Full-Time

Governance and Compliance Lead

Risk

Commure

Commure

1,001-5,000 employees

SaaS platform for connected healthcare operations

No salary listed

Bengaluru, Karnataka, India

In Person

Category
IT & Security (1)
Required Skills
SOC 2
Risk Management
Requirements
  • Bachelor’s degree in Information Technology, Computer Science, Cybersecurity, Risk Management, or related discipline (Master’s preferred).
  • 5+ years of progressive experience in GRC, IT compliance, cybersecurity assurance, or related governance roles.
  • Deep expertise in HIPAA, GDPR, CCPA, and IT risk management frameworks such as NIST, ISO 27001, and SOC 2.
  • Proven experience in internal audits, risk assessments, and implementing compliance programs in complex or regulated environments.
  • Demonstrated ability in vendor risk management, third-party audits, and compliance oversight.
  • Strong written and verbal communication skills with the ability to simplify complex regulatory concepts for diverse audiences.
Responsibilities
  • Design, implement, and oversee comprehensive IT compliance and governance programs aligned with HIPAA, GDPR, CCPA, and other data privacy regulations.
  • Develop and continuously refine IT security policies, standards, and procedures to balance compliance rigor with operational efficiency.
  • Validate and approve IT processes and activities to ensure conformance with regulatory and organizational mandates.
  • Act as the primary liaison between internal stakeholders, executive leadership, and external auditors on all compliance-related matters.
  • Build and maintain a robust risk management framework to proactively identify, assess, and mitigate IT and operational risks.
  • Conduct regular risk assessments, internal audits, and control evaluations to detect vulnerabilities and compliance gaps.
  • Perform physical security audits and validate adherence to standards across facilities and third-party locations.
  • Manage internal and external audit processes, ensuring preparedness, accuracy, and timely resolution of findings.
  • Conduct periodic compliance inspections across organizational and vendor sites to validate adherence to policies.
  • Track, report, and close remediation actions while driving continuous improvement of compliance systems and procedures.
  • Design and deliver engaging compliance and security awareness training programs for employees at all levels.
  • Serve as a trusted advisor to leadership and business units on compliance strategy, risk mitigation, and program effectiveness.
  • Prepare comprehensive compliance reports, dashboards, and presentations for executive stakeholders and the Head of Privacy.
  • Lead or support internal investigations into compliance violations, data incidents, or policy breaches.
  • Develop and implement corrective action plans to address compliance gaps and prevent recurrence.
  • Monitor emerging risks and regulatory changes to ensure proactive compliance readiness.
Desired Qualifications
  • Professional certifications such as: CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), CISSP (Certified Information Systems Security Professional), ISO 27001 Lead Auditor, CRISC (Certified in Risk and Information Systems Control), CHPC (Certified in Healthcare Privacy Compliance)
  • Experience within healthcare technology, digital health, or similarly regulated industries.
  • Proven success in building and scaling GRC programs within high-growth or global organizations.
  • Familiarity with GRC platforms and compliance management tools.
  • Strategic Leadership: Ability to architect and operationalize GRC programs that safeguard organizational integrity while enabling innovation.
  • Analytical Rigor: Strong diagnostic and problem-solving capabilities with a methodical approach to risk analysis and control design.
  • Ethical Judgment: Unwavering commitment to confidentiality, integrity, and ethical governance.
  • Communication & Influence: Skilled at articulating complex compliance matters to both technical and non-technical audiences.
  • Project Management: Adept at managing multiple concurrent initiatives with precision and accountability.
  • Collaboration & Independence: Strong cross-functional partnership skills, equally effective when leading or working autonomously.
  • Adaptability: Ability to stay ahead of evolving regulatory landscapes, emerging risks, and technology trends.

Commure develops healthcare technology to connect data, streamline workflows, and protect staff. Its core product, CommureOS, is a lightweight operating system that unifies disparate health technologies and datasets to surface relevant insights for providers at the right moment. It also offers Commure Strongline, a discreet wearable badge that lets workers summon help in under two seconds to improve safety. The company uses a SaaS model, charging healthcare organizations for access to CommureOS and Strongline while pursuing partnerships to expand its connected health ecosystem and patient care.

