IT Security Compliance Assurance Manager (CAM)

Security AnalystSecurity AnalystFull TimeRemoteLeadTeam 10,001+H1B SponsorCompany SiteLinkedIn

Location

United States

Posted

125 days ago

Salary

$90K - $129K / year

Seniority

Lead

No structured requirement data.

Job Description

IT Security Compliance Assurance Manager (CAM)

Gainwell Technologies

Be part of a team that unleashes the power of leading-edge technologies to help improve the health and well-being of those most vulnerable in our country and communities. Working at Gainwell carries its rewards. You’ll have an incredible opportunity to grow your career in a company that values work flexibility, learning, and career development. You’ll add to your technical credentials and certifications while enjoying a generous, flexible vacation policy and educational assistance. We also have comprehensive leadership and technical development academies to help build your skills and capabilities. Summary The Information Security Compliance Assurance Manager is a highly qualified Cyber security audit and compliance professional with advanced level of experience in the industry dealing with audits, audit planning, audit project management. This requires the ability to interact and influence at an executive level within client organizations such as Information Governance and IT Security leaders. You will be able to demonstrate industry expertise and understanding of the security governance, compliance, and audit related to the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and the National Institute of Standards and Technology (NIST) 800-53 frameworks. The IT Security Compliance Assurance Manager (CAM) will responsible to ensure Gainwell, its clients and partners are in compliance with the afore mentioned as well as any state and federal requirements/regulations. Your role in our mission - Document and address organization's information security audit and compliance requirements and standards. - Develops, maintains, and communicates the organization’s information security policy and procedures - Directs and oversees the assessment, selection, implementation, and maintenance of information security tools and technologies - Evaluate new or updated industry regulations to ensure continued compliance - Enforces information security controls and investigates/responds to information security incidents - Participates in business continuity planning (BCP) activities when required by regulation or senior leadership - Prepares reports, business cases, and presentations on security risk, controls, the status of compliance efforts, etc. - Acts as liaison between IT and other functions (e.g., legal) regarding information compliance and/or audits - Assist ISL in the collaboration on SSP's - Assist ISL in the determine the protection needs (i.e., security controls) for the information system(s) and network(s) and document appropriately. - Anything other duties assigned for the purposes to benefit the organization, company and client What we're looking for - At least 5 years’ experience working in industry as a Security Compliance Auditor - CISA, CEH, PMP, CISM, CRISC or CISSP certification - Advanced knowledge of the security and auditing regulations (HIPAA, NIST, SOC, etc..) - Well-versed in industry regulations and have the ability to translate complex security concepts into layman’s terms - Ability to work effectively in diverse, multi-national and virtual environments - Self-motivated and tenacious - Demonstrate sound judgment and integrity - Ability to influence delivery personnel in the execution of security and compliance requirements - Experience of translating contractual security requirements to deliverables What you should expect in this role - Remote position (US only) - Opportunities to travel through your work (0-10%) - Video cameras must be used during all interviews, as well as during the initial week of orientation - The deadline to submit applications for this posting is 4/30/2026 The pay range for this position is $90,000 - $129,000 per year, however, the base pay offered may vary depending on geographic region, internal equity, job-related knowledge, skills, and experience among other factors. Put your passion to work at Gainwell. You’ll have the opportunity to grow your career in a company that values work flexibility, learning, and career development. All salaried, full-time candidates are eligible for our generous, flexible vacation policy, a 401(k) employer match, comprehensive health benefits, and educational assistance. We also have a variety of leadership and technical development academies to help build your skills and capabilities. We believe nothing is impossible when you bring together people who care deeply about making healthcare work better for everyone. Build your career with Gainwell, an industry leader. You’ll be joining a company where collaboration, innovation, and inclusion fuel our growth. Learn more about Gainwell at our company website and visit our Careers site for all available job role openings. Gainwell Technologies is an Equal Opportunity Employer, where all qualified applicants will receive consideration for employment without regard to race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical condition), age, sexual orientation, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. Gainwell Technologies defines “wages” and “wage rates” to include “all forms of pay, including, but not limited to, salary, overtime pay, bonuses, stock, stock options, profit sharing and bonus plans, life insurance, vacation and holiday pay, cleaning or gasoline allowances, hotel accommodations, reimbursement for travel expenses, and benefits.

