Demo

IT Compliance (GRC) Analyst

LifeMD
York, NY Full Time
POSTED ON 12/19/2025
AVAILABLE BEFORE 6/16/2026

About us

LifeMD is a leading digital healthcare company committed to expanding access to virtual care, pharmacy services, and diagnostics by making them more affordable and convenient for all. Focused on both treatment and prevention, our unique care model is designed to optimize the patient experience and improve outcomes across more than 200 health concerns. 

To support our expanding patient base, LifeMD leverages a vertically-integrated, proprietary digital care platform, a 50-state affiliated medical group, a 22,500-square-foot affiliated pharmacy, and a U.S.-based patient care center. Our company — with offices in New York City; Greenville, SC; and Huntington Beach, CA — is powered by a dynamic team of passionate professionals. From clinicians and technologists to creatives and analysts, we're united by a shared mission to revolutionize healthcare. Employees enjoy a collaborative and inclusive work environment, hybrid work culture, and numerous opportunities for growth. Want your work to matter? Join us in building a future of accessible, innovative, and compassionate care.

About the role

We are seeking an inquisitive and collaborative IT Governance, Risk and Compliance (GRC) Analyst to support the IT compliance programs supporting SOX and HIPAA across our technology stack, including in-house developed systems and third-party SaaS platforms. You will help maintain control readiness, perform testing and evidence collection, and support risk and vendor assessments for internally developed systems and SaaS applications. 

Core Responsibilities

  • Support SOX and HIPAA controls by helping design, document, and maintain ITGCs and operational controls
  • Maintain documentation such as control narratives, flowcharts, risk and control matrices, and evidence repositories
  • Assist remediation efforts by coordinating with IT and business teams, validating remediation evidence, and tracking closure of deficiencies
  • Perform risk assessments and gap analyses for IT systems that handle PHI and financial data
  • Automate and monitor controls through scheduled reviews, scripts, or tooling to reduce manual effort and improve coverage
  • Support audits and vendor reviews by preparing workpapers, answering auditor questions, and helping with vendor control questionnaires
  • Perform vendor and third-party assessments for SaaS providers ensuring appropriate controls are in place and evidenced

Requirements

Basic Qualifications:

  • Bachelor's degree in a related field or equivalent experience
  • Relevant experience with IT controls, IT audit, SOX testing, IT risk, HIPAA, or related functions
  • Practical understanding of HIPAA Security and Privacy requirements and how they apply to IT systems that handle PHI
  • Technical foundation with identity and access management, change management, SDLC, backup and recovery, and logging/monitoring
  • Hands-on experience collecting and organizing audit evidence and documenting control testing procedures

Preferred Qualifications:

  • Relevant certification(s) (CISA, CRISC, CPA, CHPS)
  • Healthcare or healthtech industry experience
  • Written and verbal communication skills with the ability to create concise documentation and explain technical details to nontechnical stakeholders.

Benefits

  • Health Care Plan (Medical, Dental & Vision)
  • Retirement Plan (401k, IRA)
  • Life Insurance (Basic, Voluntary & AD&D)
  • Unlimited PTO Policy
  • Paid Holidays
  • Short Term & Long Term Disability
  • Training & Development

Salary.com Estimation for IT Compliance (GRC) Analyst in York, NY
$84,350 to $103,782
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a IT Compliance (GRC) Analyst?

Sign up to receive alerts about other jobs on the IT Compliance (GRC) Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$73,707 - $95,263
Income Estimation: 
$91,142 - $116,690
Income Estimation: 
$80,876 - $132,043
Income Estimation: 
$83,010 - $104,507
Income Estimation: 
$105,259 - $133,442
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at LifeMD

  • LifeMD York, NY
  • About us LifeMD is a leading digital healthcare company committed to expanding access to virtual care, pharmacy services, and diagnostics by making them mo... more
  • 7 Days Ago

  • LifeMD York, NY
  • About us LifeMD is a leading digital healthcare company committed to expanding access to virtual care, pharmacy services, and diagnostics by making them mo... more
  • 9 Days Ago

  • LifeMD Lancaster, PA
  • About us LifeMD is a leading digital healthcare company committed to expanding access to virtual care, pharmacy services, and diagnostics by making them mo... more
  • 1 Day Ago


Not the job you're looking for? Here are some other IT Compliance (GRC) Analyst jobs in the York, NY area that may be a better fit.

  • Brains Workgroup, Inc. York, NY
  • Our client, a major bank in New York City, is looking for IT Business Analyst - Compliance Systems . Permanent position with competitive compensation packa... more
  • 19 Days Ago

  • Coinbase Global York, NY
  • Job Details Ready to be pushed beyond what you think you're capable of? At Coinbase, our mission is to increase economic freedom in the world. It's a massi... more
  • 12 Days Ago

AI Assistant is available now!

Feel free to start your new journey!