Information Security Compliance Analyst
Listed on 2026-09-08
-
IT/Tech
Cybersecurity, Information Security & Data Protection
About Us:
Image Trend, LLC. is dedicated to connecting life’s most important data in the healthcare and emergency response community. We deliver software solutions, data analytics and services for EMS, hospitals, community paramedicine (CP), critical care, fire, and preparedness to enable fully integrated patient-centric healthcare and public safety. Our commitment to innovation, its clients, and providing world-class implementation and support is unsurpassed. Based in Eagan, MN, Image Trend combines business analysis, creative design and data driven architecture to offer scalable solutions and strategies for today and the future.
Employment at Image Trend is not just about doing a job; it's about being a part of a community. We are top-notch talent, passionate about making a difference through the work we do together!
Description:Under the direction of the Director, Information Security, the Information Security Compliance Analyst supports the execution, administration, and continuous improvement of Image Trend's cybersecurity compliance, governance, and risk management programs. This role is responsible for coordinating and maintaining security compliance programs aligned with frameworks and regulations including NIST 800-53, FedRAMP, GovRAMP, HIPAA, SOC 2, and other contractual, customer, and regulatory requirements.
The Information Security Compliance Analyst partners with Information Security, IT, Engineering, Product, Legal, Privacy, and other business stakeholders to support audits, assessments, control documentation, risk management activities, cloud compliance initiatives, remediation efforts, and ongoing audit readiness. This role also supports third-party risk management, customer security due diligence activities, continuous monitoring efforts, and process improvements that strengthen Image Trend's overall security and compliance program.
WhatYou'll Do:
- Support the administration, documentation, monitoring, and continuous improvement of Image Trend's information security compliance, governance, and risk management programs
- Coordinate and support compliance initiatives aligned with NIST 800-53, FedRAMP, GovRAMP, HIPAA, SOC 2, and other applicable customer, contractual, and regulatory requirements
- Maintain compliance documentation, policies, standards, procedures, control matrices, ownership records, audit artifacts, evidence repositories, and related compliance records to ensure ongoing audit readiness
- Participate in internal and external audits, assessments, and compliance reviews, including coordinating audit requests, collecting and validating evidence, facilitating stakeholder responses, and supporting audit preparation activities
- Assess the design and effectiveness of security controls, participate in control testing and reviews, identify improvement opportunities, and track audit findings, corrective actions, and remediation efforts through closure
- Monitor and track Plans of Action & Milestones (POA&Ms), corrective action plans, security exceptions, compensating controls, risk acceptance documentation, and other remediation activities
- Assist with security risk assessments, control gap analyses, risk register management, mitigation tracking, and policy and standards development activities
- Support vendor risk management, third-party security assessments, third-party risk monitoring activities, and external risk assessment platforms
- Assist with validating, documenting, monitoring, and collecting evidence for compliance-related security controls implemented within AWS and Microsoft Azure environments, including the review of cloud security documentation, configurations, and control implementations against established security frameworks and requirements
- Collaborate with Information Security, IT, Engineering, Product, Legal, Privacy, and other cross-functional teams to ensure security and compliance requirements are effectively implemented and maintained
- Coordinate multiple compliance-related projects and initiatives, effectively manage competing priorities, monitor milestones and deliverables, provide status updates, and drive accountability for assigned action items
- Research emerging…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).