CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior Cloud Security Engineer
Parsippany Troy Hills, NJ · On-site
$140 - $190/hr
Relevant certifications such as CISSP, CCSP, HCISPP, CCSFP (HITRUST), AWS Security Specialty, Azure Security Engineer (AZ-500), GCP Professional Cloud Security Engineer, or GIAC certifications
Senior Cloud Security Engineer
Parsippany Troy Hills, NJ · On-site
$140 - $190/hr
Relevant certifications such as CISSP, CCSP, HCISPP, CCSFP (HITRUST), AWS Security Specialty, Azure Security Engineer (AZ-500), GCP Professional Cloud Security Engineer, or GIAC certifications
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
HITRUST Certified Common Security Framework Professional (CCSFP) * Certified Internal Auditor (CIA) * Certified Information Security Manager (CISM) * Certified Ethical Hacker (C | EH) * Certified in ...
... CCSFP, etc.) Working knowledge of multiple security frameworks, application controls, and the SDLC Entrepreneurial, client-centric mindset; works well independently and on teams Extensive completed ...
... CCSFP, etc.) Working knowledge of multiple security frameworks, application controls, and the SDLC Entrepreneurial, client-centric mindset; works well independently and on teams Extensive completed ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
New Hampshire, OH · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
New Hampshire, OH · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
Kansas, OK · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
Kansas, OK · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
Michigan, ND · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
Michigan, ND · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
California, MD · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Senior GRC Manager
California, MD · On-site
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in. * Experience with AWS, Azure, or GCP and related compliance ...
Ccsfp information
See salary details
$61.5K - $65.9K
12% of jobs
$69.8K is the 25th percentile. Wages below this are outliers.
$65.9K - $70.3K
14% of jobs
$70.3K - $74.7K
12% of jobs
The median wage is $78K / yr.
$74.7K - $79.1K
14% of jobs
$79.1K - $83.5K
2% of jobs
$83.5K - $88K
0% of jobs
$88K - $92.4K
0% of jobs
$92.4K - $96.8K
0% of jobs
$96.8K - $101.2K
0% of jobs
$101.2K - $105.6K
0% of jobs
$107.5K is the 75th percentile. Wages above this are outliers.
$105.6K - $110K
44% of jobs
$61.5K
$89.7K
$110K
How much do ccsfp jobs pay per year?
What is a CCSFP?
A CCSFP (Certified CSF Practitioner) is a cybersecurity professional specializing in the HITRUST Common Security Framework (CSF). They help organizations assess, implement, and maintain compliance with HITRUST CSF requirements. Their role often includes risk assessments, gap analyses, and advisory services to ensure organizations meet security and regulatory standards. CCSFPs typically work in healthcare, finance, and other regulated industries that require strong data protection.
What are the key skills and qualifications needed to thrive as a CCSFP?
To thrive as a CCSFP (Certified Cybersecurity Framework Professional), you need a thorough understanding of cybersecurity frameworks (such as HITRUST CSF, NIST, or ISO 27001), risk management, and compliance regulations, typically backed by relevant experience and industry-recognized certifications. Familiarity with assessment tools, audit software, and governance, risk, and compliance (GRC) platforms is commonly required. Strong analytical thinking, meticulous attention to detail, and effective communication help professionals excel when working with clients or cross-functional teams. These skills ensure proper evaluation of security controls, successful client interactions, and effective guidance in meeting compliance standards.
What kind of career growth can I expect as a CCSFP?
As a CCSFP, you benefit from strong career growth opportunities in the cybersecurity and compliance domains, with potential paths leading to senior consultant, manager, or director roles in risk management and information security. Your expertise in complex cybersecurity frameworks is highly valued in industries such as healthcare, finance, and technology, opening doors to specialized advisory or leadership positions. Many professionals also broaden their credentials by pursuing advanced certifications like CISSP or CISA. The demand for compliance and risk professionals continues to grow, allowing skilled CCSFPs to shape the future of organizational security and compliance strategies.
What job categories do people searching Ccsfp jobs look for?
The top searched job categories for Ccsfp jobs are:

Harris Computer rating
8.5
Based on 10 frontline employees who took The Breakroom Quiz
81st of 247 rated software companies
Job description
We're looking for a Senior GRC Manager to own our GRC program end to end and keep ClearDATA aligned with HIPAA, GDPR, HITRUST, SOC 2, etc. You'll maintain our Information Security Management Program, manage audit cycles, and work directly with auditors, including keeping policy and compliance documentation accurate as our systems and vendors evolve.
We want someone who treats compliance as a way to help the business move with confidence, not a set of hoops for other teams to jump through. You'll look for the practical, risk-based path to "yes" whenever one exists, and reserve hard stops for when they're truly warranted. This is a hands-on, senior role on our IT/ITSec team. You won't have direct reports, but you won't be working alone either - you'll have security engineers, DevSecOps, and leadership alongside you. We're looking for someone who'd rather build the control mapping than write a memo about who should build it.