Related Job Pages

More Security Analyst Jobs

Matrix Medical Network logo

Security Audit Analyst

Matrix Medical Network

Matrix Medical Network is the nation’s leading independent provider of comprehensive in-home health assessments, serving Medicare Advantage, Managed Medicaid and Commercial patients across all 50 states. With a network of 3,000 + clinicians, we deliver personalized Whole Person Care that includes diagnostic testing, risk identification, medication management and preventive health education, empowering people to better manage acute and chronic conditions. Guided by our mantra - We see you. We hear you. We’ve got you. - and our core values of Integrity, Accountability, Trust, Respect and Passion, we are committed to creating a culture where both patients and teammates feel valued, supported and heard.

Security Analyst125 days ago
Full TimeRemoteTeam 5,001-10,000

Overview Security Audit Analyst (Remote) About Us: Matrix Medical Network is a leading clinical services organization that supports the needs of diverse and vulnerable populations, working with millions of individuals across the country to assess and help them manage their health risks through our large network of clinicians. We support Medicare Advantage, Managed Medicaid and Commercial plans; serving populations of all ages, from seniors to other high-risk individuals. Matrix colleagues understand the important role every department plays in helping the members and customers we serve have the best experience possible across all touchpoints. Join our team and help create innovative strategies and solutions to make quality healthcare more accessible! Matrix Medical Network is proud to be a Diversity, Equity, Inclusion and Accountability Employer Why Work at Matrix? - The opportunity to work with one of the fastest growing companies in healthcare whose vision is to provide unparalleled quality and value to providers and members. - A chance to work with great people on exciting projects. - Our opportunities allow you to leverage your expertise and compassion, making a direct impact to the health and well-being of members. - Competitive Compensation: Be rewarded for your effort and passion while making a difference in the community. Responsibilities About the role: Type: Full Time Salaried Compensation: Target $135,000; 10% bonus Location: Fully Remote, must be in the United States Hours: Full Time Days Benefits Offered to include: Medical, Dental, Vision, paid time off, paid holidays, 401K with company matching, voluntary life insurance, short term disability, long term disability, employee assistance program, health savings account, flexible spending accounts, additional voluntary benefits available. What to Expect: The Security Audit Analyst supports Matrix Medical Network’s IT Security and Risk program by performing audits, enforcing policy compliance, and conducting vulnerability assessments. This role plays a key part in entitlement reviews and helps identify opportunities to automate user provisioning, deprovisioning, and access review processes. The analyst will collaborate closely with peers across Information Security, IT Infrastructure, and Business Operations to promote and uphold Matrix’s information security policies, ensuring the effectiveness of security controls. The ideal candidate demonstrates a strong understanding of IT systems, cybersecurity principles, and healthcare compliance, with a keen eye for process improvement and risk mitigation. Responsibilities: - Respond to internal and external inquiries regarding Matrix’s security program, including Client Security Questionnaires, HITRUST CSF Audits, and other regulatory requests. - Conduct and document entitlement reviews, inactivity audits, and other recurring validation activities. - Administer and maintain Identity and Access Management (IAM) tools. - Maintain and enhance audit and control processes to ensure compliance and operational efficiency. - Verify the integrity and effectiveness of Security Operations procedures and IT security controls. - Identify deviations from policies and procedures; communicate critical security control gaps to management. - Analyze vulnerability scan reports and validate the severity of identified issues. - Support continuous improvement of Security Operations processes through innovation, collaboration, and automation. - Perform additional duties as assigned. Qualifications Experience: - Bachelor’s degree in Computer Science, Cybersecurity, Information Systems, or a related field. - 2–4 years of experience in information security or IT infrastructure within a HIPAA-regulated organization. - 2–4 years of experience in a cloud environment (preferably Azure) with a strong understanding of related compliance requirements. - 2+ years of experience in information security auditing preferred. Skills: - Working knowledge of HIPAA Security and Privacy Rules and industry security frameworks (e.g., HITRUST, NIST). - Industry certifications such as CISSP, Security+, or ISACA credentials preferred. - Proficiency in Microsoft Excel for reporting and analysis. - Strong written and verbal communication skills with the ability to convey technical concepts in business-friendly terms. - Proven ability to work independently in a remote environment and collaborate effectively with cross-functional teams. - Strong analytical, organizational, and prioritization skills. - Ability to maintain confidentiality and adhere to data privacy requirements. - Familiarity with vulnerability scanning tools and Active Directory preferred. - Experience working in highly regulated environments (healthcare or financial services) is a plus. Our Culture: - We have a clear vision of where we are going, and we are guided by core values that embody our organization and our culture. - We emphasizes innovation and growth, and you will be given the opportunities and tools to develop personally and professionally. - We encourage and celebrate collaboration. - We have a deep commitment to positively impact the communities in which we work and to make a difference in the lives of who we serve. Matrix Medical Network is an Equal Employment Opportunity Employer. It is the policy of Matrix to provide equal employment opportunities without regard to race, color, religion, sex, gender identity or expression, pregnancy, age, national origin, age, disability, marital status, veteran status, sexual orientation, genetic information or any other protected characteristic under applicable law. It is also the policy of Matrix that qualified individuals with disabilities receive equal opportunity in regard to job application procedures, hiring, and all aspects of the employment process. Matrix is committed to the full inclusion of all qualified individuals. Consistent with the Americans with Disabilities Act (ADA) and applicable state and local laws, it is the policy of Matrix to provide reasonable accommodation when requested by a qualified applicant or employee with a disability, unless such accommodation would cause an undue hardship. If reasonable accommodation is needed to participate in the job application or interview process, pre-employment testing, to otherwise participate in the selection process, to perform essential job functions, and/or to receive other benefits and privileges of employment, please contact MatrixHR@matrixhealth.net.

