Information Security and Compliance Specialist

4 weeks ago


Boston, Massachusetts, United States Zus Health Full time
About Zus Health

Zus Health is a shared health data platform designed to accelerate healthcare data interoperability. Our mission is to catalyze healthcare's greatest inventors by maximizing the value of patient insights.

Job Description

We are seeking a highly motivated and detail-oriented Information Security and Compliance Co-op to join our infrastructure and security team. As a key member of our team, you will contribute to the development and hardening of our AWS cloud environments, assist product teams with service deployment and security improvements, participate in threat modeling and risk assessment activities, and contribute to our SOC2 audit compliance program.

Responsibilities
  • Help with Regulatory Compliance (SOC2), maintaining an auditable security posture
  • Track KPI around security, and help steer the strategy of how the InfraSec team uses and responds to these signals
  • Improve CI/CD tools integration/operations, and full automation of CI/testing
  • Participate in Threat Modeling (STRIDE) sessions, and help document, capture, and prioritize remediation or improvements
  • Cloud security (AWS): help improve security posture by researching and implementing configurations, fixes, or third-party services
  • Work with other engineering teams to develop or improve cloud infrastructure, remediate security vulnerabilities or improve logging, monitoring and metric capabilities
  • Help improve our engineering reliability and stability plan, including incident management and SLO monitoring
Requirements
  • A passion for information, infrastructure, or cloud computing
  • Experience with AWS compute and networking resources (ALB, S3, EC2, ECS, etc.)
  • A desire to learn and steward Infrastructure-as-Code (we primarily use Terraform)
  • Experience with continuous deployment
  • Familiarity with CI/CD pipeline tools (we primarily use GitHub Actions and Datadog) to achieve repeatable, idempotent, secure and monitored pipelines of code deployments
  • General awareness and knowledge of cybersecurity principles
  • Familiarity with Linux and the command line and coding: shell/bash, nodeJS, python (not necessary these languages, but the willingness to learn languages/frameworks to accomplish guided tasking)
  • A self-starter attitude that shows that you are ready for the fast, and sometimes unstructured, nature of an early stage startup, and can get things done independently
  • An effective communicator, and the willingness to level up in technical writing and communication (intra-team, customer, vendor, and leadership)
What We Offer
  • Competitive compensation that reflects the value you bring to the team
  • Opportunity to work alongside a passionate team that is determined to help change the world (and have fun doing it)


  • Boston, Massachusetts, United States Boston Consulting Group Full time

    Job SummaryWe are seeking a highly skilled Information Security Specialist to join our team at Boston Consulting Group. The successful candidate will be responsible for managing security compliance for our software and data offerings in alignment with AICPA's SOC 1 and SOC 2 framework and ISO 27001 standards.Key ResponsibilitiesManage security compliance for...


  • Boston, Massachusetts, United States Boston Consulting Group Full time

    About the RoleWe are seeking a highly skilled Security Compliance Specialist to join our team at Boston Consulting Group. As a key member of our Information Security team, you will be responsible for managing security compliance for our software and data offerings in alignment with AICPA's SOC 1 and SOC 2 framework and ISO 27001 standards.Key...


  • Boston, Massachusetts, United States Inficare Full time

    Job Summary:We are seeking a highly skilled Information Security Specialist to join our team at Inficare. The successful candidate will be responsible for evaluating, designing, and deploying security solutions to meet the needs of our clients.Key Responsibilities:Evaluating and implementing security solutions to meet client needsDesigning and deploying...


  • Boston, Massachusetts, United States eTek IT Services, Inc. Full time

    Job Title: Information Security AnalystAt eTek IT Services, Inc., we are seeking a highly skilled Information Security Analyst to join our team. The ideal candidate will possess a deep understanding of security frameworks, regulatory requirements, and best practices to ensure the organization's information assets are protected against potential threats.Key...


  • Boston, Massachusetts, United States Aqua Security Full time

    Cloud Native Security EngineerAqua Security is a global leader in cloud-native security, safeguarding software infrastructure from development to production. As a rapidly growing player in the cloud-native security space, we champion innovation, collaboration, and growth.We're seeking a talented Security Engineer to join our elite Security team and enhance...


  • Boston, Massachusetts, United States Aqua Security Full time

    Aqua Security is a global leader in cloud-native security, safeguarding software infrastructure from development to production.We're seeking a talented Security Engineer to enhance our vulnerability management and compliance operations.This role offers the opportunity to manage vulnerabilities, conduct security scans, and oversee the security...


  • Boston, Massachusetts, United States Lorven Technologies Full time

    Job Summary:We are seeking a highly skilled Information Security Analyst to join our team at Lorven Technologies. The ideal candidate will have a deep understanding of security frameworks, regulatory requirements, and best practices to ensure the organization's information assets are protected against potential threats.Key Responsibilities: Coordinate...


