Security Compliance Analyst
$80k - $135kParachute Health
Parachute Health is transforming post-acute care as the leading digital ordering platform for medical equipment and supplies. We connect major health systems, health plans, and suppliers to help patients get the life-saving products they need at home. Since launching, we've connected 300,000+ clinicians and 3,000+ supplier locations across all 50 states and helped 15M+ patients. What started as a DME ePrescribing tool has become the order management platform of choice for home medical equipment. About the Role This is a hybrid role: roughly half security compliance and audit, half hands-on technical security. You'll own our compliance audit cycle end-to-end (SOC 1, SOC 2, HITRUST CSF, HITRUST AI), and you'll also work directly on the technical side: vulnerability management, security findings remediation, cloud security reviews, and third-party risk. Compliance & Audi t Own SOC 1, SOC 2, HITRUST CSF, and HITRUST AI audits end-to-end: scoping, evidence collection, auditor coordination, and findings remediation Develop, update, revise, and implement compliance policies, procedures, and practices for security frameworks (HIPAA, HITRUST, SOC) as well as general compliance and operations Manage our compliance automation and trust platforms (Drata, SafeBase), including control monitoring and responses to customer security questionnaires. Coordinate with external vendors and clients to gather information needed for compliance reviews, validations, and audits Run third-party/vendor risk assessments and respond to customer security assessments and external inquiries Deliver HIPAA and security awareness training and measure control effectiveness through internal audits Technical Security Run the vulnerability management program: scanning, triage, prioritization, and driving remediation with engineering teams Investigate and remediate security findings across our AWS environment (EKS, WAF, Shield, CloudFront, IAM) and SaaS stack Review external attack surface findings (e.g., SecurityScorecard) and implement fixes from CSP headers to subresource integrity to TLS configuration Support security incident response: log analysis, forensic evidence collection, and containment Support fraud and forensic investigations authentication log analysis, targeted data extraction, and evidence preservation in support of legal and compliance matters Improve our security tooling and automate evidence collection, using scripting (Python, Bash) where manual work can be eliminated What We're Looking For 4+ years combined experience across security compliance/GRC and hands-on technical security Direct experience supporting SOC 1/SOC 2 and/or HITRUST audits — you've been through at least one full audit cycle Working knowledge of HIPAA Security and Privacy requirements Hands-on experience with vulnerability scanning and remediation, and comfort reading technical findings (CVEs, misconfigurations, cloud security issues) Familiarity with AWS security concepts (IAM, security groups, logging, WAF) Ability to write clear policies and procedures and equally clear remediation tickets Nice to Have Experience with compliance automation platforms (Drata, Vanta, or similar) Experience in healthcare or another regulated industry Certifications such as CISSP, CISA, CRISC, HITRUST CCSFP, or CISM Experience with SIEM tools and log analysis Experience with forensic log analysis, fraud investigations, or supporting legal/eDiscovery requests Benefits Medical, Dental, and Vision Coverage: Comprehensive plans with options for low-to-no-cost premiums. Employer HSA Contribution: Company-funded contributions to your Health Savings Account. 401(k) Retirement Plan Equity Incentive Plan Annual Company-Wide Bonus: Opportunity for up to 15% bonus based on company performance. Remote-First Culture: We are remote-first with a dedicated NYC office and reimbursement options for co-working spaces. Flexible Vacation Policy Summer Fridays: 5 additional Fridays off during the summer (separate from PTO). Home Office and Wellness Stipend Monthly Internet Stipend Annual Learning and Development Stipend Base Salary Band (based on experience and level) $80,000 - $135,000 California job applicants may access the Notice of Collection of Personal Information and Privacy Policy with information and rights required by the California Privacy Rights Act (CPRA) the link here. We are proud to be an equal opportunity employer that does not discriminate on the basis of actual or perceived race, color, creed, religion, national origin, ancestry, citizenship status, age, sex or gender (including pregnancy, childbirth related medical conditions and lactation), gender identity or gender expression (including transgender status), sexual orientation, marital status, military service and veteran status, disability, genetic information, or any other characteristic protected by applicable federal, state, or local laws and ordinances. This role is not eligible for employer visa sponsorship. Applicants must be legally authorized to work in the United States at the time of application and for the duration of employment. The Company does not sponsor employment authorization for this position. #J-18808-Ljbffr