United States
Numotion logo

Security Analyst

Numotion

Numotion is a leading mobility and rehab equipment supplier headquartered in Brentwood, Tennessee. Committed to serving its customer's lifelong needs, Numotion

Security Analyst125 days ago

At Numotion, we’re on a mission to improve the lives of people with disabilities. As North America’s largest provider of mobility products and services, we deliver personalized solutions from manual and power wheelchairs to medical supplies and other assistive technologies that support health, independence, and everyday participation. We’re committed to a workforce of diverse backgrounds and experiences and to an inclusive environment shaped by open dialogue, attentive listening, and tangible, ongoing action. The Security Analyst supports the organization’s cybersecurity program by monitoring systems, investigating security events, and assisting with the execution of core security initiatives. This role focuses on operational security tasks and works under the guidance of senior team members to ensure threats are identified and addressed in a timely manner. The Security Analyst plays a key role in maintaining day-to-day security operations while developing technical skills and experience across multiple security domains. The pay range for this position is $65,000-75,000 Salary. It is not typical for an individual to be hired at or near the top of the pay range and compensation decisions are dependent on the facts and circumstances of each case. The specific compensation offered to a candidate may be influenced by a variety of factors including skills, qualifications, experience and location. KEY RESPONSIBILITIES: § Monitor security alerts, logs, and dashboards to identify potential security incidents and escalate as appropriate § Perform initial analysis and investigation of security events following established procedures § Support ongoing security initiatives such as vulnerability management, endpoint protection, and threat detection activities § Maintain and operate security tools including SIEM, DNS, AV, and cloud security technologies § Assist with documentation of incidents, investigations, and remediation actions § Utilize Numotion Leadership Principles to perform job with integrity, compliance, and values consistent with Numotion’s mission. § Adhere to employee or customer confidentiality and comply with Numotion’s policies and federal regulations. § Always provide excellent customer service for all internal and external customers of the operations. Provide solutions for customer concerns and continually focus on customer service as our top priority. § The above duties and responsibilities are not an all-inclusive list but rather a general representation of the duties and responsibilities associated with this position. The duties and responsibilities will be subject to change based on organizational needs and/or as deemed necessary by management. REQUIRED QUALIFICATIONS, SKILLS, AND EXPERIENCE: § 1-4 years of relevant experience § Ability to analyze and troubleshoot security-related issues with guidance from senior staff § Strong communication skills and willingness to collaborate with technical and non-technical teams § Experience with endpoint security or monitoring tools (CrowdStrike experience preferred) § Basic scripting or automation experience (PowerShell preferred) § Exposure to cloud environments and security concepts PREFERRED QUALIFICATIONS, SKILLS, AND EXPERIENCE: § Knowledge of mobility and accessibility equipment and products. § Experience with inventory software, order processing systems, and internet tools. § Strong interpersonal, presentation, and problem-solving skills. § Familiarity with third-party payer systems including VA, Insurance Waiver Programs, and Commercial payers. § Proven ability to lead through change and drive performance in a fast-paced environment. PHYSICAL WORK REQUIREMENTS: The physical demands and work environment characteristics described here are representative of those that must be met by an employee to successfully perform the essential functions of the job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. § Frequent use of hands, wrists, fingers associated with computer equipment. § Prolonged periods of time working at a desk and/or on a computer. § Occasionally move and reach with arms and hands. § Ability to lift/move up to 20 pounds. At Numotion, we offer competitive compensation packages, including medical, dental and vision insurance, short-term and long-term disability, a 401k, and life insurance. Numotion is an equal opportunity employer. We strive for a workplace that reflects the communities we serve and do not tolerate discrimination against our employees, customers, and partners regardless of ethnicity, disability, gender identity, sexual orientation, religion, age, citizenship, marital or veteran status. Numotion is a drug-free workplace. Candidates are required to pass a drug test before beginning employment.

