Please, let Jobgether know you found this job
on RemoteYeah.
This helps us grow 🌱.
Description:
The Senior Security Compliance Analyst will support and enhance the company’s security and compliance programs within the healthcare sector.
This role is responsible for ensuring adherence to industry regulations, responding to audits, and maintaining compliance with critical frameworks such as ISO 27001, HIPAA, and NIST.
The candidate will lead and support customer security audits, respond to security questionnaires, and demonstrate compliance with industry security frameworks.
Responsibilities include coordinating and managing ISO 27001 audits, maintaining ongoing compliance with healthcare data security regulations, and developing and updating policies and procedures.
The analyst will conduct risk assessments, gap analyses, and security control evaluations to identify and mitigate compliance risks.
Additionally, the role involves supporting security awareness programs to ensure employees understand their compliance responsibilities.
Requirements:
Candidates must have 8+ years of experience in Governance, Risk, and Compliance (GRC), risk management, or IT audit, with a focus on ISO 27001, HIPAA, and HITRUST.
Proven experience leading ISO 27001 audits, including ISMS implementation and external audit coordination is required.
Strong knowledge of NIST CSF, SOC 2, GDPR, and other relevant security frameworks is essential.
Hands-on experience with customer security audits and managing security assessments is necessary.
Expertise in performing risk assessments, policy reviews, and compliance gap analyses is required.
Familiarity with GRC tools such as OneTrust, LogicGate, Archer, Vanta, or Drata is a plus.
Preferred certifications include ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CISA, HITRUST CCSFP, and CRISC.
Benefits:
The position offers comprehensive medical, dental, and vision insurance plans for employees and their families.
Employees will enjoy flexible paid time off (PTO) and 10 US observed holidays.
A home office stipend and 401(k) plan are available for US-based employees.
Paid parental leave and a sabbatical program are included as part of the benefits.
There are opportunities for professional growth and training within the company.
The work culture is collaborative and inclusive, with a strong focus on diversity.
Apply now
Please, let Jobgether know you found this job
on RemoteYeah
.
This helps us grow 🌱.