Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Compliance Specialist - FedRAMP & HITRUST

Jorie AI

Compliance Specialist – FedRAMP

Jorie AI is transforming healthcare operations through intelligent automation, secure cloud solutions, and data-driven insights. As a Compliance Specialist – FedRAMP, you will play a key role in ensuring Jorie's cloud infrastructure and services meet stringent federal security and compliance standards while maintaining alignment with existing HITRUST and HIPAA frameworks.

This position requires deep understanding of FedRAMP authorization processes, cloud security compliance, and the integration of HITRUST controls across multi-framework compliance programs. The ideal candidate is proactive, detail-oriented, and comfortable working cross-functionally with IT, security, and audit teams in a fast-paced technology environment.

Key Responsibilities
  • Support the implementation and maintenance of Jorie's FedRAMP authorization program in alignment with agency and customer requirements.
  • Develop and maintain FedRAMP System Security Plans (SSP), POA&Ms, and supporting documentation.
  • Coordinate with internal IT and cloud engineering teams to ensure continuous compliance of systems within AWS, Azure, or other CSP environments.
  • Liaise with 3PAOs (Third-Party Assessment Organizations) and government stakeholders during audits and assessments.
HITRUST and Multi-Framework Alignment
  • Ensure consistent control alignment between FedRAMP Moderate/High baselines, HITRUST CSF, and NIST 800-53 frameworks.
  • Maintain evidence documentation, control mapping, and compliance matrices for overlapping regulatory programs (HITRUST, SOC 2, HIPAA, PCI).
  • Participate in ongoing HITRUST recertification processes, including control review, evidence validation, and policy updates.
  • Collaborate with internal and external auditors (e.g., ISP) to ensure accurate reporting and compliance posture visibility.
Risk Management & Continuous Monitoring
  • Assist in continuous monitoring of security controls and remediation of POA&M items.
  • Conduct risk assessments for cloud systems, vendors, and new integrations impacting the FedRAMP boundary.
  • Coordinate vulnerability scans, incident response activities, and configuration management documentation in alignment with FedRAMP and HITRUST requirements.
Policy, Documentation, and Training
  • Develop, update, and enforce policies related to data security, cloud compliance, and regulatory reporting.
  • Provide compliance guidance and training to engineering, DevOps, and IT personnel involved in the FedRAMP environment.
  • Support internal readiness reviews, gap assessments, and compliance roadmap initiatives.
Qualifications

Education

  • Bachelor's degree in Information Security, Computer Science, Compliance, or related field required.

Experience

  • 3–6 years of experience in compliance, information security, or risk management.
  • At least 2 years of direct experience supporting FedRAMP programs or equivalent government compliance frameworks.
  • Hands-on experience with HITRUST CSF certification processes, evidence collection, and auditor coordination.
  • Experience working in cloud-based environments (AWS, Azure, or GCP) and familiarity with continuous monitoring tools (Splunk, Qualys, Nessus, etc.).
  • Background in healthcare, AI, or SaaS industries strongly preferred.
Skills & Competencies
  • In-depth understanding of NIST 800-53, FedRAMP Moderate/High baselines, and HITRUST CSF control mapping.
  • Strong knowledge of HIPAA, HITRUST, SOC 2, and ISO 27001 standards.
  • Excellent documentation and writing skills — ability to produce and maintain formal compliance deliverables.
  • Strong analytical, organizational, and communication skills, with the ability to work across technical and non-technical teams.
  • FedRAMP (3PAO) Assessor or equivalent experience
Preferred Certifications
  • HITRUST Certified CSF Practitioner (CCSFP) – required
  • Certified Information Systems Auditor (CISA) or Certified in Risk and Information Systems Control (CRISC) – preferred
  • Certified Information Systems Security Professional (CISSP) – a plus
  • Security+ or CCSP (Certified Cloud Security Professional)
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Compliance Specialist - FedRAMP & HITRUST in United States vacancy
  •  ...Koitecc Solutions is looking for an Associate for FedRAMP Assessment to support cybersecurity audit processes. The successful candidate will assist with audit preparation, documentation, and maintain quality standards. Applicants should have a Bachelor's degree in Information... 
    Suggested
    Flexible hours

    Koitecc Solutions

    Chicago, IL
    1 day ago
  • RevSpring Inc in Oaks, Pennsylvania is seeking an IT Audit & Compliance Analyst responsible for driving audit execution and ensuring regulatory compliance with HITRUST, PCI DSS, and SOC 2 standards. The role requires effective collaboration across teams to translate complex... 
    Suggested

    RevSpring Inc

    Oaks, PA
    3 days ago
  • Wired People Inc is hiring for a compliance-focused position in Atlanta, GA. This full-time, fully remote role will drive compliance efforts across mission-critical projects for government agencies. Candidates should have 3-6 years of experience in GRC and familiarity... 
    Suggested
    Remote job
    Full time