- ...Pinnacle Method Consulting is seeking a Security & Compliance Senior Business Analyst to drive requirements and testing for enterprise systems. This role emphasizes collaboration with Client-IT teams, governance processes, and translating complex business needs into actionable...Suggested
$115k - $130k
...Senior Security Compliance Analyst (Remote - US) Senior Security Compliance Analyst (Remote - US) Get AI-powered advice on this job and more exclusive features. This range is provided by Jobgether. Your actual pay will be based on your skills and experience — talk with...SuggestedFull timeRemote workWorldwideFlexible hours- ...Corpay is seeking a Senior PCI Analyst to join their Information Security division. This role can be based in either the Brentwood, TN or Atlanta, GA office. The Analyst will manage PCI compliance, coordinate audits, and work with IT to ensure security requirements are...SuggestedWork at office
$78.9k - $123.3k
...Position Overview We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous... ...Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems,...SuggestedPermanent employmentFull timeContract workPart timeWork at officeLocal areaRemote work$120k - $150k
...stakes. The firm’s work is distinguished by a unique combination of precision and vision. Based in New York, the Information Security Threat Analyst is responsible for detecting, investigating, and responding to information security events and incidents across the firm....SuggestedWork at officeLocal areaImmediate startFlexible hours- ...Title: Senior Information Security Analyst Executive Area: Information Technologies College/School/MBU: Information Technology... ...strategy, and collaborate with stakeholders to manage risk, ensure compliance, and support the ongoing maturity of security policies,...Full timeWork at officeNight shiftWeekend work
$130k - $145k
...New York and Florida and invite passionate security professionals to join our team. We are looking for a Security Analyst to join our Information Security & Privacy team... ..., cloud security, data loss prevention, compliance, and privacy—while partnering closely with business...Visa sponsorship3 days per week$60k - $80k
...Overview Under the direction of the Security Operations Lead, the Security Analyst plays a key role in supporting and enhancing the organization’s cybersecurity... ...services across the IT environment, ensuring compliance with security policies, and maintaining documentation...Full timeRemote work$100k - $140k
...Shachar (ex-Palo Alto Networks, AWS, Demisto) and Dan (ex-Abnormal Security, Twitter) have previously built, launched, and scaled... ...expanding customer base. Job Overview We're looking for a Security Analyst to be at the core of what we do: reviewing real security cases...- ## Security AnalystApplyremote type: Hybridlocations: Bridgeville, PA: Holmdel, NJ: Englewood... ...joining our team as our newest Security Analyst.**SUMMARY**We are seeking a dynamic and... ..., RapidFire Tools: Network Detective, Compliance Manager GRC, VulScan.* Strong problem-...Work at officeLocal areaFlexible hours
- ...About the Team The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood...Contract workWork experience placementLocal area
- ...automation, and intelligent insights. The Role The Security Analyst, Information Security is responsible for managing and... ...security systems and applications, including policy assessment and compliance tools, network appliances, and host-based security systems...Contract workFor contractorsWork experience placementLocal areaRemote work
- ...Your mission As a Security Analyst, you oversee incoming security vulnerability reports from our researchers' community, while continuously sharpening your cybersecurity skills. All of this happens through dedicated interaction with the researcher's community and with...Home officeFlexible hours
- ...Job Title: IGA/Security Analyst Duration: 12+ Months Start Date: ASAP Location: 2 Broadway, New York, 10004 (Hybrid) Position Type: Contract... .... Partner with security architecture, IAM engineering, and compliance teams to ensure IGA controls meet enterprise and regulatory...Contract workLocal areaImmediate startRemote work
$40 per hour
A cybersecurity firm is seeking experienced professionals to evaluate AI-generated security content and improve AI systems. This is a remote opportunity, allowing you to choose your projects and work at your own pace. Qualified candidates should have hands-on experience...Hourly payRemote workFlexible hours- ...Group is seeking a CMMC / NIST Consultant / Analyst to support client projects involving... ...documentation Develop, update, and maintain System Security Plans (SSPs) Assist with NIST SP 800-171... ..., policies, procedures, and related compliance documentation Identify gaps and support...Full timeContract workPart timeRemote work
