Jobs and Careers
CO

Senior Consultant, HITRUST Assessment

Coalfire
United States, United Statesfull_timeVerifiedPosted 6 Jun 2025

About the role

About Coalfire
Coalfire is on a mission to make the world a safer place by solving our clients’ hardest cybersecurity challenges. We work at the cutting edge of technology to advise, assess, automate, and ultimately help companies navigate the ever-changing cybersecurity landscape. We are headquartered in Denver, Colorado with offices across the U.S. and U.K., and we support clients around the world.
But that’s not who we are – that’s just what we do. We are thought leaders, consultants, and cybersecurity experts, but above all else, we are a team of passionate problem-solvers who are hungry to learn, grow, and make a difference.
Position Summary
As a Senior Consultant you will lead enterprise engagements assessing the security and compliance of client firms against regulatory and industry requirements and standards, and against security best practice frameworks. This role will have a strong understanding of framework requirements, perform audit/assessments, and develop reports for clients. They will also provide quality control and peer review to other members of the delivery staff. They will work closely with Project Managers, Directors and other Delivery team members to effectively manage project timelines and deliverables.
The Senior Security Consultant will perform IT Security Assessments for our Healthcare clients to ensure the safety and security of client’s IT assets by uncovering potential security vulnerabilities and providing advice on mitigation actions.  

What You'll Do

  • Leads audits/assessments including audit plan preparation, review of documentation and evidence, evaluation of procedures, and client interviews.
  • Work collaboratively with a team of assessors as a HIPAA or HITRUST compliance specialist and assist with the planning of assessments to our clients.  
  • Prepare, review and approve assessment reports.
  • Manage priorities, tasks and hours on projects in conjunction with the project manager to achieve delivery utilization targets.
  • Ensures quality products and services are delivered on time.
  • Escalates client and project issues to management in a timely manner to inform and engage the necessary resources to address the issue
  • Provide mentorship to team members in areas of audit, assessment, technical review and writing.
  • Interfaces with clients through entire engagement, interacting will all levels of client organizations. Establish and maintain positive collaborative relationships with clients and stakeholders
  • Continuous professional development in maintaining industry specific certifications. Maintains strong depth of knowledge in the practice area.
  • Collaborates with project managers, quality management, sales and other delivery team members to drive customer satisfaction and meet project deliverables.
  • Establishes account relationships and identifies upsell and cross sell opportunities and escalates to sales
  • Participation at conferences, blogs, white papers, speaking engagements, and other evangelical activities related to IT security
  • Travel typically 15-20%
  • Ability to be successful in a remote environment. 

What You'll Bring

  • 5+ Years of IT security and compliance assessment experience
  • Security Certifications such as CISSP, CISA, CISM, CCSFP, HCISPP, or CIPP
  • Bachelor's degree (four-year college or university) or equivalent combination of education and work experience. Degree preferably in Information Systems or Business.
  • Subject matter expertise in the healthcare industry, including proven experience working with the HITRUST Common Security Framework (CSF), as well as the HIPAA Security and Privacy Rules.
  • Working knowledge of IT security frameworks and regulations such as NIST, ISO, CSF, HIPAA, HITECH, HITRUST and Security Breach Notification
  • Solid understanding of IT Risk Assessment methodologies either quantitative or qualitative or both
  • A solid understanding of IT security technologies including network and application security, firewalls, access management, and data protection
  • Experience and knowledge of Healthcare operations, common applications and business processes
  • Experience assessing IT security threats, vulnerabilities and IT Security audit procedures
  • Experience and success in delivering client engagements on-time and within budget
  • Strong written and verbal communication skills including the ability to explain technical matters to a non-technical audience
  • Strong Consulting skills; ability to advise and challenge the status quo while building strong relationships
  • Ability to build high-trust relationship and credibility quickly
  • Ability to lead projects successfully and delegate up and ac

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Coalfire

View company profile →