible hours
$50 per hour
...Corporate HeadquartersStandard Job DescriptionThe Employment Law Compliance Specialist will conduct investigations for both internal and... ...organizational and analytical skills• Demonstrated ability to manage multiple tasks and competing priorities• Familiarity with AI tools...Full timeTemporary workWork experience placementCasual workLocal areaFlexible hours$157.6k - $236.4k
...market expansion opportunities.Provide strategic input on regulatory pathways, intended use, claims, evidence expectations, risk management, and post-market commitments.Support regulatory authority interactions by helping frame key questions, review briefing materials,...Full timeH1bWork at officeLocal areaImmediate startFlexible hours$130k - $150k
...advises regulatory strategy for the company’s devices and ensures compliance to Regulatory requirements for the regions assigned (domestic/... ...5, MDSAP, EU MDD/MDR, UKCA.Thorough working knowledge of risk management and other standards including but not limited to ISO 14971,...Work experience placementWork at officeWorldwideWork visaNight shiftWeekend work3 days per week$82k - $131.5k
...opportunities at Yale!OverviewReporting to the Regulatory Affairs Manager, the Senior Regulatory Affairs Specialist independently leads... ...study start-up, submissions, maintenance, and ongoing compliance with independence and sound judgement. This position interprets...Interim roleWork at officeLocal area- ...close due diligence, post-close integration, program delivery, while ensuring compliance.Set direction, priorities, and performance expectations across the pre-close, post-close, program-management, and controls disciplines.Work closely with Senior Leaders, business and...
$100k - $150k
...provide exposure to energy-related tax credits and other federal and state tax credit opportunities.Key Responsibilities:Lead and manage R&D Tax Credit studies for clients across a variety of industries, ensuring engagements are completed accurately, efficiently, and...Full timeContract workWork at officeLocal area3 days per week- ...seeking a Regulatory Affairs Specialist to support the Wound Management Regulatory Affairs team. The selected candidate will provide regulatory... ..., marketing, and clinical protocol for regulatory compliance.Monitors and improves tracking / control systems.Keeps abreast...Flexible hours
- Regulatory Affairs Specialist Integrated Resources, Inc is a premier staffing firm recognized as one of the tri-states most well-respected professional specialty firms. IRI has built its reputation on excellent service and integrity since its inception in 1996. Our ...
- ...at our company. What you'll do This position will manage all regulatory affairs activities for Laundry and Dish categories in the US. This includes labeling, product development compliance, package development, SDS and ingredients statement generation,...Full timeWork at office
- ...Prop 65). (required) ~ Strong communication skills, ability to manage projects with cross functional teams, proficiency in Microsoft... ...label copy and assist with artwork approvals to confirm compliance with local, state and federal requirements in the US and Canada...Work at officeLocal area
- Job Title : SEAL Officer Category / Component : Officer • Both Overview Naval Special Warfare Key Responsibilities SEAL Officers lead small, elite teams in maritime special operations worldwide, conducting high risk missions from sea, air, and land in support of national...Part timeApprenticeshipWorldwide
$105k - $174k
...division, overseeing the central regulatory teams Regulatory Managers, Regulatory Affairs Specialists, and Regulatory Research Assistants... ...workflows, implementing policies and procedures, monitoring compliance, educating colleagues, and assessing performance of employees...Temporary workWork at officeLocal area- ...practices, selection methodologies and work with HR VPs to ensure compliance across all locations Serve as the escalation point for... ...clear, data-driven insights to HR and executive leadership Manage recruiting vendors, background screening and the Managed Service...Hourly payTemporary workLocal area
- ...continuous integration) Some tools: Web: Cypress, Jenkins, Gherkin, Cucumber, BDD, and CI/CD Mobile: Browser Stack, Kotlin or automation with Java, Appium. Expert in People, teams and client management Able to work in high stress conditions...Relocation
- ...Assurance Manager When you work at Whittlesey, you join a diverse team that provides today's business leaders with leading assurance... ...required. Minimum five years of experience in assurance compliance. Industry specific knowledge may be required. Must possess...Work at officeLocal areaRemote workFlexible hours
$200k - $230k
...and rewards programs Community and volunteer opportunities Leadership and mentorship opportunities Job Details Lead and manage federal and state R&D Tax Credit studies across multiple industries Serve as a technical subject matter expert on IRC Section 41...Contract workLocal areaFlexible hours- ...operate IRS credentialing sites utilizing the GSA scheduling tool to manage credentialing appointments, run reports through the USAccess... ...complete required online credentialing training and maintain compliance with PIV-II SmartID credential requirements. Knowledge of...Full timeContract workTemporary workFor contractorsLocal areaRelocationShift workNight shiftWeekend work
- ...program. The Credentialing Specialist will perform credential enrollment, issuance, activation, inventory management, and customer support activities while ensuring compliance with established credentialing policies and security procedures. This position supports secure...Permanent employmentFor contractorsWork experience placementWork at office
$82k - $131.5k
...opportunities at Yale!OverviewReporting to the Sr. IT Strategic Sourcing Manager, the Associate Strategic Sourcing & Category Manager is... ...savings to the University and aggressively pursue contract compliance. 2. Leads cross functional or multi-departmental sourcing...Contract work$82k - $131.5k
...Yale has to offer, your talents and contributions are welcome. Discover your opportunities at Yale!OverviewThe Manager, Clinical Research Billing Compliance, leads and supports the day-to-day operations of clinical trial and research billing compliance activities. This...Work at officeLocal areaFlexible hours$65 - $75 per hour
...Technical Service Manager The Technical Service Manager (TSM) will develop and maintain relationships with potential and existing... ...needs. All work and decisions shall be conducted in strict compliance of all regulatory law. Observe all safety rules and Best Practices...Full timeWork at officeLocal areaRelocationFlexible hoursNight shiftWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Compliance Manager. Be the first to apply!


