Senior Security Analyst, Compliance
jobgether
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Security Analyst, Compliance based in the United States.
This role will play a central part in strengthening and operating an information security governance, risk, and compliance program within a healthcare environment. You will help protect sensitive health information while ensuring security policies, controls, and processes meet regulatory and industry expectations. The position combines risk management, audit leadership, compliance assessments, third-party risk, and security program development. You will work closely with IT, Privacy, Compliance, business stakeholders, external auditors, and partners to maintain a strong control environment. A key focus will be advancing HITRUST and SOC 2 readiness while maintaining an effective risk register and remediation process. This is an opportunity to help mature an evolving GRC function and establish scalable processes across the organization.
Accountabilities:
- Lead and mature the information security risk management program, including risk identification, assessment, tracking, remediation, and performance measurement.
- Develop and report security risk and compliance metrics that provide clear visibility into program performance and organizational risk.
- Advance the existing security assessment and reporting program while coordinating audits and assessments such as SOC 2, HITRUST, and client security requests.
- Lead the use of the HITRUST Common Security Framework to assess, measure, and maintain the maturity of the information security program.
- Manage the information security risk register and coordinate the remediation of identified risks with relevant stakeholders.
- Perform information security and information technology risk assessments and apply appropriate risk-scoring methodologies to establish baseline risk levels against defined risk appetite.
- Respond to client security questionnaires and ad hoc assessment requests while maintaining accurate tracking and follow-through.
- Collaborate with IT, Privacy, Compliance, and other business teams to develop and maintain security and document-control content aligned with applicable frameworks.
- Support compliance with the HITRUST security framework and other relevant regulatory and industry requirements.
- Contribute to third-party risk management activities and evaluate security risks associated with external partners and business relationships.
- Build and improve repeatable GRC processes that strengthen the organization’s overall security governance and operational efficiency.
- Work with external auditors and internal stakeholders to facilitate evidence collection, assessment activities, remediation, and reporting.
- Perform additional information security, governance, risk, and compliance duties as required by the business.
Requirements:
- Bachelor’s degree in cybersecurity or a related discipline, combined with relevant professional experience.
- 5+ years of professional experience in information security.
- 3+ years of experience managing information security audit activities, either as an assessor, assessed organization, or both.
- Hands-on experience as an information security professional, ideally within a healthcare environment.
- Direct experience with healthcare security and HITRUST requirements.
- Proven ability to create and implement structured processes for ongoing security and compliance programs.
- Experience developing and managing risk-scoring methodologies and establishing baseline risk against organizational risk appetite.
- Strong experience conducting information security and IT risk assessments.
- Knowledge of regulatory controls and recognized security frameworks and standards, including HIPAA, ISO 27001/27002, PCI, NIST, and related industry practices.
- Experience working with GRC platforms such as Archer.
- Demonstrated expertise in security governance, risk, and compliance.
- Experience with contract reviews is preferred.
- HITRUST certification is preferred.
- CISSP, CISM, GIAC, or other relevant information security certifications are preferred.
- Experience in third-party risk management and security assessment activities.
- Strong critical-thinking and critical-assessment capabilities, with the ability to evaluate complex security and compliance issues.
- Ability to remain calm and confident under pressure while managing sensitive or time-critical matters.
- Strong collaboration and conflict-management skills.
- Ability to prioritize effectively and manage multiple workstreams simultaneously in a high-pressure environment.
- Comfortable working independently while also contributing effectively within cross-functional teams.
- Excellent written and verbal communication skills.
- Strong customer service and stakeholder-management skills.
Benefits:
- Remote position based in the United States.
- Limited travel, scheduled according to business needs.
- Opportunity to help shape and mature an information security GRC program.
- Exposure to HITRUST, SOC 2, healthcare security, risk management, and regulatory compliance initiatives.
- Cross-functional collaboration with IT, Privacy, Compliance, business stakeholders, and external auditors.
- Opportunity to establish scalable security governance and compliance processes within a healthcare environment.
How Jobgether works:
We use an AI-powered matching process to ensure your application is reviewed quickly, objectively, and fairly against the role's core requirements. Our system identifies the top-fitting candidates, and this shortlist is then shared directly with the hiring company. The final decision and next steps (interviews, assessments) are managed by their internal team.