Company Size

1,001-5,000

Company Stage

Late Stage VC

Total Funding

$1B

Headquarters

San Francisco, California

Founded

2017

Your Connections

People at Commure who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • Commure processes tens of billions of annual claims across 130+ health systems.
  • Its ambient AI reduced charting time and cognitive burden for 88% of Willis Knighton clinicians.
  • Commure Dictation broadens daily usage by adding voice control across any desktop application.

What critics are saying

  • Epic and Microsoft can bundle ambient tools inside existing enterprise healthcare contracts.
  • RCM automation errors can create reimbursement losses across tens of billions in claims.
  • The $7 billion valuation leaves little room for slower growth or future repricing.

What makes Commure unique

  • Commure unifies ambient AI, agentic AI, and revenue cycle automation on one platform.
  • It integrates with 60+ EHRs, reducing dependence on a single system of record.
  • Willis Knighton chose Commure after a seven-specialty MEDITECH pilot in May 2026.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Unlimited Paid Time Off

Health Insurance

Dental Insurance

Vision Insurance

Parental Leave

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

3%

2 year growth

5%
Yahoo Finance
Apr 2nd, 2026
Commure launches AI dictation tool to replace legacy clinical voice systems

Commure has launched Commure Dictation, a speech-to-cursor extension that brings its Ambient AI technology to any text field or desktop application. The tool allows clinicians to draft referrals, messages and orders using voice commands across over 60 electronic health records and applications. The platform aims to replace legacy dictation systems with unified, AI-native infrastructure. Key features include universal cursor dictation, contextual AI editing, smartphone microphone capability, intelligent voice commands and built-in clinical assistance. The system also supports frictionless migration of legacy macros and shortcuts. Built on Commure's intelligent revenue cycle management data model, documentation captured during encounters flows directly into autonomous coding and downstream revenue cycle workflows. The platform is now available for enterprise deployment and individual provider access.

HIT Consultant
Apr 2nd, 2026
Commure launches ai-powered speech-to-cursor dictation tool for clinical workflows.

Commure launches ai-powered speech-to-cursor dictation tool for clinical workflows. What you should know. * The Launch: Revenue cycle and clinical AI platform Commure has launched Commure Dictation, an AI-powered "speech-to-cursor" extension. * Hardware Independence: The tool eliminates the need for expensive, dedicated dictation hardware. Clinicians can simply use the Commure Ambient mobile app as a wireless microphone. Voice as an Operating System Instead of toggling between different applications, a physician can now use their smartphone (via the Commure Ambient app) as a universal, wireless microphone. They can dictate a complex clinical note, seamlessly transition to an inbox message to a patient, and then verbally draft a specialist referral without ever changing tools. More importantly, it features Contextual AI Editing. A doctor doesn't have to manually click into individual fields to fill out a complex order template; they can simply speak the instructions, and the AI will structure the text and fill the fields automatically. By owning the "voice" at the very beginning of the patient encounter, they are ensuring that the data entering the EHR is highly structured and optimized for their downstream systems. The text generated by Commure Dictation flows directly into autonomous coding and Clinical Documentation Integrity (CDI) workflows, optimizing revenue cycle operations. "Commure Dictation is not just voice-to-text. It is a single AI-native voice platform that works wherever clinicians document," said Sam Ascher, SVP & GM of Ambient AI at Commure. "For health systems still managing legacy dictation infrastructure, the case for switching and consolidating has never been clearer."

