Security Analyst (Remote)

Posted 4 Hours Ago
Be an Early Applicant
Hiring Remotely in United States
Remote
85K-100K Annually
Mid level
Healthtech • Biotech • Pharmaceutical
The Role
Supports cybersecurity governance, risk, and compliance across a clinical research environment. Responsibilities include auditing security controls, managing regulatory and framework compliance, assessing vendor and data risks, reviewing user and privileged access, supporting CIS and NIST control implementation, remediating gaps, maintaining ISMS documentation, and assisting with incident response and security operations.
Summary Generated by Built In

The START Center for Cancer Research (“START”) is the world’s largest early phase site network, fully dedicated to oncology clinical research. Throughout our history, START has provided hope to cancer patients in global community practices by offering "Hope Through Access” to cutting edge trials throughout the United States and Europe.   

Position Summary

The Security Analyst supports START Research's cybersecurity governance, risk, and compliance program. This role is responsible for evaluating security controls, supporting regulatory and framework compliance, conducting risk assessments, and maintaining key components of the organization's Information Security Management System (ISMS). The position partners with stakeholders across the business to strengthen security practices and protect clinical research data and systems.

This is a remote role. The salary range for this role is $85,000 - $100,000. However, base pay may vary depending on multiple individualized factors including market location, job-related knowledge, skills, and experience. 

Work Hours: M-F, 8am-5pm 

Location: Remote

Essential Responsibilities

  • Support IT governance and oversight, risk assessment, and security awareness across the clinical research environment.
  • Conduct internal auditing and evidence collection for IT controls compliance (HIPAA, HITECH, GDPR) and cybersecurity ISMS frameworks (SOC 2).
  • Perform Vendor Risk Management assessment, onboarding, and ongoing reviews for trial sponsors, CROs, and technology partners.
  • Conduct Business Impact Analysis (BIA) and Sensitive Data Reviews (SDR) with a focus on clinical trial data, PHI, and PII.
  • Perform User Rights Management (URM) and Privileged Access Management (PAM) reviews for critical applications, including Entra ID, CrowdStrike, and clinical platforms.
  • Provide support in the assessment, design, and implementation of technical control requirements aligned to CIS Controls v8 and NIST CSF v2.
  • Identify and recommend changes to improve efficiency and effectiveness of key technical controls and processes.
  • Partner with control owners and system administrators to ensure quality, consistency, and operability of new and existing controls.
  • Support the review of IT systems and tools to ensure the inclusion of appropriate controls and processes.
  • Review test findings, support the remediation of IT control gaps, and escalate potential issues to security leadership as necessary.
  • Validate and update IT documentation as needed to ensure processes, policies, and controls are accurate and audit-ready.
  • Support incident response activities and contribute to security operations functions as needed.

Required Education and Experience

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • 3+ years of audit, compliance, or technical experience, preferably in healthcare, life sciences, or clinical research environments.
  • Excellent knowledge of IT security control trends as well as auditing & compliance best practices, including HIPAA, SOC 2, and NIST CSF.
  • Experience with security tooling such as EDR/MDR platforms, SIEM, identity management (Entra ID), and vulnerability management solutions.
  • Effective communication skills (written and verbal) to properly articulate complex IT controls and compliance issues to leadership, audit partners, and clinical staff.
  • Positive attitude and a strong commitment to delivering quality work in a mission-driven environment.
  • Relevant training and/or industry certifications in auditing, compliance, or IT security (e.g., CISA, CISSP, Security+, CISM).

Physical and Travel Requirements

  • Approximately 80% of time is spent sitting.
  • Very fast-paced and ever-changing healthcare environment.
  • Demanding deadlines and time frames.
  • Constant demand for updating knowledge.

Best-in-Class Benefits and Perks  

We value the time, talent, and dedication our employees bring to START. Our commitment to your well-being and growth is reflected in a competitive compensation package—based on experience—along with comprehensive benefits designed to support you both personally and professionally:  

  • 401(k) retirement savings plan with employer match  
  • Eligibility for an annual performance bonus, based on role and company results  
  • Generous paid time off and paid holidays  
  • Comprehensive medical, dental, and vision coverage and optional insurance options  
  • Company paid life and disability insurance for added financial protection  
  • Employee Assistance Program (EAP) providing confidential, no ‑cost support for you and your family from day one  
  • Flexible FSA and HSA plans to support your financial wellness  
  • Commitment to a supportive environment that values balance, wellbeing, and flexibility  
  • We’re committed to fostering a collaborative, creative workplace where every team member is encouraged to contribute. At START, you’ll join a team that values continuous learning, professional growth, shared ideas, and a culture built on inclusivity and innovation.  

More About START  

START clinical trial sites have conducted more than 1,000 early-phase clinical trials, including dozens of therapies that were approved by the FDA or EMA. START represents the world’s largest roster of early-phase principal investigators across its Network of clinical trial sites.

Learn more at STARTresearch.com.   

Ready to be part of a team changing the future of cancer treatment?  

Join us in our mission to conquer cancer, one clinical trial at a time. Your expertise and dedication can help us bring hope and healing to patients worldwide. Please submit your application online.  

We are an equal opportunity employer that welcomes and encourages diversity in the workplace. We do not discriminate on the basis of race, color, religion, marital status, age, national origin, ancestry, physical or mental disability, medical condition, pregnancy, genetic information, gender, sexual orientation, gender identity or expression, veteran status, or any other status protected under federal, state, or local law.  

Skills Required

  • Bachelor's degree in Computer Science, Cybersecurity, Information Technology, or a related field
  • 3+ years of audit, compliance, or technical experience
  • Experience preferably in healthcare, life sciences, or clinical research environments
  • Knowledge of IT security controls, auditing, and compliance best practices, including HIPAA, SOC 2, and NIST CSF
  • Experience with EDR/MDR platforms, SIEM, identity management such as Entra ID, and vulnerability management solutions
  • Effective written and verbal communication skills
  • Relevant training or industry certifications such as CISA, CISSP, Security+, or CISM
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
294 Employees
Year Founded: 2007

What We Do

Deeply rooted in community oncology centers globally, the START Center for Cancer Research ('START') provides patients with access to specialized Phase 1 clinical trials for novel anti-cancer agents. With research sites in the United States and in Spain, Portugal, and Ireland, START’s clinical trial sites have conducted more than 1,500 early phase clinical trials, including for 50 therapies that have gained FDA/EMA approval.

Similar Jobs

Optum Logo Optum

Cybersecurity Analyst

Artificial Intelligence • Big Data • Healthtech • Information Technology • Machine Learning • Software • Analytics
Remote or Hybrid
Eden Prairie, MN, USA
160000 Employees
113K-193K Annually
In-Office or Remote
10 Locations
20990 Employees
32K-77K Annually

Washington University in St. Louis Logo Washington University in St. Louis

Security Awareness, Behavior, & Culture Analyst II (Remote) - WashU IT

Artificial Intelligence • Edtech • Information Technology • Biotech
In-Office or Remote
Saint Louis, MO, USA
19300 Employees
75K-129K Annually

Cisco Logo Cisco

Analyst Relations Manager: Identity Security (US Remote)

Cloud • Information Technology • Internet of Things • Professional Services • Software
In-Office or Remote
San Jose, CA, USA
77500 Employees
129K-212K Annually

Similar Companies Hiring

Sailor Health Thumbnail
Healthtech • Social Impact • Telehealth
New York City, NY
20 Employees
Granted Thumbnail
Artificial Intelligence • Healthtech • Insurance • Mobile • Financial Services
New York, New York
23 Employees
OneImaging Thumbnail
Healthtech
Miami, FL
62 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account