IT Security & Compliance Specialist

KLR Executive Search Group LLC

Providence (RI)

On-site

USD 119,198 - 196,679

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Medical insurance
Vision insurance
401(k) matching
Gym membership reimbursement
15 days PTO increasing to 20 days after 1 year
12 paid company holidays in 2025
35 Work from Home Days per year

Job summary

A leading legal services firm in Providence, RI is seeking an Information Technology Compliance Manager. The role involves overseeing compliance with HIPAA and SOC 2 requirements, developing security policies, and leading risk assessments. Ideal candidates will have at least 5 years of information security experience and excellent communication skills. Competitive salary and comprehensive benefits are offered.

Qualifications

  • Minimum 5 years of experience in an information security role, preferably in a regulated environment.
  • Deep understanding of HIPAA and SOC 2 Type II requirements.
  • Experience with security frameworks like NIST or ISO 27001.

Responsibilities

  • Develop and maintain the Information Security Management Program.
  • Lead risk assessments and manage the SOC 2 Type II audit process.
  • Monitor systems for data security compliance.

Skills

Information security expertise
Regulatory compliance
Cross-functional collaboration
Incident response
Excellent communication

Education

Bachelor’s degree in information security, Computer Science, or a related field
Master’s degree (preferred)

Tools

SIEM
Endpoint protection
DLP
MFA

Job description

Information Technology Compliance Manager

Chisholm Chisholm & Kilpatrick (CCK) is a nationally recognized law firm committed to providing exceptional client service in the areas of Veterans Law, ERISA law, and Bequest Management. CCK is seeking an Information Security & Compliance Specialist to lead our information security and compliance program. The ISS will be responsible for developing, implementing, and overseeing policies and controls that ensure compliance with HIPAA data security requirements and SOC 2 Type II audit certification. This position requires both strategic thinking and hands-on execution, with strong cross-functional collaboration across IT, legal, operations, and client-facing teams.

Key Responsibilities
  • Policy & Program Management: Develop and maintain the firm’s Information Security Management Program (ISMP); Establish and enforce data governance and cybersecurity policies in accordance with HIPAA, SOC 2, and relevant state laws; Own documentation of controls, risk assessments, audit responses, and security-related protocols.
  • Compliance & Risk Management: Lead regular risk assessments and threat modeling initiatives; Manage the SOC 2 Type II audit process, partnering with third-party auditors and internal stakeholders; Oversee HIPAA compliance, including breach notification protocols, security risk analysis, and access control.
  • Security Operations: Monitor cloud platforms, email, file sharing, and endpoints for data security compliance; Implement and maintain tools such as SIEM, MFA, and endpoint protection solutions; Evaluate third-party vendors for security posture and compliance alignment; Deliver firm-wide HIPAA security training and ongoing security awareness initiatives; Foster a culture of compliance through education and stakeholder engagement; Respond to incidents as needed, including triage, containment, and remediation support; Maintain up-to-date knowledge of industry trends, emerging threats, and best practices.
Job Requirements
  • Bachelor’s degree in information security, Computer Science, or a related field (Master’s preferred).
  • Minimum 5 years of experience in an information security role, preferably within a highly regulated environment.
  • Deep understanding of state data security laws and regulations, HIPAA data security requirements and experience preparing for or managing SOC 2 Type II audits.
  • Familiarity with NIST, ISO 27001, or COBIT frameworks.
  • Experience with security tools (SIEM, endpoint protection, DLP, MFA, etc.).
  • Experience with the incident response life cycle.
  • Excellent communication skills and ability to work with legal, technical staff and non-technical staff.
Preferred Certifications
  • Certified Information Security Manager (CISM)
  • Certified HIPAA Security Professional (CHSP) or equivalent
  • SOC 2 implementation or auditing experience
  • Competitive salary based on experience
  • CCK offers options for medical, dental, and vision insurance (including employer-paid medical insurance for the employee!) and other wellness benefits
  • Gym membership reimbursement
  • 15 days of PTO which increase to 20 days of PTO after 1 year plus 12 paid company holidays in 2025
  • 35 Work from Home Days per year that can be used for any reason
  • 401k matching
Seniority level
  • Mid-Senior level
Employment type
  • Full-time
Job function
  • Information Technology
  • Industries: Legal Services

Referrals increase your chances of interviewing at KLR Executive Search Group LLC by 2x

Inferred from the description for this job

Medical insurance

Vision insurance

401(k)

Get notified about new Information Technology Compliance Manager jobs in Providence, RI.

Providence, RI $119,198.35-$196,679.39 2 weeks ago

Manager of Information Security Operations

IT Project Manager with Security Clearance

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Manager Information Security Architecture & Compliance - Full Time
Manager Information Security Architecture & Compliance - Full Time

Connecticut Children's Medical Center • Hartford (CT)

Hybrid
USD 100,000 - 130,000
Manager of Information Security and Compliance
Manager of Information Security and Compliance

iboss • United States

On-site
USD 100,000 - 130,000
Health, Vision, Dental
401(k) with company match
Unlimited Paid Time Off
+1
Information Security & Compliance Lead (HIPAA/SOC 2)
Information Security & Compliance Lead (HIPAA/SOC 2)

KLR Executive Search Group LLC • Providence (RI)

On-site
USD 119,000 - 197,000
Information Security Administrator, GRC - Boston
Information Security Administrator, GRC - Boston

Mintz • Boston (MA)

On-site
USD 85,000 - 100,000
Bonus eligible
Comprehensive benefits package
Senior Security Engineer - Compliance and Risk
Senior Security Engineer - Compliance and Risk

Khealthcareers • New York (NY)

Hybrid
USD 150,000 - 200,000
Hybrid work schedule
Monthly social committees
18 vacation days
+2
Manager - Cybersecurity
Manager - Cybersecurity

Clinical Reference Laboratory • Lenexa (KS)

On-site
USD 110,000 - 245,000
Medical benefits
Dental benefits
Vision benefits
+4
Head of Information Security
Head of Information Security

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000
Security Compliance Advisor
Security Compliance Advisor

Fortified Health Security • United States

Hybrid
USD 90,000 - 120,000
Information Security Consultant
Information Security Consultant

Heartland Technology Group • Fayetteville (AR)

On-site
USD 65,000 - 95,000
IT Compliance Manager
IT Compliance Manager

IMPACT STAFFING INTERNATIONAL • Irving (TX)

On-site
USD 120,000
Medical insurance
Vision insurance
401(k)