Governance, Risk & Compliance
- Maintain ClearDATA's Information Security Management Program: the policies, procedures, and standards behind our security and compliance posture.
- Support audits, assessments, and certification renewals for HIPAA, GDPR, HITRUST, and SOC 2.
- Maintain the risk register, including tracking third-party and vendor risk.
- Keep control mapping and audit evidence current and organized.
- Support incident response planning alongside the IT/ITSec Manager and security team.
- Partner with security engineers and DevSecOps to translate control requirements into how systems are actually built and operated - and to turn what they've built into defensible audit evidence.
Documentation & Audit Liaison
- Update policies and program documentation as systems, vendors, or ownership of shared responsibilities change.
- Work directly with auditors to catch and close compliance gaps before they become findings.
- Flag open risk or outstanding items that need attention.
- Act as the go-to compliance resource across the company - engineering, DevSecOps, management, and executive leadership - helping teams find a workable path forward rather than just pointing at policy, and giving leadership a clear read on where the program stands.
- 5+ years in GRC, IT compliance, or information security compliance, ideally in a regulated industry, in hands-on roles rather than oversight or advisory.
- Direct experience maintaining an Information Security Management Program or similar compliance program.
- Working knowledge of HIPAA, SOC 2, HITRUST, or GDPR; healthcare experience strongly preferred.
- Experience working directly with external auditors.
- Proven ability to work across a technical organization and up to executive leadership - credible with security engineers and DevSecOps on the details, and able to give management and execs a straight answer on risk without burying it in framework language.
- Strong writing skills. You should be comfortable turning operational and technical detail into clear policy language.
- Organized and detail-oriented, able to manage several compliance workstreams at once.
- A pragmatic approach to risk: you can tell the difference between a real compliance issue and a theoretical one, and you'd rather solve a problem than just document it.
- CISA, HITRUST CCSFP, or CRISC certification - useful, but we care more about what you've actually run than what you've been certified in.
- Experience with AWS, Azure, or GCP and related compliance considerations.
- Experience with GRC tooling (e.g., Thoropass, OneTrust, or similar platforms).
- A background that spans both compliance and a technical discipline (IT, security, or engineering), so you can speak both languages.
You'll own a GRC program that matters, at a company where security and compliance are the product, not an afterthought.
About us:
Established in 2009, ClearDATA was born out of a need to address significant inefficiencies within the U.S. healthcare system. From slow data processing to security concerns, these challenges often stood between patients and timely and effective care.
As the healthcare industry began to embrace the public cloud, technology leaders faced a new set of challenges. Organizations found themselves navigating the fast-paced world of cloud innovations, regulatory compliance changes, and looming cyber threats. ClearDATA's founders understood the complexities involved this highly-regulated industry and created the first cloud compliance and security solution exclusively for healthcare.
About Harris Computer:
Harris provides mission critical software solutions for the Public Sector, Healthcare, Utilities and Private Sector verticals throughout North America, Europe, Asia and Australia.
Working for Harris is the perfect opportunity to fulfill your professional goals as well as achieve your personal dreams!
Our employees enjoy a casual work environment that offers comfort while providing superior service to our customers. We offer a comprehensive benefit package as well as other additional "Perks"!
- We empower our employees to make a difference
- We have an award-winning culture
- We offer opportunity to learn
- We are financially strong and we are owned by the largest software company in Canada (CSI)
- We have fun!
Follow us on social media to learn more about our company values, culture and initiatives!
- Instagram: @weareharris
- LinkedIn: Harris Computer
What we offer:
- Plenty of opportunities to grow your career
- Full benefits package medical, dental, vision, STD, Life benefits
- 3 weeks of vacation plus 5 personal days to recharge
- Employee stock ownership and RRSP program
- A chance to give back through community involvement
- Flexible work arrangements to suit your lifestyle
Salary Range:
$130 - 150K
What Harris Computer employees say
Pay
Benefits
Hours and flexibility
Workplace
Get the full story on Breakroom
About Harris Computer Systems
Sourced by ZipRecruiter
Harris Computer Systems, based in Ottawa, ON, CA, is an established player in the field of public sector software technology. Since its inception in 1976, the company has been striving to make clients' operations more efficient through reliable, practical, and flexible software solutions. Its extensive portfolio primarily serves utility, healthcare, public sector, and educational institutions, contributing to the betterment of public services through technology. Harris strongly believes in the value of forward-thinking technology and the power it has to drive progress for the public sector. This methodology is entirely in line with their mission to ensure customer success by providing reliable, practical, and robust software solutions.
Industry
Accounting services
Company size
1,001 - 5,000 Employees
Headquarters location
Ottawa, ON, CA