Parabolic Auto Head of Compliance and Regulatory Affairs Chicago, IL · Full time Company website

Head of Compliance and Regulatory Affairs

About Parabolic Auto

Parabolic Auto is modernizing one of the last analog industries in consumer finance. We partner with car dealerships to deliver smarter F&I and aftermarket solutions — making car ownership more affordable for everyday buyers through flexible, transparent payment options. We're a venture-backed SaaS startup moving fast, and we're building the infrastructure that the auto industry has needed for decades.

Description

Head of Compliance & Regulatory Affairs Parabolic Auto | Chicago, IL | Full-time 

About the Role 

Parabolic Auto sits at the intersection of two heavily regulated industries: telecom-based consumer outreach on behalf of auto dealership partners, and the sale of Vehicle Service Contracts (VSCs). We're a growing, venture-backed team, and this is our first dedicated compliance/legal hire. You'll own the two areas of regulatory risk that could functionally end the company if mismanaged, while also serving as our in-house point person for contracts, advertising review, security compliance, and day-to-day legal questions. 

This is a high-autonomy, high-trust role. You'll report directly to the CEO, have real authority to say "we can't do that" and be heard, and will build the compliance function's processes largely from scratch. 


Core Responsibilities 

1. Telecom & Consumer Communications Compliance (TCPA / A2P 10DLC)

● Own end-to-end compliance for SMS, email, and outbound calling to dealer end-customers, including right-to-contact documentation, consent management, and data handling from dealer DMS feeds 

● Manage and audit our A2P 10DLC registration process (numbers registered under dealer EINs), carrier relationships, and campaign vetting 

● Monitor call center agent scripting, disclosures, and call handling for TCPA/FCC compliance 

● Track evolving FCC, TCPA, and carrier (T-Mobile/AT&T/Verizon) policy changes and translate them into internal process updates 

● Build and maintain an audit trail / compliance monitoring program so we can demonstrate continuous compliance, not just point-in-time compliance 


2. Vehicle Service Contract (VSC) Regulatory Compliance 

● Track state-by-state VSC regulations, required licenses, registrations, and filings; maintain a live compliance matrix across all states we operate in 

● Manage renewals, new-state registrations, and any required surety bonds or financial filings 

● Liaise with distribution partners/administrators (e.g., APCO, Zurich, JM&A, GSFS) on shared regulatory obligations 

● Flag regulatory risk in new product lines or state expansions before launch 


3. Contract Review 

● Review and negotiate dealer program agreements, distribution/administrator agreements, vendor contracts, and data security addenda

● Manage clawback provisions, indemnification language, and other recurring deal terms ● Build templates and playbooks so routine contracts move faster without founder involvement 


4. Advertising & Marketing Review 

● Review consumer-facing marketing, scripts, and disclosures for compliance with FTC, state insurance advertising rules, and dealer brand/OEM trademark guidelines 5. SOC 2 & Security Compliance 

● Own the SOC 2 audit process (or equivalent), working with engineering/ops to maintain controls and evidence 

● Serve as the point of contact for partner security questionnaires and data security addenda 


6. General Compliance & Legal 

● Serve as the first point of contact for legal/compliance questions across the company ● Know when to handle something in-house vs. escalate to outside counsel, and manage those outside counsel relationships efficiently 


What We're Looking For 

● 5+ years in a compliance, regulatory affairs, or legal role, ideally with direct exposure to TCPA/telecom marketing compliance and/or insurance or F&I regulatory compliance ● Comfort working state-by-state regulatory matrices, not just federal frameworks ● Experience at a small or venture-backed company, or otherwise demonstrated ability to operate without a large support team 

● Strong contract review/negotiation skills 

● SOC 2 or security compliance exposure is a plus, not a hard requirement ● JD/bar admission is a plus but not required if the candidate has strong regulatory/compliance depth