Lead Security & Compliance Analyst
New
P
Parachute HealthHealthcare Technology
U.S. RemoteFull-TimeLead
Salary$80,000 - $130,000
Apply NowOpens the employer's application page
Job Details
- Experience
- 4+ years combined experience
- Required Skills
- AWSPythonBashHIPAA
Requirements
- 4+ years combined experience across security compliance/GRC and hands-on technical security.
- Direct experience supporting SOC 1/SOC 2 and/or HITRUST audits.
- Working knowledge of HIPAA Security and Privacy requirements.
- Hands-on experience with vulnerability scanning and remediation.
- Comfort reading technical findings such as CVEs and cloud misconfigurations.
- Familiarity with AWS security concepts (IAM, security groups, logging, WAF).
- Ability to write clear policies, procedures, and technical remediation tickets.
- Experience with compliance automation platforms (Drata, Vanta, or similar) is a plus.
- Experience in healthcare or another regulated industry is a plus.
- Relevant certifications such as CISSP, CISA, CRISC, HITRUST CCSFP, or CISM are preferred.
Responsibilities
- Own SOC 1, SOC 2, HITRUST CSF, and HITRUST AI audits end-to-end including scoping, evidence collection, and auditor coordination.
- Develop and implement compliance policies and procedures for HIPAA, HITRUST, and SOC frameworks.
- Manage compliance automation and trust platforms like Drata and SafeBase.
- Run vulnerability management programs, including scanning, triage, and remediation coordination.
- Investigate and remediate security findings across AWS and SaaS environments.
- Support security incident response through log analysis and forensic evidence collection.
- Run third-party risk assessments and respond to customer security inquiries.
View Full Description & ApplyYou'll be redirected to the employer's site