- ...Under the direction of the Security Manager, the Security Analyst III performs two core functions for the enterprise. The first is the day-to-day operations of in-place network and cloud security solutions, including on-premises systems and cloud security controls. The...Casual workWork at office
$72.1k - $173.04k
...Responsibilities Conduct thorough technical Security Risk Assessments on Production Environment applications to identify vulnerabilities, threats, and risks. Assess vulnerability management, scans, patching status, secure baselines, penetration test results, etc. Evaluate...Full timeTemporary workLocal area$71.26k
...Staff Analyst Series (Vulnerability Mitigation & New Technology) Job ID: 13165 Business Unit: MABSTOA Location: Brooklyn, NY, United... ...Last date of posting: 03/13/2026 Authority: OA / TA Department: Security Division/Unit: Vulnerability Mitigation & New Technology Reports...Permanent employmentFull timeTemporary workWork at officeWeekend work- ...Security Analyst Location: United States Employment Type: Full-Time Job Summary We are seeking a detail-oriented and proactive Security... ...security posture. Prepare security reports, documentation, and compliance records. Stay current with cybersecurity threats, security...Full time
- ...experienced Vulnerability & Patch Management Analyst to join our team in New York. Our client... ...Head Office to strengthen the firm’s security posture in a fast‑moving, regulated... ...strategic remediation decisions. Manage SLA compliance for patch deployments; develop and...Work at office
- ...The Health Care District of Palm Beach County is seeking a Data Privacy & Security Analyst to support the Compliance, Privacy & Ethics Program. The role assists the VP/Chief Compliance and Privacy Officer, conducts risk assessments, audits, and evidence collection for...
$135k - $155k
...Operations Manager. This role will build and scale Brigit's internal IT Operations, working closely with various teams to enhance security and compliance. The ideal candidate has significant IT experience in a tech environment and will manage day-to-day IT operations. The...Flexible hours$55k - $70k
...A digital community bank in New York seeks an IT Analyst to provide on-site technical support and first-level security assistance. The role involves resolving technical issues related to systems, guiding users on security practices, and ensuring excellent customer service...- ...narrow by department, business unit or location. Position: IT Security Analyst - US Location: REMOTE Remote Status: Remote Job Id: 3671-... ...security monitoring, incident response, vulnerability management, compliance efforts, and administration of core security technologies....Weekly payFull timeTemporary workLocal areaImmediate startRemote work
$100k - $145k
...be part of meaningful change! Job Description We are looking for an IT Risk & Vulnerability Analyst to support one of our strategic CIB clients in keeping their software secure and up to date. The ideal candidate has experience reviewing software versions, checking vulnerability...- ...A security solutions provider in New York seeks an Analyst to support the Office of Security by managing security projects. The role requires collaboration with stakeholders and oversight of budgets while working on enhancements in security technology. A bachelor's degree...Work at office
$40 per hour
A cybersecurity company is seeking experienced professionals to evaluate AI-generated security content and solve technical problems. Candidates must have 2+ years of experience in cybersecurity and some coding skills. This remote role allows for flexible hours and project...Hourly payRemote workFlexible hours- Anatomy IT is looking for a Business Development Executive who will utilize a consultative sales approach to promote managed IT services to healthcare organizations. This remote position focuses on generating new business opportunities, managing the sales cycle, and closing...Remote work
- IT Security Analyst Location: Remote - U.S. Only (or Hybrid in Denver, CO) Type: Full-Time Clearance: Must pass FBI fingerprint and background... ...of IT Security, SaaS Application Security, and Security Compliance. You'll own the evaluation and continuous improvement of...Full timeRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Compliance Analyst. Be the first to apply!
- rate analyst New York, NY
- security analyst New York, NY
- bond analyst New York, NY
- junior security analyst New York, NY
- senior security analyst New York, NY
- network security analyst New York, NY
- information security analyst New York, NY
- security operations analyst New York, NY
- application security analyst New York, NY
- information security compliance analyst New York, NY