We appreciate your interest and wish you the best!
Data Privacy Notice: By submitting your application, you acknowledge that Jobgether will process your personal data to evaluate your candidacy and share relevant information with the hiring employer. This processing is based on legitimate interest and pre-contractual measures under applicable data protection laws (including GDPR). You may exercise your rights (access, rectification, erasure, objection) at any time.
#LI-CL1
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses and identifying potential inconsistencies or verification signals in application materials based on available information. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
- ...DLH Corporation in the United States is seeking an experienced M365 Security and Compliance Analyst to secure and maintain the M365 ecosystem. The candidate will support large government environments, drive governance, and ensure compliance with federal guidelines while...Senior
$150k - $180k
...largest construction and engineering companies. We are hiring a Senior IT Security Analyst to serve as the hands-on technical lead for NARHQ's... ...rule bases and support network segmentation Governance & Compliance Maintain security policies, standards, and procedures; ensure...SeniorFull timeFor contractorsWork at officeLocal areaFlexible hours- ...Corpay is seeking a Senior PCI Analyst to join their Information Security division. This role can be based in either the Brentwood, TN or Atlanta, GA office. The Analyst will manage PCI compliance, coordinate audits, and work with IT to ensure security requirements are...SeniorWork at office
- ...Salesforce is seeking a seasoned cloud compliance professional to join the Global Compliance and Certification (GCC) team. You will partner with engineering to translate regulatory mandates into actionable controls and drive risk mitigation across Salesforce environments...Senior
- ...UNC Health Care is seeking an HCS Compliance Analyst III to support the Compliance Program across Hospital, Physician, and Privacy Operations. You will lead audits, analyze risks, investigate misconduct, and mentor teammates to ensure regulatory and policy adherence....Senior
- A cybersecurity solutions provider in McLean, Virginia is seeking a Security Analyst to support cybersecurity operations and compliance for federal systems. The successful candidate will lead FedRAMP processes, ensure compliance with stringent security requirements, and...Senior
- iPipeline is seeking an Experienced Security Analyst in the United States for an office-based role in the Wayne area. You will investigate... ...resolve complex security incidents and support audit and compliance activities across the organization. Responsibilities include...SeniorWork at office
- Valon is seeking a Sr. Security Analyst to join its Security team in a pivotal role managing security governance, risk, and compliance across cloud infrastructure and products. You will collaborate with cross-functional teams to protect critical assets and strengthen trust...Senior
$115k - $130k
...Senior Security Compliance Analyst (Remote - US) Senior Security Compliance Analyst (Remote - US) Get AI-powered advice on this job and more exclusive features. This range is provided by Jobgether. Your actual pay will be based on your skills and experience — talk with...SeniorFull timeRemote workWorldwideFlexible hours- ...Senior Security Risk & Compliance AnalystAPCO Holdings partners with dealerships across North America to deliver innovative vehicle protection products... ....We are looking for a Senior Security Risk & Compliance Analyst to support and strengthen APCO's security governance,...SeniorTemporary work
$140k - $180k
...world’s largest enterprises and managed services providers leverage NetBrain’s platform.What We NeedWe're looking for a Senior Security & Compliance Analyst to help build and scale a security and compliance program for our SaaS environment. You'll lead key workstreams,...Senior- Northrop Grumman Corp. (AU) is searching for an Industrial Security Analyst or Principal Industrial Security Analyst in Redondo Beach, CA... ...security programs, handling classified materials, and ensuring compliance with regulations. The candidate must have an active Secret...SeniorFull timeInternship
- ..., its clients, and its business operations through risk-based security assessments, third-party security reviews, control validation,... ...This role serves as a trusted advisor to technology, business, compliance, procurement, and security stakeholders, helping them...SeniorFull time
- ...understand and improve the employee experience. What Our Client Needs Our client is seeking a Senior Security Analyst to advance information security, privacy, and compliance programs. This role will strengthen technical controls, governance, risk management, cloud...SeniorRemote workWork from home
- ...translating requirements into actionable security plans. Our team supports cloud and... ...ensuring effective communication, compliance, and collaboration with technical and Government stakeholders. Senior Security Governance and Policy Analyst Serve as a principal security...Senior