GlobeNewswire
Dec 10th, 2025
Commure Partners with Val Verde Regional Medical Center to Enhance Clinical Workflows with MEDITECH-Integrated Ambient AI

Commure partners with Val Verde Regional Medical Center to enhance clinical workflows with meditech-integrated Ambient AI. Community-Based hospital pioneers rural healthcare adoption of advanced AI technology to improve clinician experience and patient access. December 10, 2025 08:30 ET | Source: Commure MOUNTAIN VIEW, Calif., Dec. 10, 2025 (GLOBE NEWSWIRE) - Commure, a leading healthcare technology company, today announced a new partnership with Val Verde Regional Medical Center (VVRMC), a community-based hospital serving residents in Del Rio, TX and the surrounding Val Verde region. The organizations will partner to reduce administrative burden and enhance clinical documentation within the MEDITECH Expanse Electronic Health Record (EHR) by deploying Commure Ambient AI, a solution that empowers clinicians with advanced clinical documentation support, autonomous coding, AI copilots, and more. VVRMC selected Commure Ambient AI for its proven impact to reduce provider documentation time from 30 to 90 minutes a day across specialties such as cardiology and family practice. In addition, Commure will leverage its MEDITECH Alliance partnership to ensure deep integration with MEDITECH Expanse and rapid operational value for the medical center. Through this collaboration, the VVRMC will deploy Commure Ambient AI across multiple departments to advance its mission of delivering accessible, compassionate, high-quality care to every patient. "Rural healthcare hinges on maximizing every minute of clinician time and every available resource," said Keith Willey, CIO of VVRMC. "By integrating Commure Ambient AI into our clinical workflows, we're enabling our providers to spend less time on documentation and more time where they're needed most - at the patient's side." For a rural health system like VVRMC, adopting this new technology represents a crucial advancement in addressing staffing challenges, physician burnout, and patient access disparities. "Val Verde Regional Medical Center exemplifies the innovation and resilience of rural healthcare organizations nationwide," said Ian Shakil, Chief Strategy Officer of Commure. "Their leadership demonstrates that advanced AI doesn't belong only to large urban systems; it belongs to every community striving to deliver exceptional care." VVRMC joins a nationwide cohort of pioneering hospitals and health systems using Commure Ambient AI to document millions of clinician encounters each year, automate coding, and deliver real-time support at the point of care. About Commure Commure delivers next-generation AI infrastructure for enterprise health systems, integrating ambient intelligence, agentic AI, and revenue cycle automation on a single platform. Its forward-deployed engineering teams work directly with clinicians and administrators to boost margins, reduce burden, and improve patient engagement. Commure integrates with over 60 EHRs and powers millions of encounters, hundreds of millions of interactions, and tens of billions of dollars in annual claims. About Val Verde Regional Medical Center Val Verde Regional Medical Center (VVRMC) is a not-for-profit, community-focused hospital serving Del Rio and the surrounding rural region of southwest Texas. As one of the region's few full-service medical centers, VVRMC is committed to expanding access to high-quality healthcare, advancing technology, and improving the well-being of the communities it serves.

AiThority
Nov 7th, 2025
Commure Partners with DRH Health to Reduce Clinician Documentation Burden with MEDITECH-Integrated Ambient AI

Commure partners with DRH Health to reduce clinician documentation burden with meditech-integrated Ambient AI. DRH Health to deploy AI to streamline clinical workflows across its care network. Commure, a leading healthcare technology company, announced a new partnership with DRH Health, a full-service regional health system providing comprehensive care across southwestern Oklahoma. The organizations will work together to transform clinical documentation and improve MEDITECH-integrated workflow efficiency across its care network. DRH Health is a 128-bed not-for-profit regional system with two hospitals and 20 specialty care clinics. The organization will implement Commure Ambient AI to alleviate administrative burden for clinicians, improve documentation accuracy, and enable more time for patient-centric direct care. After piloting an alternative ambient documentation vendor, DRH Health chose to transition to Commure for its proven integration with MEDITECH, its scalable enterprise-grade architecture, and its ability to deliver measurable impact across both hospital-based and outpatient care settings. Early adopters of Commure Ambient AI have seen documentation time reduced by up to 90 minutes per provider per day and chart completion accelerated to within 24 hours of each encounter, allowing clinicians to focus more on patient care while improving revenue performance.

HIT Consultant
Jun 25th, 2025
Commure Launches "Commure Agents": AI Assistants with Full EHR Integration

- Commure, a leading healthcare technology company, today announced the commercial launch of Commure Agents, AI-powered colleagues built for healthcare.