    Wired People Inc

    Atlanta, GA
    4 days ago
  •  ...services/solutions for Risk Management | Compliance | Business Process | IT Effectiveness |...  ...Description ProSidian Seeks a Compliance & Risk Specialist | Human Capital Programmatic Evaluation...  ...– Ensuring compliance with FISMA, FedRAMP, NIST 800-53, Section 508, and federal... 
    Suggested
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Flexible hours

    ProSidian Consulting, LLC

    Alexandria, VA
    10 days ago
  •  ...A leading cybersecurity firm is looking for an IT Support and Compliance Administrator to assist in supporting corporate and lab infrastructure. This role includes remote US work and requires U.S. citizenship for compliance with federal regulations. Candidates will support... 
    Suggested
    Remote work

    COFENSE

    United States
    3 days ago
  • $95k - $110k

     ...Blackkite is looking for a Senior GRC Analyst to oversee compliance efforts and support customer security assessments in the United States...  ...platform, respond to customer inquiries, and contribute to FedRAMP reporting. The expected salary range is $95,000-$110,000 per year... 
    Flexible hours

    Blackkite

    New York, NY
    3 days ago
  •  ...Analyst, GRC - Public Sector to enhance governance, risk, and compliance operations. You will manage compliance efficiency and audit readiness...  .... Preferably, you have 5+ years in cybersecurity, experience with FedRAMP, and strong communication skills. #J-18808-Ljbffr Socure
    Remote job

    Socure

    New York, NY
    12 hours ago
  • $95k - $110k

     ...Blackkite in Boston seeks a Senior GRC Analyst to manage compliance platforms and customer security assessments. The ideal candidate will...  ..., paired with skills in SOC 2 and ISO 27001. You'll support FedRAMP ConMon reporting and ensure audit-ready documentation while collaborating... 

    Blackkite

    Boston, MA
    5 days ago
  •  ...Teradata Corporation (SE) in Indianapolis seeks a Compliance Analyst to support security compliance programs for federal and commercial...  ...role involves maintaining certifications and authorizations like FedRAMP and CMMC, as well as collaborating with internal teams on... 

    Teradata

    Indianapolis, IN
    3 days ago
  •  ...Teradata Corporation (SE) seeks a Compliance Analyst in Santa Fe, NM, to support security compliance across global cloud offerings, including FedRAMP and CMMC. Responsibilities include maintaining compliance metrics, assisting with audits, and engaging with internal... 
    Remote work

    Teradata

    Santa Fe, NM
    3 days ago
  •  ...Teradata Corporation (SE) is seeking a Compliance Analyst to support security compliance programs globally, including the federal cloud environment. You will maintain certifications like FedRAMP and CMMC, assist with audits, and help various teams meet their security obligations... 

    Teradata

    Carson City, NV
    3 days ago
  •  ...Teradata Corporation (SE) is seeking a Compliance Analyst to support its security compliance programs for global cloud offerings. The...  ...successful candidate will help maintain key certifications such as FedRAMP and SOC, while assisting with audits and compliance... 
    Remote work

    Teradata

    Columbus, OH
    3 days ago
  •  ...Teradata Corporation (SE) is seeking a Compliance Analyst to support their security compliance programs across global cloud offerings....  ...managing compliance in accordance with key certifications such as FedRAMP and ISO. Ideal candidates should have a bachelor's degree in... 

    Teradata

    Hartford, CT
    3 days ago
  •  ...Teradata Corporation (SE) in Lincoln, Nebraska is seeking a Compliance Analyst to support their security compliance programs across global...  .... The role involves maintaining key certifications like FedRAMP and assisting with compliance activities. The ideal candidate... 

    Teradata

    Lincoln, NE
    5 days ago
  •  ...organizations operate. Why we’re looking for you We’re looking for a GRC Program Manager to drive Port’s FedRAMP authorization and oversee our broader compliance portfolio. You’ll be the program’s operational backbone - coordinating 3PAO assessments, managing documentation... 
    Flexible hours

    Port.io

    Boston, MA
    2 days ago
  • A leading AI solutions provider is seeking a Cybersecurity Compliance Analyst in Maryland. The role involves managing compliance for systems...  ...and a deep expertise in federal compliance frameworks such as FedRAMP and NIST 800-53. Strong experience in ATO processes and... 

    Bigbear.ai

    Annapolis, MD
    1 day ago
  • Waterfront Training Solutions Inc. is seeking an IT Systems & Compliance Specialist in Chesapeake, VA. This full-time role focuses on achieving CMMC Level 2 compliance, involving hands-on technical remediation and management of cloud environments like M365 and Azure. Candidates... 
    Full time

    Waterfront Training Solutions Inc.

