<div class="content-intro"><p><strong>500M+ downloads.
80M+ monthly users.
A decade of building – and we’re still accelerating.
</strong></p> <p>Flo is the world’s #1 health & fitness app worldwide on a mission to build a better future for female health.
Backed by a $200M investment led by General Atlantic, we became the first product of our kind to reach a $1B valuation in 2024 – and we’re not slowing down.
</p> <p>With 7M paid subscribers and the highest-rated experience in the App Store’s health category, we’ve spent 10 years earning trust at scale.
Now, we’re building the next generation of digital health – AI-powered, privacy-first, clinically backed – to help our users know their body better.
</p> <p><strong>The job</strong></p></div><p>As a key member of Flo’s Security Architecture team, you will lead the design and operation of our US Healthcare security controls.
You will own the roadmap for <strong>HIPAA compliance and SOC2 Type II certification</strong>, partnering with Engineering and Legal to build a secure, compliant platform for millions of users.
</p> <p data-path-to-node="5"><strong>Key.
Compliance Leadership: Lead annual SOC 2 and HIPAA certifications, managing interfaces with external auditors and professional services.
Policy & Risk: Define and maintain security policies; embed risk assessment activities within engineering processes and vendor management.
Operational Excellence: Partner with control owners to automate evidence gathering and ensure controls reduce friction rather than creating it.
Stakeholder Management: Serve as the primary Security POC for US regulators and partners; support the wider Security team with ISO 27001/27701 alignment.