- ...OverviewTeam Overview:Edward Jones is seeking a highly skilled Sr Security Analyst to support strategic initiatives within the Access... ...quality, access controls, governance processes, and regulatory compliance.The ideal candidate will have extensive experience in Identity...SeniorTemporary workWork at officeHome officeFlexible hours3 days per week
- ...and grow professionally? We can help! We are seeking a Senior Security Operations Analyst to provide on-demand Cybersecurity and IT services to support... ..., and help implement security controls to ensure compliance and operational resilience. In support of the NIGC mission...SeniorFull timePart time
$148k - $185k
...s Customer Trust team ensures that appropriate security controls and data protections are applied to meet our compliance requirements and customer contractual commitments... ...to join our Customer Trust team. As a senior member of this team, you will own a portfolio of...SeniorHourly payWork at officeLocal areaFlexible hours3 days per week- A leading crypto firm is seeking a senior professional to lead IT audit initiatives and manage compliance programs. The position involves close collaboration with different teams to design scalable controls and improve audit outcomes. The ideal candidate has over 5 years...SeniorRemote job
- DLH Corporation in Bethesda, MD seeks an experienced M365 Security and Compliance Analyst to secure and maintain the Microsoft 365 environment for a large federal deployment. The role emphasizes threat monitoring, governance, and cross-team collaboration to ensure secure...Senior
- ...Descriptions & requirements About the role:As a Senior Security Operations Center (SOC) Analyst at TQL, you'll help protect one of the nation's largest... ...business stakeholders and support security audits and compliance initiatives.What you need:Bachelor's degree in...SeniorH1b
- ...demonstrate integrity, embrace teamwork, and embody a Can Do attitude in the delivery of superior customer service. Senior Security Governance and Policy Analyst The Senior Security Governance and Policy Analyst operates as a principal security policy advisor to the...SeniorFull timeTemporary workFlexible hoursNight shift
- The Senior Security Operations Analyst serves as a senior escalation point within the Security Operations Center (SOC), responsible for monitoring,... ...and document post-incident findings and recommendations. Compliance & Reporting Support client compliance with applicable...SeniorCasual work
- Responsibilities As a SecOps Analyst at Saronic, you’ll be on the front line of our detection... ...operations, triaging and investigating security alerts across endpoint, cloud, identity,... ...OSCP, or equivalent. Familiarity with compliance frameworks such as NIST SP 800‑171, NIST...Senior
- A leading crypto company seeks a senior professional for its Security Team to lead SOC examinations and develop IT control processes. This remote role... ..., and Finance to enforce audit rigor and enhance compliance. The ideal candidate has over 5 years of audit experience...SeniorRemote job
- Salesforce is seeking a Senior Analyst in Enterprise Security to support BISOs in day-to-day work with enterprise business units. You will help track risks, coordinate deliverables, and prepare materials for stakeholder reviews, ensuring engagements run smoothly. This role...Senior
- Salesforce in New York is seeking a Senior Analyst to support BISOs in day-to-day engagements with enterprise business units. You’ll help... ...prepare materials for stakeholder reviews. You’ll work alongside security professionals to keep engagements credible, identify risks,...Senior
$110k - $165.3k
...Operations Engineer to join the Information Security Identity and Access Management... ...operational guidance to Tier 2 Operations Analysts during incident management, problem management... ..., privileged account ownership, compliance controls, audit readiness, risk signals,...SeniorFull timeWork at officeRelocation- Salesforce is seeking a Senior Analyst in Enterprise Security to support BISOs in daily operations, maintain risk registers, and prepare materials for leadership reviews. You will work with BISOs to keep engagements credible, visible, and well-documented, ensuring risk-...Senior
- Salesforce is seeking a Senior Analyst within Enterprise Security to support BISOs, manage risk, and keep engagements with business units credible and well-documented. You will help track risks, prepare stakeholder materials, and coordinate cross-team efforts to safeguard...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security Analyst, Compliance. Be the first to apply!
- security analyst United States
- work from home security analyst United States
- information security compliance analyst United States
- junior security analyst United States
- cloud security analyst United States
- security operations analyst United States
- rate analyst United States
- information security analyst United States
- bond analyst United States
- physical security analyst United States


