Назад
Company hidden
5 дней назад

Information Security Compliance Analyst

80 000 - 100 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Compliance Analyst (Cybersecurity/Compliance): Supporting cybersecurity compliance, governance, and risk management programs for healthcare and public safety software with an accent on NIST 800-53, FedRAMP, GovRAMP, HIPAA, SOC 2, and cloud compliance. Focus on coordinating audits, evaluating AWS and Azure security controls, managing remediation activities, and maintaining audit readiness.

Location: 100% remote anywhere in the United States; travel for orientation, industry or company events, and onsite meetings may be required, up to 10%.

Salary: $80,000–$100,000 USD annual base salary, plus bonus, benefits, perks, and community gains.

Company

hirify.global develops software solutions, data analytics, and services for healthcare, emergency response, EMS, hospitals, community paramedicine, critical care, fire, and preparedness organizations.

What you will do

  • Administer, document, monitor, and improve information security compliance, governance, and risk management programs.
  • Coordinate compliance initiatives aligned with NIST 800-53, FedRAMP, GovRAMP, HIPAA, SOC 2, and other regulatory and customer requirements.
  • Maintain policies, procedures, control matrices, audit artifacts, evidence repositories, and other audit-readiness records.
  • Support internal and external audits, assessments, control testing, evidence collection, and stakeholder responses.
  • Track control gaps, audit findings, POA&Ms, corrective actions, security exceptions, risk acceptance, and remediation through closure.
  • Support vendor risk management, customer security questionnaires, continuous monitoring, and compliance controls in AWS and Microsoft Azure.

Requirements

  • Bachelor’s degree in information security, cybersecurity, information technology, information systems, risk management, business, or a related field, or equivalent education and experience.
  • Professional experience in information security, cybersecurity, compliance, audit, governance, risk management, or information technology.
  • Experience applying security frameworks, auditing principles, internal controls, compliance processes, and risk management practices.
  • Familiarity with NIST 800-53, FedRAMP, GovRAMP, HIPAA, SOC 2, ISO 27001, or similar frameworks.
  • Experience evaluating security controls and supporting cloud compliance in AWS and Microsoft Azure.
  • Strong analytical, organizational, project management, documentation, communication, and stakeholder coordination skills; ability to travel up to 10%.

Nice to have

  • Experience with GRC platforms, compliance management tools, vendor risk management, or third-party security assessments.
  • Certifications such as Security+, SSCP, CGRC, CISA, CRISC, CCSK, AWS Security Specialty, or Azure Security Engineer Associate.
  • Experience in healthcare technology, SaaS, public sector, or cloud-native environments.

Culture & Benefits

  • Fully remote work within the United States under the company’s Remote Work Policy.
  • Annual base salary of $80,000–$100,000 USD, plus bonus, benefits, perks, and community gains.
  • Collaborative work with Information Security, IT, Engineering, Product, Legal, Privacy, and other business teams.
  • Equal opportunity workplace with accommodations available for applicants with disabilities.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →