Enable job alerts via email!

Senior Security Compliance Analyst United States-Remote

Onestudyteam

United States

Remote

USD 100,000 - 140,000

Full time

8 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Join OneStudyTeam as a Senior Security Compliance Analyst. In this critical role, you will enhance security and compliance programs, ensuring adherence to regulatory standards such as ISO 27001 and HIPAA. Your expertise will drive audit management and risk assessments to uphold high standards in clinical research, ultimately helping to improve patient outcomes.

Qualifications

  • 8+ years of experience in GRC, compliance, and risk management.
  • Experience leading ISO 27001 audits and external audit coordination.
  • Strong understanding of NIST CSF, SOC 2, GDPR, and healthcare regulations.

Responsibilities

  • Lead and support customer security audits, respond to questionnaires.
  • Ensure ongoing compliance with ISO 27001 and HIPAA.
  • Develop and maintain policies to meet regulatory obligations.

Skills

Risk management
Compliance
Audit management
Security frameworks

Education

ISO 27001 Lead Auditor/Implementer certification
CISSP certification
CISM certification
CISA certification
HITRUST CCSFP certification
CRISC certification

Tools

OneTrust
LogicGate
Archer
Vanta
Drata

Job description

At OneStudyTeam (a Reify Health company), we specialize in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes. Our cloud-based platform, StudyTeam, brings research site workflows online and enables sites, sponsors, and other key stakeholders to work together more effectively. StudyTeam is trusted by the largest global biopharmaceutical companies, used in over 6,000 research sites, and is available in over 100 countries. Join us in our mission to advance clinical research and improve patient care.

One mission. One team. That’s OneStudyTeam.

We are seeking a Senior Security Compliance Analyst with expertise in Governance, Risk, and Compliance (GRC) to support and enhance our security and compliance programs within the healthcare industry. This role is critical in ensuring adherence to industry regulations, responding to customer audits, and maintaining compliance with ISO 27001, HIPAA, and other security frameworks.

The ideal candidate will be a detail-oriented compliance expert who can navigate complex regulatory environments, assist with internal/external audits, and drive continuous improvement in security governance.

What You’ll Be Working On

Audit & Compliance Management

Lead and support customer security audits, responding to security questionnaires and demonstrating compliance with security frameworks.

Prepare, coordinate, and manage ISO 27001 audits, including evidence collection, control implementation, and auditor engagement.

Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements applicable to healthcare data security.

Develop and maintain policies, procedures, and security documentation to meet regulatory and contractual obligations.

Perform gap analyses and risk assessments to identify and remediate compliance risks.

Governance & Risk Management

Manage and improve security governance frameworks, ensuring alignment with industry best practices and business objectives.

Conduct third-party vendor risk assessments, ensuring compliance with security policies and contractual obligations.

Monitor security controls, ensuring effectiveness and continuous improvement in alignment with security frameworks.

Support security awareness training initiatives, ensuring employees understand compliance responsibilities.

Regulatory & Framework Support

Stay current on ISO 27001, HIPAA, NIST 800-53, and other relevant standards, translating them into actionable security controls.

Assist in defining security metrics and reporting on compliance status and risk posture to leadership.

Work closely with legal, security, IT, and business teams to align compliance requirements with security operations.

What You’ll Bring to OneStudyTeam
  • 8+ years of experience in GRC, compliance, risk management, or IT audit, with a focus on ISO 27001, HIPAA, and HITRUST.
  • Experience leading ISO 27001 audits, including ISMS implementation and external audit coordination.
  • Strong understanding of NIST CSF, SOC 2, GDPR, and other security frameworks.
  • Hands-on experience with customer security audits, including responding to security questionnaires and managing security assessments.
  • Ability to perform risk assessments, policy reviews, and compliance gap analyses.
  • Familiarity with GRC tools (e.g., OneTrust, LogicGate, Archer, Vanta, Drata) is a plus.
  • Certifications (Preferred): ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CISA, HITRUST CCSFP, CRISC.

We value diversity and believe the unique contributions each of us brings drives our success. We do not discriminate on the basis of race, sex, religion, color, national origin, gender identity, age, marital status, veteran status, or disability status.

Note: OneStudyTeam is unable to sponsor work visas at this time. If you are a non-U.S. resident applicant, please note that OneStudyTeam works with a Professional Employer Organization.

As a condition of employment, you will abide by all organizational security and privacy policies.

This organization participates inE-Verify (E-Verify's Right to Work guidance can be found here ).

Create a Job Alert

Interested in building your career at OneStudyTeam? Get future opportunities sent straight to your email.

Apply for this job

*

indicates a required field

First Name *

Last Name *

Email *

Phone *

Resume/CV *

Enter manually

Accepted file types: pdf, doc, docx, txt, rtf

Enter manually

Accepted file types: pdf, doc, docx, txt, rtf

LinkedIn Profile *

Website

What are your personal pronouns? Select...

Will you now or in the future require sponsorship for employment visa status? * Select...

Have you had experience in leading a successful ISO 27001 or SOC2 Certification? *

Have you worked within a cloud environment (AWS or GCP)? *

Do you have active security certifications? If so please provide which ones are active. *

Tell us about your experience within a regulated environment such as HIPAA, GLBA, etc... *

OneStudyTeam Voluntary Demographic Questionnaire

At OneStudyTeam, we value belonging and believe in fostering an environment where a diversity of perspectives can thrive. This core value is a pillar of our business and critical to our success. Your voluntary responses will be used (in aggregate only) to help us identify areas of improvement in our process. Your responses are anonymous and will not be associated with your specific application and will not in any way be used in the hiring decision. If you do not wish to answer any of the questions below, please select "I don't wish to answer."

Which categories describe you? Please select all that apply to you: * Select...

How do you currently describe your gender identity? * Select...

Do you consider yourself to be a member of the LGBTQIA+ community? * Select...

Have you been diagnosed with any disability or impairment? * Select...

Do you identify as a military veteran or service member? * Select...

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Compliance Officer - BSA/AML and Fraud Testing

Lensa

Remote

USD 90,000 - 110,000

6 days ago
Be an early applicant

Associate Compliance Manager, Growth

Upstart

Remote

USD 109,000 - 151,000

6 days ago
Be an early applicant

Associate Compliance Manager, Growth

Ohiox

Remote

USD 109,000 - 151,000

7 days ago
Be an early applicant

Lending Operations & Compliance Manager

QuinStreet

On-site

USD 80,000 - 110,000

6 days ago
Be an early applicant

Cybersecurity & Compliance Analyst United States - Remote

Cybersheath

Remote

USD 110,000 - 130,000

30+ days ago

Manager, Compliance Audit Engineering

Hologic, Inc.

On-site

USD 119,000 - 200,000

9 days ago

REMOTE - Sr. Specialist, Import Compliance

Ross Stores

Remote

USD 70,000 - 106,000

30 days ago

Sr. Specialist, Import Compliance

Ross Stores

Los Angeles

Remote

USD 70,000 - 106,000

30+ days ago

Associate Compliance Manager, Growth

Upstart

San Mateo

Hybrid

USD 109,000 - 151,000

8 days ago