Lead Security & Compliance Analyst

New
P
Parachute HealthHealthcare Technology
U.S. RemoteFull-TimeLead
Salary$80,000 - $130,000
Apply NowOpens the employer's application page

Job Details

Experience
4+ years combined experience
Required Skills
AWSPythonBashHIPAA

Requirements

  • 4+ years combined experience across security compliance/GRC and hands-on technical security.
  • Direct experience supporting SOC 1/SOC 2 and/or HITRUST audits.
  • Working knowledge of HIPAA Security and Privacy requirements.
  • Hands-on experience with vulnerability scanning and remediation.
  • Comfort reading technical findings such as CVEs and cloud misconfigurations.
  • Familiarity with AWS security concepts (IAM, security groups, logging, WAF).
  • Ability to write clear policies, procedures, and technical remediation tickets.
  • Experience with compliance automation platforms (Drata, Vanta, or similar) is a plus.
  • Experience in healthcare or another regulated industry is a plus.
  • Relevant certifications such as CISSP, CISA, CRISC, HITRUST CCSFP, or CISM are preferred.

Responsibilities

  • Own SOC 1, SOC 2, HITRUST CSF, and HITRUST AI audits end-to-end including scoping, evidence collection, and auditor coordination.
  • Develop and implement compliance policies and procedures for HIPAA, HITRUST, and SOC frameworks.
  • Manage compliance automation and trust platforms like Drata and SafeBase.
  • Run vulnerability management programs, including scanning, triage, and remediation coordination.
  • Investigate and remediate security findings across AWS and SaaS environments.
  • Support security incident response through log analysis and forensic evidence collection.
  • Run third-party risk assessments and respond to customer security inquiries.
View Full Description & ApplyYou'll be redirected to the employer's site
$80,000 - $130,000
Apply Now