1

Hitrust Contract Jobs in Riverside, CA (NOW HIRING)

Compliance Lead

Irvine, CA · On-site

$140 - $180/hr

What You'll Do * Own Avandra's compliance roadmap across HIPAA, HITRUST, and SOC 2; drive ... Familiarity with PHI data flows, health data integrations, and healthcare data contracts. * Prior ...

Hitrust Contract information

See Riverside, CA salary details

$17

$36

$52

How much do hitrust contract jobs pay per hour?

As of Aug 18, 2026, the average hourly pay for hitrust contract in Riverside, CA is $36.38, according to ZipRecruiter salary data. Most workers in this role earn between $30.10 and $41.88 per hour, depending on experience, location, and employer.

What is a HITRUST contract?

A HITRUST contract is a legal agreement that outlines the requirements and responsibilities for achieving or maintaining HITRUST certification, a widely recognized standard for information security and privacy in the healthcare industry. These contracts are often used between organizations and their vendors or partners to ensure compliance with the HITRUST Common Security Framework (CSF). The contract typically specifies the controls, reporting, and audit obligations needed to protect sensitive data, such as patient health information, and to meet regulatory requirements like HIPAA. Entering into a HITRUST contract can help organizations demonstrate their commitment to security and build trust with clients and partners.

What are some common challenges faced by professionals working on HITRUST contract compliance projects?

Professionals working on HITRUST contract compliance projects often face challenges such as interpreting complex regulatory requirements, coordinating with multiple departments to gather documentation, and ensuring that all security controls are properly implemented and maintained. Additionally, meeting tight audit deadlines and effectively communicating technical requirements to non-technical stakeholders can be demanding. These roles frequently require strong project management skills, attention to detail, and the ability to adapt to evolving compliance standards.

What are the key skills and qualifications needed to thrive as a HITRUST Compliance Manager, and why are they important?

To thrive as a HITRUST Compliance Manager, you need in-depth knowledge of information security, risk management, and regulatory frameworks, typically backed by a degree in IT or cybersecurity and experience with HITRUST CSF. Familiarity with compliance management tools, GRC systems, and HITRUST certification processes is crucial. Outstanding attention to detail, problem-solving skills, and strong communication abilities help you interpret standards and guide organizations through audits. These competencies ensure organizations maintain robust data protection, regulatory compliance, and successful HITRUST certification.

What is the difference between Hitrust Contract vs Security Analyst?

AspectHitrust ContractSecurity Analyst
CertificationsHITRUST CSF, HIPAACISSP, CISA, Security+
Work EnvironmentHealthcare, compliance-focusedIT security teams, various industries
Employer & IndustryHealthcare providers, vendorsAny industry with cybersecurity needs

HITRUST Contract roles focus on ensuring compliance with HITRUST standards, primarily in healthcare. Security Analysts handle broader cybersecurity tasks across industries, including threat detection and risk management. While both roles require security certifications, HITRUST Contract positions emphasize healthcare regulations, whereas Security Analysts have a wider scope in cybersecurity practices.

What job categories do people searching Hitrust Contract jobs in Riverside, CA look for?

The top searched job categories for Hitrust Contract jobs in Riverside, CA are:

What cities near Riverside, CA are hiring for Hitrust Contract jobs?

Cities near Riverside, CA with the most Hitrust Contract job openings:

Infographic showing various Hitrust Contract job openings in Riverside, CA as of August 2026, with employment types broken down into 50% Full Time, 8% Part Time, and 42% Contract. Highlights an 79% In-person, 4% Hybrid, and 17% Remote job distribution, with an average salary of $75,674 per year, or $36.4 per hour.

Compliance Lead

Doist

Irvine, CA • On-site

$140 - $180/hr

Other

Posted 4 days ago


Job description

About Aegis Ventures

Aegis Ventures partners with entrepreneurs and industry leaders to launch and scale transformative companies in digital health and artificial intelligence. Our platform brings together market-shaping ideas, growth capital, and ambitious individuals to solve major societal problems. With a focus on innovations in healthcare, Aegis has launched four successful portfolio companies in partnership with Northwell Health and recently announced the Digital Consortium to co-develop, invest in, and launch new companies.

About the Company

Avandra Imaging's mission is to unlock clinical data to overcome previously impossible medical challenges, bringing hope and medical breakthroughs that transform patient lives. Avandra is poised to revolutionize healthcare research and innovation by creating the largest indexed data cloud of medical imaging. This platform will unlock unprecedented access to real-world imaging data, essential for biopharma research, medical device innovation, AI model training, and improved patient care. Leveraging its strategic acquisitions, Avandra aims to aggregate and de-identify vast amounts of imaging data, providing frictionless access to this invaluable resource. With a national footprint of over 5,000 customer integrations and a market share of approximately 70%, this robust infrastructure supports their core business, ensuring continued growth and cash flow to fuel their innovative data cloud platform.