United States
$65K - $75K / year
Job Closed

Role Description - Gerenciar e acompanhar todo o fluxo de processos de importação, assegurando conformidade, prazos e qualidade operacional; - Digitar, revisar e registrar processos no sistema, mantendo cadastros e documentos sempre atualizados; - Emitir numerários, documentos de importação e conferência de informações junto a transportadoras, armadores, recintos alfandegados e fornecedores; - Planejar e coordenar o agendamento de carregamentos, acompanhando prazos e execução junto aos stakeholders internos e externos; - Contribuir para a análise e otimização de processos, propondo melhorias e soluções que aumentem a eficiência operacional; - Preparar relatórios gerenciais e indicadores de performance da área de importação; - Garantir o controle documental completo, arquivamento adequado e suporte a auditorias internas ou externas; - Apoiar a equipe em atividades administrativas e estratégicas da área, promovendo integração com outros setores; - Executar outras atividades correlatas ao setor, alinhadas aos objetivos estratégicos da empresa. Qualifications - Formação superior em andamento ou completa em Comércio Exterior, Relações Internacionais ou áreas correlatas. - Experiência mínima de 2 anos em rotinas de importação ou comércio exterior. - Conhecimento intermediário/avançado em Excel. - Capacidade analítica para revisão de processos, indicadores e melhorias operacionais. - Boa comunicação, organização, proatividade e dinamismo. Benefits - Remuneração: R$ 5.000,00 a R$ 5.500,00 (Sênior) - R$ 635,00 alimentação/refeição - R$ 400,00 ajuda de custo creche (caso tenha filhos até 7 anos) - Plano de saúde - Seguro de vida - Vale transporte público - TotalPass: benefício com desconto em academias Company Description

Brazil
$4.5K - $5.5K / year
Job Closed
Summit 7 Systems logo

Senior GRC Analyst

Summit 7 Systems

Summit 7 is here to rise above the ordinary. The work we do here goes far beyond day-to-day projects - it further protects the US defense industrial base from cyber threats, fosters thought leadership, and creates growth opportunities. Our support staff, sales team and technicians are all coming together to make a difference. We also recognize that you're a person with life beyond work, that's why we invest in these meaningful health and welfare benefits.

