Compliance Specialist – FedRAMP, HITRUST

Remote Full-time
Job Description: • Support the implementation and maintenance of Jorie’s FedRAMP authorization program in alignment with agency and customer requirements. • Develop and maintain FedRAMP System Security Plans (SSP), POA&Ms, and supporting documentation. • Coordinate with internal IT and cloud engineering teams to ensure continuous compliance of systems within AWS, Azure, or other CSP environments. • Liaise with 3PAOs (Third-Party Assessment Organizations) and government stakeholders during audits and assessments. • Ensure consistent control alignment between FedRAMP Moderate/High baselines, HITRUST CSF, and NIST 800-53 frameworks. • Maintain evidence documentation, control mapping, and compliance matrices for overlapping regulatory programs (HITRUST, SOC 2, HIPAA, PCI). • Participate in ongoing HITRUST recertification processes, including control review, evidence validation, and policy updates. • Collaborate with internal and external auditors (e.g., ISP) to ensure accurate reporting and compliance posture visibility. • Assist in continuous monitoring of security controls and remediation of POA&M items. • Conduct risk assessments for cloud systems, vendors, and new integrations impacting the FedRAMP boundary. • Coordinate vulnerability scans, incident response activities, and configuration management documentation in alignment with FedRAMP and HITRUST requirements. • Develop, update, and enforce policies related to data security, cloud compliance, and regulatory reporting. • Provide compliance guidance and training to engineering, DevOps, and IT personnel involved in the FedRAMP environment. • Support internal readiness reviews, gap assessments, and compliance roadmap initiatives. Requirements: • 3–6 years of experience in compliance, information security, or risk management. • At least 2 years of direct experience supporting FedRAMP programs or equivalent government compliance frameworks. • Hands-on experience with HITRUST CSF certification processes, evidence collection, and auditor coordination. • Experience working in cloud-based environments (AWS, Azure, or GCP) and familiarity with continuous monitoring tools (Splunk, Qualys, Nessus, etc.). • Background in healthcare, AI, or SaaS industries strongly preferred. Benefits: Apply tot his job
Apply Now →

Similar Jobs

Cyber Security B2B Sales - Consulting and MSSP

Remote Full-time

Director of Information Security Risk Management – Leading Cybersecurity Risk Initiatives and Team Leadership at American Express

Remote Full-time

Director, Cyber Security Risk Management, Infrastructure Protection (Remote)

Remote Full-time

[Remote] Vice President, Cybersecurity Operations

Remote Full-time

Cybersecurity Incident Response Administrator

Remote Full-time

Sr. Manager, Services Communications (Remote)

Remote Full-time

Technical PM/Cyber Security Specialist (Remote)

Remote Full-time

SOC

Remote Full-time

Principal Researcher job at Palo Alto Networks in CA

Remote Full-time

Data Analyst (Remote)

Remote Full-time

Grocery Clerk – Amazon Store

Remote Full-time

Overnight Remote Assistant | $25–$35/hr | Global Work-from-Home Night Shift Opportunities

Remote Full-time

Jr Digital Marketing Specialist

Remote Full-time

**Experienced Customer Service Executive – Winston-Salem**

Remote Full-time

Experienced Virtual Assistant - Data Entry and Administrative Support Specialist for Entertainment and Hospitality Industry Career Opportunities at arenaflex

Remote Full-time

Commercial Lines Associate Underwriter

Remote Full-time

Kaiser Permanente Staff RN, Virtual Nursing Care in Atlanta, Georgia

Remote Full-time

BUSINESS TAXES SPECIALIST I, BOARD OF EQUALIZATION

Remote Full-time

SkillBridge Opportunity: Launch and Orbit Support Analyst

Remote Full-time

Experienced Home-Based Data Entry Typist with Excellent Communication Skills and Organizational Abilities for Part-Time Remote Opportunity at Blithequark

Remote Full-time
← Back to Home