Security Compliance Advisor

Fortified Health Security

United States

Hybrid

USD 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Fortified Health Security is looking for a Security Compliance Advisor to provide security and compliance consulting services in healthcare. Responsibilities include managing client projects, conducting assessments, and ensuring compliance with regulations such as HIPAA and NIST. Candidates should have a Bachelor's degree in Cybersecurity or Information Systems and at least 5 years of experience in information security consulting. Excellent communication skills and prior healthcare experience are preferred.

Qualifications

  • Minimum of 5 years of experience in information security consulting.
  • Prior cybersecurity experience within the healthcare industry preferred.
  • Strong written and verbal communication skills are required.

Responsibilities

  • Manage assigned client projects and conduct on-site assessments.
  • Develop Information Security and Compliance policies.
  • Conduct client presentations to technical and administrative audiences.

Skills

Information security consulting
Cybersecurity standards
Risk management
Project management
Client communication
Report writing
Healthcare compliance

Education

Bachelor’s degree in Cybersecurity, Information Systems

Tools

NIST Cybersecurity Framework
HIPAA compliance

Job description

Under the general direction of the Manager, Risk Assessment, the Security Compliance Advisor is responsible for providing security/compliance assessment and consulting services to our Healthcare clients. This position requires a working knowledge of information security frameworks, standards, laws, regulations, and protocols. The role includes responsibilities in project management, information security assessment, and client consulting on all matters related to the protection and regulatory compliance of patient health information.

Essential Job Functions

The following duties are normal for this position. The omission of specific statements of duties does not exclude them from being expected of this position if the work is similar, related, or a logical assignment for this position. Other duties may be required.

  • Manage assigned client projects, ensuring clear communication, managed expectations, and timely deliverables.
  • Conduct on‑site Information Security and Compliance assessments using Fortified Healthcare tools and methodology.
  • Develop or provide guidance on Information Security and Compliance policies and processes.
  • Maintain working knowledge of healthcare security/compliance federal, state laws/regulations and third‑party standards, including but not limited to HIPAA, HITECH, and HITRUST.
  • Ensure the organization’s adherence to cybersecurity standards and practices, particularly the HIPAA Security Rule and NIST Cybersecurity Framework.
  • Deliver high‑quality, professional client support in information security and compliance via conference calls, on‑site meetings, and electronic communications.
  • Manage client expectations and facilitate engagement throughout the assessment process.
  • Contribute to enhancing current services or developing new client offerings with leadership input and guidance.
  • Develop Corrective Action Plans (Risk Management Plans) following Security Risk Assessments. As agreed upon, develop client‑requested documentation such as Policies, Procedures, and similar materials.
  • Identify opportunities within client environments to reduce cybersecurity risks and communicate these internally when applicable.
  • Conduct client presentations to both technical and administrative audiences.
  • Have solid foundational knowledge and understand output from systems such as endpoint protection, encryption, vulnerability scans, etc. Should have knowledge of how organizations use dashboards from tools that are used to run hospital IT operations.
  • Have experience with report writing and delivery based on results of security assessments. This is required.
Education & Experience
  • Bachelor’s degree in Cybersecurity, Information Systems, or equivalent experience preferred.
  • Minimum of 5 years of experience in information security consulting, assessment, governance, risk, and compliance required.
  • Prior cybersecurity experience within the healthcare industry preferred.
  • Experience with company‑wide information Security Strategy and Strategic Planning.
  • Experience with Cybersecurity Remediation and Corrective Action Plan development and implementation.
  • Experience with Disaster and Business Continuity planning, construction, and review.
  • Experience with Training and Awareness program strategies and planning.
  • Experience with Risk tolerance, exposure, and overall program management.
  • Experience with risk tolerance measurement and knowledge to provide strategies to satisfy client’s exposure thresholds.
  • Knowledge of potential and emerging threats, vulnerabilities, and techniques used to control such as technical, physical, and administrative controls.
  • Experience with Incident Response and Breach Investigation planning, construction, and implementation.
  • Knowledge of Security Standards, Architectures, Frameworks and Best Practices such as ISO27001/27002, NIST Cybersecurity, COBIT, and PCI DSS.
  • Knowledge of International, Federal, and State regulatory and compliance requirements such as HIPAA, SOX, and GDPR.
Special Skills & Knowledge
  • Strong written and verbal communication skills required.
  • Proven ability to multitask, prioritize, and manage time effectively in a remote setting.
  • Highly motivated self‑starter with a drive to deliver excellence in all tasks.
  • Security certification such as Security+, CISSP, CCSP, HITRUST, HCISPP, CISM, CISA, CEH, GIAC, CHP, CHPS are preferred.
Requirements

Travel as required, up to 25%.

Valid driver’s license.

A quiet, professional workspace with a reliable high‑speed internet connection.

Fortified Health Security Equal Opportunity Employer Statement

Fortified Health Security is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Fortified Health Security will provide reasonable accommodations to qualified individuals with disabilities. If a reasonable accommodation is needed to perform this position, you need to inform Fortified Health Security People and Culture Team of such request.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Healthcare Security & Compliance Advisor
Healthcare Security & Compliance Advisor

Fortified Health Security • United States

Hybrid
USD 90,000 - 120,000
Security Engineer
Security Engineer

Birdirx • Plymouth (MI)

Remote
USD 90,000 - 130,000
Remote Senior Cybersecurity & Compliance Consultant (HIPAA, NIST & SOC 2)
Remote Senior Cybersecurity & Compliance Consultant (HIPAA, NIST & SOC 2)

Thehelloteam • New York (NY)

Hybrid
USD 100,000 - 130,000
Long-term growth opportunities
Flexible remote work environment
Security Engineer
Security Engineer

Birdi • Plymouth (MI)

Remote
USD 100,000 - 130,000
Senior Information Security Analyst -CISSP
Senior Information Security Analyst -CISSP

ARK Strategies • Rancho Cordova (CA)

On-site
USD 120,000 - 150,000
Manager Information Security Architecture & Compliance - Full Time
Manager Information Security Architecture & Compliance - Full Time

Connecticut Children's Medical Center • Hartford (CT)

Hybrid
USD 100,000 - 130,000
IT Security & Compliance Lead (Healthcare)
IT Security & Compliance Lead (Healthcare)

Premium Health Center • New York (NY)

Hybrid
USD 120,000 - 190,000
Paid time Off
Medical, Dental and Vision plans
Retirement plans
+1
Information Security Consultant
Information Security Consultant

Heartland Business Systems, LLC. • Fayetteville (AR)

On-site
USD 70,000 - 110,000
Head of Information Security
Head of Information Security

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000
Information Security Consultant
Information Security Consultant

Heartland Business Systems, LLC. • Town of Sun Prairie (WI)

On-site
USD 90,000 - 120,000