1

Hitrust Jobs (NOW HIRING)

This role focuses on certifications and attestations such as SOC/ISAE, HITRUST, and PCI, providing governance and program support across the audit and assessment lifecycle. Responsibilities : • ...

New

Application Engineer

New York, NY · Remote

$80K - $120K/yr

Apply MITRE ATT&CK, NIST CSF, and HITRUST CSF to guide detection engineering and control implementation. * Contribute to SOC runbooks, SOPs, and automation playbooks (SOAR). Security audits ...

If yes, consider joining Baker Tilly (BT) as an IT Audit, Cybersecurity & Risk Manager (HITRUST) ! Our Risk Advisory practice provides a full spectrum of services to help our clients assess their ...

Senior GRC Analyst

Richmond, VA · On-site +1

$95K - $124K/yr

Support SOC 2, ISO 27001, and HITRUST readiness, audit preparation, evidence collection, auditor coordination, and audit response management. Control Testing: Maintain recurring evidence-gathering ...

Data Engineer

Manhattan, NY · Remote

$105K - $115K/yr

Ensure all data structures and processes adhere to HITRUST/HIPAA standards, collaborating with IT and the leads for technical efforts for HITRUST certification readiness. Required Skills & Experience

This leader owns our healthcare compliance and security assurance programs - including HIPAA, HITRUST, and vendor risk - and serves as the clear point person for how we demonstrate security to ...

Support SOC 2, ISO 27001, and HITRUST readiness, audit preparation, evidence collection, auditor coordination, and audit response management. Control Testing: Maintain recurring evidence-gathering ...

next page

Showing results 1-20

Hitrust information

See salary details

$71.5K

$122.4K

$181.5K

How much do hitrust jobs pay per year?

As of Jun 6, 2026, the average yearly pay for hitrust in the United States is $122,393.00, according to ZipRecruiter salary data. Most workers in this role earn between $97,500.00 and $146,500.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive in the Hitrust position, and why are they important?

To thrive in a HITRUST professional role, you need a robust understanding of information security, healthcare compliance, and risk assessment, typically supported by a relevant degree or certifications such as HITRUST Certified CSF Practitioner (CCSFP). Proficiency with regulatory frameworks like HIPAA, GRC tools, and HITRUST’s MyCSF platform is crucial. Strong attention to detail, analytical thinking, and effective communication are key soft skills for working with cross-functional teams and translating complex requirements. These skills enable professionals to ensure organizational compliance, manage complex security assessments, and foster trust in healthcare data protection programs.

What typical responsibilities can I expect as a HITRUST professional in a healthcare organization?

As a HITRUST professional, you will be responsible for guiding organizations through the HITRUST CSF certification process, conducting comprehensive risk and gap assessments, and creating remediation plans to address compliance issues. Your work will often involve collaborating with IT, compliance, and executive teams to implement policies, improve security controls, and ensure adherence to industry standards like HIPAA and HITECH. You can also expect to manage regular audits, prepare documentation, and educate staff on emerging security requirements. This role plays a key part in maintaining regulatory compliance and safeguarding sensitive patient data.

What is a HITRUST job?

A HITRUST job typically involves working with the HITRUST Common Security Framework (CSF) to help organizations achieve and maintain regulatory compliance, data security, and risk management. Professionals in this role may conduct risk assessments, implement security controls, and guide organizations through the HITRUST certification process. Common job titles include HITRUST Consultant, Compliance Analyst, and Security Auditor. These roles require expertise in cybersecurity, regulatory frameworks, and industry best practices.

What cities are hiring for Hitrust jobs? Cities with the most Hitrust job openings:
What are the most commonly searched types of Hitrust jobs? The most popular types of Hitrust jobs are:
What states have the most Hitrust jobs? States with the most job openings for Hitrust jobs include:
Infographic showing various Hitrust job openings in the United States as of May 2026, with employment types broken down into 74% Full Time, and 26% Contract. Highlights an 79% In-person, 4% Hybrid, and 17% Remote job distribution, with an average salary of $122,393 per year, or $58.8 per hour.
IT Security Specialist I- Governance Analyst : Detroit, MI (Onsite)(Only local)

IT Security Specialist I- Governance Analyst : Detroit, MI (Onsite)(Only local)

Marvel Technologies Inc

Detroit, MI • On-site

Contractor

Posted 29 days ago


Job description

IT Security Specialist I - Only w2 consultants
Location: Detroit, MI (Onsite)(Only local)
Please Note: Must be local to Michigan; Second interview – required in person
 
Job Description:
Engagement Description –
The  Compliance/Governance Analyst will be responsible for assisting in the responsibilities of executing the security framework compliance/governance activities and requirements for our client.  Day-to-day responsibilities will also include documenting adherence to governance requirements across policies/standards, procedures, controls, compliance, training and awareness, and preparing metrics/KPIs and reporting materials.  
•    Evaluate the design and operation effectiveness of Business/IT operations against the HITRUST CSF and identify areas of improvement
•    Interview SMEs, examine evidence documentation, analyze and perform testing
•    Learn the company functions/processes by conducting process walk throughs
•    Analyze root cause of issues, provide recommendations for process improvements and risk mitigation based on assessment findings
•    Collaborate with cross-functional teams to mitigate risks and ensure compliance with HITRUST CSF
•    Deliver effective and concise documentation that meets HITRUST quality standards
•    Prepare and provide reporting such as dashboards and metrics, on various areas of performance, issue analysis and assessment statuses
•    Utilize GRC tools to effectively manage assessment remediation plans and documentation
•    Serve as a HITRUST subject matter expert
•    Participate and provide support during audits, assessments, or other required third-party reviews.
•    Support initiatives/projects
•    Build relationships internally to foster a culture of teamwork and collaboration
 
Top 3 Required Skills/Experience –
•    At least 3-5 years of work experience in IT compliance, IT Assessments and/or IT audit experience as well as knowledge and understanding of governance, risk, compliance
•    Knowledge of security and risk frameworks, standards, best practices (e.g., HITRUST CSF, NIST CSF, ISO/IEC 27001, COBIT)
•    Self-starter with effective written and verbal communication skills along with strong critical thinking skill
 
Required Skills/Experience – The rest of the required skills/experience.  Include:  
•    Effective written and verbal communication skills and the ability to tailor communication style to the audience at hand.
•    Experience in coordination and execution of the audit lifecycle, including evidence collection, review, observation tracking, management response collection and auditor relations and communication.
•    Strong demonstration of problem-solving and decision-making ability.
•    Experience working on testing of IT controls across systems, databases, applications and operating systems.
•    Strong ability to frame and deliver messages based on experience and level of the listener.
•    Strong critical thinking skills to actively pursue opportunities to develop and implement solutions to solve work problems.  Must be able to solve problems, handle conflict, and make effective decisions under pressure with a highly professional demeanor.
•    Strong organizational skills
•    Strong ability to adjust to changing priorities while multitasking effectively.
•    Self-directed and works with minimal guidance.  Proactively seeks guidance when needed.
Education/Certifications – Include: 
•    Undergraduate university degree (4-year) preferred but not required.
•    Masters (e.g., MBA, MSIS, MIS, etc.) degree preferred but not required.
•    Five (5) years of combined IT experience to include two (2) years IT security work
•    Experience in Information Security, IT general controls, IT compliance, IT assessments and/or IT audit experience.
•    Certified Information Systems Security Professional (CISSP), CISA, CPA/CA, CISM or other equivalent professional certification preferred but not required.