Information Security Analyst/Compliance Lead - CONTRACT
Nexus Technologies LLC
United States · Posted Jul 10
Job description
Responsibilities: Manage security policies and collect evidence for SOC 2 audits using compliance automation platforms. Monitor EDR alerts and execute incident response procedures to maintain a secure healthcare environment.
Requirements: Requires hands-on experience with SOC 2, Vanta or similar GRC tools, and CrowdStrike for alert triage. Must be U.S.-based and have a strong understanding of HIPAA compliance requirements.
Key skills: SOC 2 Compliance, Vanta, CrowdStrike, HIPAA Compliance, EDR Alert Triage, Incident Response, Control Mapping, GRC, Evidence Collection, Security Policy Management, Azure, ISO 27001, NIST RMF, GDPR, PCI DSS, Technical Documentation
Keywords: SOC 2, HIPAA, Vanta, CrowdStrike, EDR, GRC, Trust Service Criteria, Incident Response, Azure, ISO 27001, NIST RMF, GDPR, PCI DSS, Compliance Automation, Healthcare Services, Security Operations, Control Mapping, Audit Evidence, Remediation, Compensating Controls