Compliance Specialist – FedRAMP, HITRUST

Remote Full-time
Job Description: • Support the implementation and maintenance of Jorie’s FedRAMP authorization program in alignment with agency and customer requirements. • Develop and maintain FedRAMP System Security Plans (SSP), POA&Ms, and supporting documentation. • Coordinate with internal IT and cloud engineering teams to ensure continuous compliance of systems within AWS, Azure, or other CSP environments. • Liaise with 3PAOs (Third-Party Assessment Organizations) and government stakeholders during audits and assessments. • Ensure consistent control alignment between FedRAMP Moderate/High baselines, HITRUST CSF, and NIST 800-53 frameworks. • Maintain evidence documentation, control mapping, and compliance matrices for overlapping regulatory programs (HITRUST, SOC 2, HIPAA, PCI). • Participate in ongoing HITRUST recertification processes, including control review, evidence validation, and policy updates. • Collaborate with internal and external auditors (e.g., ISP) to ensure accurate reporting and compliance posture visibility. • Assist in continuous monitoring of security controls and remediation of POA&M items. • Conduct risk assessments for cloud systems, vendors, and new integrations impacting the FedRAMP boundary. • Coordinate vulnerability scans, incident response activities, and configuration management documentation in alignment with FedRAMP and HITRUST requirements. • Develop, update, and enforce policies related to data security, cloud compliance, and regulatory reporting. • Provide compliance guidance and training to engineering, DevOps, and IT personnel involved in the FedRAMP environment. • Support internal readiness reviews, gap assessments, and compliance roadmap initiatives. Requirements: • 3–6 years of experience in compliance, information security, or risk management. • At least 2 years of direct experience supporting FedRAMP programs or equivalent government compliance frameworks. • Hands-on experience with HITRUST CSF certification processes, evidence collection, and auditor coordination. • Experience working in cloud-based environments (AWS, Azure, or GCP) and familiarity with continuous monitoring tools (Splunk, Qualys, Nessus, etc.). • Background in healthcare, AI, or SaaS industries strongly preferred. Benefits: Apply tot his job
Apply Now

Similar Opportunities

Cyber Security B2B Sales - Consulting and MSSP

Remote

Director of Information Security Risk Management – Leading Cybersecurity Risk Initiatives and Team Leadership at American Express

Remote

Director, Cyber Security Risk Management, Infrastructure Protection (Remote)

Remote

[Remote] Vice President, Cybersecurity Operations

Remote

Cybersecurity Incident Response Administrator

Remote

Sr. Manager, Services Communications (Remote)

Remote

Technical PM/Cyber Security Specialist (Remote)

Remote

SOC

Remote

Principal Researcher job at Palo Alto Networks in CA

Remote

Data Analyst (Remote)

Remote

Interior Design Sales

Remote

Experienced Full-Time Customer Service Support Representative - Patient Customer Service - Remote, 11am-8pm EST (Monday to Friday) - blithequark

Remote

Experienced Online Remote Customer Service Representative – Delivering Exceptional Support and Ensuring Positive Customer Experiences from the Comfort of Your Home

Remote

[Part time data entry jobs] Delta Airlines Careers Remote Online Jobs From Home

Remote

Data Analyst – Research, Tracking Expert

Remote

Telerad Remote Overnight Emergency Radiologist $4500/shift W2 10p-7a EST 7on/14off Midshift and hybrid also available

Remote

Experienced Remote Data Entry Specialist – Flexible Work from Home Opportunity with Competitive Pay and Growth Prospects

Remote

Experienced Remote Virtual Support Data Entry Specialist – FedEx Shipment Administration and Customer Service

Remote

Part Time – Amazon Store

Remote

Principal Product Manager, SaaS

Remote
← Back to Home