    Chesapeake, VA
    2 days ago
  • Teradata Corporation (SE) is seeking a Compliance Analyst to support security compliance programs across its global offerings. You will manage key certifications, including FedRAMP and ISO standards, ensuring that both commercial and federal stakeholders meet their security... 

    Teradata Corporation (SE)

    Providence, RI
    12 hours ago
  • Teradata Corporation (SE) seeks a Compliance Analyst to support its security compliance programs in Annapolis, Maryland. This role involves maintaining key certifications like FedRAMP and PCI DSS, engaging with stakeholders, and ensuring compliance across federal environments... 
    Flexible hours

    Teradata Corporation (SE)

    Annapolis, MD
    3 days ago
  • Teradata Corporation (SE) is seeking a Compliance Analyst in Denver, Colorado. This role is crucial for supporting security compliance across Teradata's cloud offerings, including FedRAMP and other certifications. The ideal candidate will have a bachelor's degree and relevant... 

    Teradata Corporation (SE)

    Denver, CO
    12 hours ago
  • Teradata Corporation (SE) seeks a Compliance Analyst to support security compliance programs across its global cloud offerings. In this role, you will manage Teradata's FedRAMP Moderate authorization and engage with stakeholders to maintain compliance with industry frameworks... 
    Remote work

    Teradata Corporation (SE)

    Nashville, TN
    4 days ago
  • Teradata Corporation (SE) is seeking a Compliance Analyst to support security compliance programs across global cloud offerings. The role includes maintaining certifications like FedRAMP Moderate and assisting with compliance activities related to CMMC and ISO standards... 
    Flexible hours

    Teradata Corporation (SE)

    Raleigh, NC
    4 days ago
  • $120k - $140k

     ...GRC Compliance Analyst / Assessor / Onsite in Annapolis Annapolis, Maryland Onsite Full Time...  ...Assessor experienced in SOC 1/SOC 2 examinations, FedRAMP assessments, and broader frameworks such as PCI DSS, HITRUST, HIPAA, and ISO 27001. This opportunity is well... 
    Full time

    Motion Recruitment

    Annapolis, MD
    1 day ago
  • Senior Governance, Risk, Compliance (GRC) Analyst job at Oura. New York, NY. At Oura, our mission is to empower every...  ...compliance programs such as SOC 2, HIPAA, ISO27001, ISO27799, HITRUST, NIST 800-171, CMMC, and FedRAMP. The ideal candidate has hands-on experience leading... 
    Work at office
    Local area
    Remote work
    Flexible hours

    Itlearn360

    New York, NY
    4 days ago
  •  ...Job Title: Sr. Information Security Specialist Duration: 12+ Months (Possible extension...  ...control implementation across all FedRAMP High control families. Conduct gap...  ...effective and drive the review of continued compliance to NIST requirements. Lead the Authority... 
    Work experience placement
    Local area

    Veterans Sourcing Group, LLC

    New York, NY
    2 days ago
  • $65k - $75k

     ...2 in the US and 1 in Canada. For more information about us visit  evolution.com/careers/USA Job Description As a Compliance Specialist within the U.S. Regulatory Compliance team, you will play a key role in ensuring the company adheres to applicable gaming... 
    Work at office
    Flexible hours

    Evolution United States

    Southfield, MI
    4 days ago
  •  ...day operations of the Quality Department. This includes Safe Quality Food (SQF) and United States Department of Agriculture (USDA) compliance, managing labels, supplier documentation, nutritional management, and document control. Essential Functions and... 

    Volpi Foods

    Saint Louis, MO
    20 days ago
  •  ...Appalachian Basin, the region we proudly call home and operate within. The Opportunity We are seeking a senior-level Regulatory Compliance Specialist with advanced technical expertise and strong leadership to oversee complex compliance activities across our midstream... 
    For contractors
    Work at office
    Local area
    Remote work
    3 days per week

    Infinity Natural Resources

    Morgantown, WV
    27 days ago
  •  ...ProSidian provides enterprise services/solutions for Risk Management, Compliance, Business Process, IT Effectiveness, Engineering,...  ...Consulting at Description ProSidian Seeks a Regulatory Compliance Specialist | Compliance / Risk / Regulatory: Risk, Compliance & Independent... 
    Contract work
    For contractors
    Work at office
    Local area
    Remote work

    ProSidian Consulting, LLC

    Washington DC
    4 days ago
  • $90k - $95k

     ...diagnostic solutions to some of the most critical questions in healthcare. Job Type: Full time Job Title: Regulatory & Compliance Specialist Location: Onsite - San Diego Salary Range: $90,000 - $95,000 Position Summary: The Quality and Regulatory... 
    Full time

    CorDx

    San Diego, CA
    5 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Compliance Specialist - FedRAMP & HITRUST. Be the first to apply!