  • Boston, Massachusetts, United States Lorven Technologies Full time

    Job SummaryWe are seeking a highly skilled Information Security Analyst to join our team at Lorven Technologies. The ideal candidate will have a deep understanding of security frameworks, regulatory requirements, and best practices to ensure the organization's information assets are protected against potential threats.Key Responsibilities:Coordinate security...


  • Boston, Massachusetts, United States U S Compliance Full time

    Job SummaryWe are seeking a highly skilled Environmental Health and Safety Advisor to join our team at U S Compliance. As a key member of our team, you will be responsible for providing technical and regulatory support to our clients in the industrial sector.Key ResponsibilitiesConduct compliance audits, periodic training, and routine facility inspections to...

  • Security Supervisor

    4 weeks ago


    Boston, Massachusetts, United States Northeast Security Full time

    Security Supervisor Job DescriptionNortheast Security is seeking a skilled Security Supervisor to oversee the security operations of our high-rise class A buildings in Boston and surrounding areas.Responsibilities:Design and implement effective work schedules to ensure seamless service delivery.Ensure that trained and qualified security personnel are...

  • Security Supervisor

    4 weeks ago


    Boston, Massachusetts, United States Northeast Security Full time

    Security Supervisor Job DescriptionNortheast Security is seeking a Security Supervisor to oversee the security operations of our high-rise class A buildings in Boston and surrounding areas. The successful candidate will be responsible for ensuring the effective and efficient delivery of security services, managing a team of security personnel, and...


  • Boston, Massachusetts, United States Saviance Full time

    FedRamp Consultant- AWS CloudLocation: fully remoteDuration: 6 months with possibility for extensionPosition Overview:We are seeking a dedicated and knowledgeable FedRamp Consultant to guide and oversee the process of achieving and maintaining compliance with the Federal Risk and Authorization Management Program (FedRamp). In this critical role, you will be...

  • Security Engineer

    4 weeks ago


    Boston, Massachusetts, United States CPS Insurance Services Full time

    Job Title: Security Engineer - API Security SpecialistWe are seeking a highly skilled Security Engineer to join our DevSecOps team. The ideal candidate will have expertise in API security and a strong understanding of cloud security principles.Key Responsibilities:Own the API security program, including strategic planning and tool selection.Implement and...


  • Boston, Massachusetts, United States MAXIMUS Full time

    Job SummaryThe Compliance Management Analyst will support OS in various aspects, including OS Security Compliance, collaboration with OS Staff Divisions, coalition building, and awareness programs that promote OS Cybersecurity initiatives.This support aims to enhance security posture and ensure overall compliance.Key ResponsibilitiesAssist in the...


  • Boston, Massachusetts, United States MAXIMUS Full time

    Job SummaryThe Compliance Management Analyst will support OS in various aspects, including OS Security Compliance, collaboration with OS Staff Divisions, coalition building, and awareness programs promoting OS Cybersecurity initiatives.This support aims to enhance security posture and ensure overall compliance.Key ResponsibilitiesAssist in the development,...


  • Boston, Massachusetts, United States Sea Machines Full time

    Job SummaryWe are seeking a Product Security Specialist to join our team at Sea Machines, a leading provider of autonomous technology for marine vessels. As a Product Security Specialist, you will be responsible for designing and implementing secure software solutions and architectures.Key Responsibilities:Conduct vulnerability assessments and penetration...


  • Boston, Massachusetts, United States Information Systems Solutions Full time

    Information Systems Solutions (ISS) is seeking a highly skilled Cybersecurity Technical Specialist VI Level III to support the JS J7 Joint Training DevSecOps pipeline core infrastructure and data center in Suffolk, VA.The selected candidate will be responsible for supporting the Deputy Directorate, Joint Training (DDJT).This role is 100% onsite.Key...

  • Security Officer

    3 weeks ago


    Boston, Massachusetts, United States Arrow Security Full time

    Job OverviewArrow Security is seeking a highly skilled and dedicated Security Officer to join our team. As a Security Officer, you will be responsible for ensuring the safety and security of our clients and their properties.Key Responsibilities:Conduct property tours to ensure the security and safety of the premisesRespond to emergencies and incidents in a...


  • Boston, Massachusetts, United States Akima Full time

    The Senior Information Systems Security Manager will oversee IT security and networking operations, focusing on CISCO technologies, VoIP, and Navy systems.This full-time, onsite position at Portsmouth and St. Julien's Creek Annex requires a seasoned professional with at least 10 years of experience in IT security and networking, particularly with CISCO...


  • Boston, Massachusetts, United States Children's Hospital Boston Full time

    Job SummaryWe are seeking a highly skilled Research Compliance and Integrity Specialist to join our team at Children's Hospital Boston. This role will provide project management and analytical support for the development, implementation, and communication of policies and procedures consistent with Federal and State regulations governing biomedical...