
Staff Information Security Specialist
Carrum Health
full-time
Posted on:
Location Type: Remote
Location: United States
Visit company websiteExplore more
Salary
💰 $150,000 - $175,000 per year
Job Level
Tech Stack
About the role
- Act as a Strategic Partner for Director of Cybersecurity & IT.
- Support Compliance & Business Enablement for HITRUST, SOC 2, and HIPAA.
- Architect & Automate Identity Access Management (IAM).
- Lead AppSec & DevSecOps initiatives.
- Identify and leverage AI-driven security tools.
- Collaborate on AI Governance & Security Strategy.
- Handle Security Operations for defensive tools.
- Lead incident response during security incidents.
- Drive Policy Governance for security policies.
- Lead organizational rollouts & education on security tools.
Requirements
- 8+ years of relevant experience in senior-level IT, DevOps, Engineering, or Security roles.
- Practical application rather than certifications.
- Comfortable working independently as a Full-Time Employee (FTE).
- Deep experience with compliance automation platforms (Vanta preferred).
- Possess a "builder" mindset, willing to dive into security work.
- Expert-level knowledge of Identity and Access Management (IAM).
- Communicate technical risks clearly to non-technical stakeholders.
- Highly organized and comfortable using task management tools (preferably Jira).
- Hands-on experience with AppSec workflows.
Benefits
- Stock option plan
- Flexible schedules and remote work
- Chicago and San Francisco offices available
- Self-managed vacation days, within reason
- Paid parental leave
- Health, vision, and dental insurance
- 401K retirement plan
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Identity Access Management (IAM)AppSecDevSecOpscompliance automationsecurity operationsincident responsepolicy governanceAI-driven security toolssecurity workflowsHITRUST
Soft Skills
strategic partnershipcommunicationorganizational skillsindependencebuilder mindsetcollaborationeducationrisk communication