Job Description
Job Description
Security & Compliance Analyst
Location : This is a remote position open to candidates based in Atlanta, GA; Austin, TX; Burlington, VT; or Tallahassee, FL.
Reports to : Director, Information Security & Compliance
Salary range : $80,000 - $110,000
Who We Are
At Aptarro, we believe the best work happens when people feel valued, supported, and empowered to thrive! Our culture is grounded in our A.R.R.O.W core values, which guide everything we do and keep us moving forward – together.
- Agile Mindset – We adapt and pivot with purpose.
- Relentless Resourcefulness – We find solutions, no matter the challenge.
- Raise Your Hand – We step up, own it, and contribute.
- Only What Matters – We simplify and focus on what drives impact.
- We Do Hard Things Together – We solve tough problems as a team.
We help healthcare providers get paid accurately and on time—without getting stuck in the complexity of billing, coding, and compliance. Our Revenue Cycle Management (RCM) solutions reduce denials, ensure compliance, and integrate seamlessly with EHRs, practice management, and hospital information systems—so providers can focus on what matters most : patient care.
We help our customers make right easy—every day.
What You’ll Do
The Security & Compliance Analyst plays a key role in supporting Aptarro’s security and compliance programs. You will help maintain audit readiness, ensure documentation is accurate and up to date, and provide critical support for certifications and vendor reviews. Working under the guidance of the Director of Information Security & Compliance, you’ll contribute to safeguarding sensitive data and ensuring Aptarro meets healthcare and SaaS compliance standards.
This role is well-suited for someone detail-oriented who enjoys documentation, process, and learning about information security in a healthcare SaaS environment. You’ll work with cross-functional teams to help keep Aptarro audit-ready and aligned with industry standards.
In this role, you will :
Support certification and accreditation programs (HITRUST, SOC 2, HIPAA, FedRAMP, ISO 27001) by preparing documentation, gathering evidence, and coordinating with assessorsAssist in maintaining policies, procedures, and security program documentationPerform compliance checks such as access reviews, control testing, and mock audit exercisesTrack and update risk registers, training records, and compliance dashboardsHelp coordinate vendor risk assessments and review security questionnairesResearch regulatory updates and summarize impacts for leadershipProvide logistical and administrative support during audits, assessments, and internal reviewsContribute to compliance training rollout and awareness campaigns across the companyWhat You Bring
Bachelor’s degree in Information Systems, Business, or a related field; or equivalent practical experience1–3 years of experience in compliance, information security, IT risk, or a related disciplineFamiliarity with HIPAA, HITRUST, SOC 2, or ISO 27001 (through coursework, exposure, or hands-on support)Strong skills in documentation, organization, and attention to detailEffective written and verbal communication skills, including the ability to clearly summarize compliance findingsProficiency with Microsoft Office, project tracking, or GRC toolsCertifications such as CISA or CompTIA Security+ are a plusWhat We Offer
Competitive salary and benefits package (health, dental, and vision)Remote / hybrid flexibilityGenerous PTO and wellness benefitsOpportunities for training, certifications, and professional growthA mission-driven culture where security and compliance are central to enabling healthcare innovation