IT Systems Compliance Analyst
- ๐บ๐ธ United States
- On-site
- 1 day ago
- NIST
- STIGs
- HITRUST
- SOC2
- CMS
- RHEL
- Windows
- FISMA
- Nessus
- Wiz
- Risk Management
- Vulnerability Management
- Incident Response
- Configuration Management
- SQL
- Excel
- CompTIA Security+
- CISSP
IT Systems Compliance Analyst
Location: Remote (US)
Type: Contract, through March 2027 (40 hrs/week)
Employment: W2 only. Must be authorized to work in the US without sponsorship.
About the Role
A large healthcare organization is looking for an IT Systems Compliance Analyst to monitor and mature its compliance program for Infrastructure and Cloud Services. You'll work with technology owners, security teams, and auditors to make sure platforms meet government and commercial regulatory standards, and you'll manage the evidence and documentation that supports audits.
What You'll Do
- Monitor and mature the infrastructure and cloud compliance program, including requirements and KPIs
- Develop, update, and interpret policies and procedures aligned to NIST 800-53, DISA STIGs, HITRUST, SOC 2, and CMS ARS
- Partner with technology owners to apply policies, baselines, and audit requirements across platforms
- Collect and manage audit evidence from automated scans, manual scripts, and self-inspection checklists
- Support internal and external audits, and advise on remediation through Corrective Action Plans
- Perform hardware and software evaluations to keep baselines intact
- Present the current state of the program to leadership at all levels
Required Qualifications
- 4+ years of IT infrastructure experience in design, implementation, administration, monitoring, and troubleshooting
- Hands-on experience applying security frameworks (NIST 800-53, DISA STIGs, CIS, HITRUST, PCI) to operating systems or components such as RHEL, Windows, databases, firewalls, or web servers in a large enterprise
- Experience working directly with internal and external auditors on SOC 2, FISMA, or similar audits
- Experience with scanning and audit tools such as Nessus/ACAS, Wiz, or Nexpose
- Working knowledge of information security principles: risk management, vulnerability management, incident response, and identity, access, and configuration management
- Ability to write SQL queries and strong Excel skills
- Ability to navigate DISA STIG resources, including the STIG Viewer
- Clear communicator who can explain technical information to both technical and non-technical audiences
- Bachelor's degree in an IT-related field or equivalent experience
Preferred Qualifications
- CompTIA Security+ or CISSP
- Experience as the main liaison between infrastructure, audit, and security teams
- Experience managing requirements across 2-3 audits at the same time
Welcome to ConsultNet, a premier national provider of technology talent and solutions. Our expertise spans across project services, contract-to-hire, direct search, and managed services onshore, nearshore, and hybrid. For over 25 years, we have connected thousands of consultants with meaningful roles through a personal, communication-driven approach, partnering with a diverse client base to build high-performing teams and create lasting impact. Our comprehensive service offerings cover a wide range of technology and engineering positions across key markets nationwide. Learn more at www.consultnet.com .
We champion equality and inclusivity, proudly supporting an Equal Opportunity Employer policy. We welcome applicants regardless of Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other status protected by law.
IT Systems Compliance Analyst ยท ConsultNet