About the Job

As our Compliance Lead, you'll own and operationalize our compliance program - turning our regulatory obligations into a scalable, audit-ready system that earns the trust of health systems, investors, and the patients behind the data. Avandra handles protected health information across a growing network of health system partners. This is a build role. You'll work alongside our IT & Security Manager, contributing to security posture while owning the compliance workstream end-to-end. If you're energized by standing up programs - not just maintaining them - this is your role.

What You’ll Do
  • Own Avandra's compliance roadmap across HIPAA, HITRUST, and SOC 2; drive certification timelines and recertification cycles.
  • Maintain the risk register and conduct company-wide risk assessments on a defined cadence.
  • Author, publish, and maintain security and compliance policies and procedures.
  • Evaluate emerging frameworks (ISO 27001, NIST CSF) for relevance as we scale.
  • Coordinate evidence collection, gap assessments, and control testing across Engineering, Operations, and People teams.
  • Manage audit relationships with external assessors and compliance-automation platforms.
  • Maintain audit-ready documentation at all times - not just at audit season.
  • Own the vendor security intake and assessment process.
  • Respond to customer security questionnaires, RFPs, and due diligence requests; represent Avandra's compliance posture credibly to health system partners.
  • Conduct compliance assessments for acquisition targets - evaluate PHI handling practices, existing certifications, policy maturity, and open audit findings.
  • Own the post-acquisition compliance integration playbook: gap analysis, remediation roadmap, and timeline to bring acquired entities under the Avandra compliance umbrella.
  • Assess and rationalize subsidiary compliance programs; identify redundancies, coverage gaps, and certification consolidation opportunities.
  • Serve as the compliance integration contributor in cross-functional M&A workstreams alongside Legal, Finance, and Engineering.
  • Maintain a consolidated compliance posture across all entities - ensuring no subsidiary operates outside Avandra's policy and control framework.
What You’ll Need
  • 5+ years of hands-on compliance experience at a B2B SaaS or healthcare technology company.
  • Demonstrated ownership of HIPAA compliance programs; working knowledge of HITRUST (i1 or r2).
  • SOC 2 Type II experience - you've coordinated evidence, managed auditors, and closed gaps.
  • Ability to work cross-functionally with Engineering on technical controls without needing a translator.
  • Strong written communication - policy writing, questionnaire responses, and executive summaries are all in your wheelhouse.
  • Self-starter mentality; you build structure in ambiguity.
Preferred
  • Experience supporting compliance assessments or integration work in M&A contexts.
  • Familiarity with multi-entity or subsidiary compliance program management.
  • CISSP, CISM, HCISPP, or equivalent certification.
  • Experience with compliance automation tooling (Vanta, Drata, Tugboat Logic, etc.).
  • Familiarity with PHI data flows, health data integrations, and healthcare data contracts.
  • Prior experience at a growth-stage startup where the compliance program was being created, not inherited.
What Success Looks Like in Year One
  • SOC2 Type 2 re-certification for Avandra with two subsidiaries incorporated into the recertification.
  • Roadmap for HITRUST established.
  • Vendor risk assessment program operational with clear SLAs.
  • Security questionnaire response time cut in half with a repeatable, high-quality process.
  • Acquired entities are assessed and on a documented integration roadmap within 90 days of close.
  • All staff - including acquired teams - trained; policies current and audit-accessible.
What We Offer
  • Meaningful Impact: The work we do directly enables medical breakthroughs - such as earlier cancer detection, better Alzheimer's treatments, AI diagnostics that save lives. This isn't abstract; it's the reason our health system partners invest in us.
  • Career-Defining Opportunity: You'll have a front-row seat to every aspect of building a category-defining company - strategy, operations, fundraising, M&A, scaling.
  • Exceptional Team: Work alongside a founder with a track record of building and exiting healthcare technology companies, backed by investors who are true partners.
Competitive Package

Competitive salary, equity, comprehensive benefits, and hybrid work flexibility.

Values-Driven Culture

WIN with Integrity Radical Accountability Engage with Empathy Innovation Through Playful Curiosity Patients First

Equal Opportunity Employer

Aegis Ventures is a proud Equal Opportunity Employer - we recruit, train, compensate and promote our team members based on qualifications.

We encourage you to apply regardless of your race, religion, national origin, sex, gender identity, sexual orientation, disability, age, veteran status, or any other applicable legally protected characteristics.

#J-18808-Ljbffr