Security Analyst125 days ago
Full TimeRemoteTeam 201-500

Position Title: GRC Analyst Clearance: Desired, not required Location: Huntsville, AL/Remote Salary*: $110,000+ *Dependent upon qualifications Summit 7 is here to rise above the ordinary. The work we do here goes far beyond day-to-day projects - it further protects the US defense industrial base from cyber threats, fosters thought leadership and creates growth opportunities. Our support staff, sales team and technicians are all coming together to make a difference. We also recognize that you're a person with life beyond work, that's why we invest in meaningful health and welfare benefits such as: - Excellent health/dental benefits from BCBS - See into the future with our luxurious VSP vision benefits - Prepare for the long-haul courtesy of our 401k with company matching - Unlimited mobile phone plan - 10 days' vacation, 7 days sick time - Bonuses and salary increase potential via our certifications plan We do cool work here, defying expectations by simply being who we are - each of us makes an impact. Summary We are seeking a detail-oriented GRC Analyst to join our compliance and risk management team supporting critical defense industrial base (DIB) requirements. This role is essential to our expanding compliance program portfolio, including CMMC Level 2/3, NIST 800-171 R2/R3, ISO 27001:2022, GDPR, and SOC 2 Type II certifications. As a GRC Analyst, you will be responsible for the operational execution of our compliance programs, ensuring continuous monitoring, evidence management, and risk remediation tracking across multiple frameworks. You will work closely with the VP Cybersecurity Compliance and cross-functional teams to maintain audit readiness and support the implementation of new compliance programs. This position is ideal for a compliance professional who thrives in operational roles, values process discipline, and wants to contribute to protecting national security through robust cybersecurity governance. Responsibilities Continuous Compliance Operations (55%) - Evidence Management: Collect, organize, and maintain compliance evidence on weekly, monthly, quarterly, and semi-annual schedules across all active frameworks - ServiceNow GRC Administration: Update and maintain GRC modules including control implementations, risk registers, POA&Ms, and compliance artifacts - Risk & POA&M Management: Distribute notifications to risk and POA&M owners, track remediation activities, escalate overdue items, and maintain accurate status reporting - Supplier Risk Management: Coordinate supplier risk assessments including onboarding, offboarding, and annual reviews; maintain vendor risk documentation - Cross-Framework Reconciliation: Map and reconcile evidence requirements across multiple standards as new versions are released Program Implementation Support (30%) - New Program Standup: Assist with implementation of new compliance frameworks including document gathering, gap analysis support, and stakeholder coordination - Control Implementation Tracking: Monitor and document control implementation progress, identify blockers, and support remediation efforts - Assessment Preparation: Prepare evidence packages and coordinate with assessors for C3PAO, ISO certification, and other third-party audits - Documentation Development: Support development and maintenance of System Security Plans (SSPs), policies, procedures, and compliance documentation Collaboration & Continuous Improvement (15%) - Cross-Functional Coordination: Work with IT, Engineering, HR, Legal, and other departments to gather evidence and implement controls - Process Improvement: Identify opportunities to streamline evidence collection and automate compliance workflows - Training Support: Participate in compliance training initiatives and security awareness programs - Audit Support: Serve as primary liaison for evidence requests during audits and assessments Requirements Education & Experience - Bachelor's degree in Information Security, Computer Science, Risk Management, or related field; or equivalent practical experience - 2-4 years of experience in GRC, compliance, information security, or IT audit roles - Demonstrated practitioner experience with at least one major compliance framework (NIST 800-171, ISO 27001, SOC 2, CMMC, or similar) Technical Skills - Working knowledge of NIST 800-171 R2/R3, CMMC Levels 1-3, and/or ISO 27001:2022 requirements - Experience with GRC platforms (ServiceNow GRC, Future Feed, or similar) - Proficiency with Microsoft Office 365 and collaboration tools - Understanding of information security concepts, controls, and risk management principles Core Competencies - Exceptional Attention to Detail: Ability to manage complex evidence matrices and ensure accuracy across multiple frameworks - Process Discipline: Strong adherence to established procedures and documentation standards - Organizational Skills: Ability to manage multiple deadlines, priorities, and stakeholder requests simultaneously - Communication: Clear written and verbal communication skills for stakeholder coordination and documentation - Analytical Thinking: Capability to understand control requirements and translate them into operational evidence collection activities Preferred Qualifications - Certifications: One or more of the following: - Certified CMMC Professional (CCP) or Certified CMMC Assessor (CCA) - Certified Information Systems Security Professional (CISSP) - Certified Information Security Manager (CISM) - ISO 27001 Lead Implementer or Lead Auditor - CRISC (Certified in Risk and Information Systems Control) - Experience working in defense industrial base (DIB) organizations or cleared environments - Hands-on implementation or assessment familiarity with NIST 800-171 r2/r3, NIST 800-53, NIST 800-172, or FedRAMP requirements - Background in IT operations, systems administration, or cybersecurity engineering Summit 7 Systems is an equal opportunity/ affirmative action employer and an alcohol and drug free workplace. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or veteran status. Summit 7 Systems requires background investigations. Any offer of employment is contingent upon the results of a reference/background check. We are a drug and alcohol-free workplace and require pre-employment drug screening.

United States
$110K / year