Jorie AI Logo

Jorie AI

Compliance Specialist – FedRAMP & HITRUST

Posted Yesterday
Be an Early Applicant
In-Office or Remote
Hiring Remotely in Oak Brook, IL, USA
Mid level
In-Office or Remote
Hiring Remotely in Oak Brook, IL, USA
Mid level
Lead FedRAMP authorization and HITRUST alignment for cloud systems. Create and maintain SSPs, POA&Ms, control mappings, and evidence. Coordinate 3PAO audits, perform risk assessments, continuous monitoring, vulnerability coordination, policy development, and compliance training for engineering and IT teams.
The summary above was generated by AI

Jorie AI is transforming healthcare operations through intelligent automation, secure cloud solutions, and data-driven insights. As a Compliance Specialist – FedRAMP, you will play a key role in ensuring Jorie’s cloud infrastructure and services meet stringent federal security and compliance standards while maintaining alignment with existing HITRUST and HIPAA
frameworks.

This position requires deep understanding of FedRAMP authorization processes, cloud security compliance, and the integration of HITRUST controls across multi-framework compliance programs. The ideal candidate is proactive, detail-oriented, and comfortable working cross-functionally with IT, security, and audit teams in a fast-paced technology environment.

Key Responsibilities

FedRAMP Compliance Oversight

  • Support the implementation and maintenance of Jorie’s FedRAMP authorization program in alignment with agency and customer requirements.
  • Develop and maintain FedRAMP System Security Plans (SSP), POA&Ms, and supporting documentation.
  • Coordinate with internal IT and cloud engineering teams to ensure continuous compliance of systems within AWS, Azure, or other CSP environments.
  • Liaise with 3PAOs (Third-Party Assessment Organizations) and government stakeholders during audits and assessments.

HITRUST and Multi-Framework Alignment

  • Ensure consistent control alignment between FedRAMP Moderate/High baselines, HITRUST CSF, and NIST 800-53 frameworks.
  • Maintain evidence documentation, control mapping, and compliance matrices for overlapping regulatory programs (HITRUST, SOC 2, HIPAA, PCI).
  • Participate in ongoing HITRUST recertification processes, including control review, evidence validation, and policy updates.
  • Collaborate with internal and external auditors (e.g., ISP) to ensure accurate reporting and compliance posture visibility.

Risk Management & Continuous Monitoring

  • Assist in continuous monitoring of security controls and remediation of POA&M items.
  • Conduct risk assessments for cloud systems, vendors, and new integrations impacting the FedRAMP boundary.
  • Coordinate vulnerability scans, incident response activities, and configuration management documentation in alignment with FedRAMP and HITRUST requirements.

Policy, Documentation, and Training

  • Develop, update, and enforce policies related to data security, cloud compliance, and regulatory reporting.
  • Provide compliance guidance and training to engineering, DevOps, and IT personnel involved in the FedRAMP environment.
  • Support internal readiness reviews, gap assessments, and compliance roadmap initiatives.

Qualifications

Education

  • Bachelor’s degree in Information Security, Computer Science, Compliance, or related field required.

Experience

  • 3–6 years of experience in compliance, information security, or risk management.
  • At least 2 years of direct experience supporting FedRAMP programs or equivalent government compliance frameworks.
  • Hands-on experience with HITRUST CSF certification processes, evidence collection, and auditor coordination.
  • Experience working in cloud-based environments (AWS, Azure, or GCP) and familiarity with continuous monitoring tools (Splunk, Qualys, Nessus, etc.).
  • Background in healthcare, AI, or SaaS industries strongly preferred.

Skills & Competencies

  • In-depth understanding of NIST 800-53, FedRAMP Moderate/High baselines, and HITRUST CSF control mapping.
  • Strong knowledge of HIPAA, HITRUST, SOC 2, and ISO 27001 standards.
  • Excellent documentation and writing skills — ability to produce and maintain formal compliance deliverables.
  • Strong analytical, organizational, and communication skills, with the ability to work across technical and non-technical teams.
  • FedRAMP (3PAO) Assessor or equivalent experience

Preferred Certifications

  • HITRUST Certified CSF Practitioner (CCSFP) – required
  • Certified Information Systems Auditor (CISA) or Certified in Risk and Information Systems Control (CRISC) – preferred
  • Certified Information Systems Security Professional (CISSP) – a plus
  • Security+ or CCSP (Certified Cloud Security Professional)
HQ

Jorie AI Oak Brook, Illinois, USA Office

1000 Jorie Blvd, 370, Oak Brook, Illinois, United States, 60523

Jorie AI Burr Ridge, Illinois, USA Office

100 Tower Dr, 270, Burr Ridge, Illinois, United States, 60527

Similar Jobs

45 Minutes Ago
Remote or Hybrid
Chicago, IL, USA
212K-244K Annually
Senior level
212K-244K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
The Anthropic Alliance Manager at PwC focuses on building partnerships, driving revenue growth, and executing marketing strategies to enhance brand visibility and client engagement. Responsibilities include relationship management, strategic planning, and team leadership to deliver on client expectations and organizational goals.
Top Skills: Microsoft Office SuiteSalesforce
45 Minutes Ago
Remote or Hybrid
Chicago, IL, USA
150K-438K Annually
Senior level
150K-438K Annually
Senior level
Artificial Intelligence • Professional Services • Business Intelligence • Consulting • Cybersecurity • Generative AI
Lead global information reporting tax engagements, ensure compliance, analyze financial data, develop tax strategies, drive business development, mentor teams, build executive client relationships, and promote tax technology and thought leadership across the PwC network.
2 Hours Ago
Remote
United States
74K-84K Annually
Mid level
74K-84K Annually
Mid level
Information Technology • Software • Cybersecurity
Execute demand generation campaigns including end-to-end email marketing in HubSpot, webinar setup and execution, digital marketing support, campaign reporting, and cross-team coordination to deliver timely, measurable marketing programs.
Top Skills: A/B TestingClaudeGoogle AdsGoogle Drive (SlidesHubspotHubspot AiJasperLinkedin Campaign ManagerMonday.ComOn24Payload CmsSalesforceSeoSheets)Utm TrackingZoom Webinars

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account