
Compliance Questionnaire Manager
- Sheffield
- Permanent
- Full-time
have the ability to perform as the highest level in service of our customers.The Compliance Standards & Data Privacy function relies on experience and judgment to plan and accomplish goals through implementation of GRC best practice methodologies, governance, and tooling. The Compliance Questionnaire Manager role will lead the completion and management of compliance-related questionnaires, security assessments, and due diligence requests from clients, partners, and regulatory bodies. This role will be responsible for ensuring timely, accurate, and consistent responses that align with industry standards, regulatory requirements, and company policies.The ideal candidate will have strong compliance expertise, excellent project management skills, and the ability to collaborate across departments.The role requires understanding of consulting services & software organizations as well as internal corporate functions. Responsibilities:
- Oversee the intake, prioritization, and completion of compliance questionnaires, security assessments, and vendor due diligence requests.
- Develop and maintain a centralized repository of compliance responses to ensure consistency and efficiency.
- Collaborate with internal teams, including Legal, IT Security, Risk, and Operations, to gather and verify information.
- Ensure responses align with regulatory frameworks such as GDPR, HIPAA, SOC 2, ISO 27001, PCI DSS, and other relevant compliance standards.
- Continuously improve response processes, leveraging automation tools and best practices to enhance efficiency.
- Identify compliance gaps or risks and work with leadership to develop mitigation strategies.
- Track, analyze, and report on compliance questionnaire trends to inform risk management strategies.
- Train and mentor team members on best practices for responding to compliance questionnaires and security assessments.
- Support internal and external audits by providing relevant compliance documentation.
- 5+ years of experience in compliance, risk management, legal, or a related field.
- 5+ years of experience in a technical role (IT or software development) preferred in Healthcare Industry
- Strong knowledge of compliance frameworks such as GDPR, HIPAA, SOC 2, ISO 27001, and NIST.
- Experience managing compliance questionnaires, security assessments, and vendor risk evaluations.
- Excellent project management skills with the ability to manage multiple priorities and deadlines.
- Strong written and verbal communication skills.
- Experience with governance, risk, and compliance (GRC) platforms and methodologies