SIGN IN
Information Security Compliance Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

eHealth, Inc. · 21 hours ago

Information Security Compliance Analyst

eHealth is America’s first and largest private online marketplace for health insurance, dedicated to guiding consumers through their health insurance options. The Information Security Compliance Analyst will be responsible for enhancing eHealth’s Information Security, Governance, Compliance, and Risk Assessment processes, while collaborating with various stakeholders to ensure compliance with security controls and standards.
FinanceHealth CareHealth InsuranceInsuranceInternet
check
H1B Sponsor Likelynote

Responsibilities

Assisting with internal and external audit engagements (SOC2 Type II, HITRUST, PCIDSS, SOX, GuardianSphere etc.)
Gather control evidence to ensure the information provided fulfills the requirements
Organize audit evidence and manage the control and process libraries
Assist the business to assess, document and remediate risks identified during the assessment
Contributing to eHealth’s compliance maturity:
Work with the business to implement sound security controls aligned with the security policies and standards and identify control gaps
Develop metrics to report to management
Assisting with Security awareness training and phishing campaign exercises
Working with business partners to respond to carrier security questionnaires
Evaluating new vendors for security concerns
Assess the status of projects to identify and implement appropriate corrective measures to resolve security concerns as they arise
Assists in the development and ongoing refinement of enterprise AI policies, standards, and guardrails, embedding responsible and compliant AI use into core governance processes, risk assessments, and control frameworks

Qualification

Information SecuritySOC2HITRUSTRisk ManagementNISTHIPAACompliance AuditingResearch SkillsCommunication SkillsAttention to DetailTeam Collaboration

Required

You have a Bachelor's degree in Information Security, Information Systems or related field. We will consider candidates with equivalent work experience in lieu of a Bachelor's degree
You have 3+ years of experience working in an Information Security audit setting such as SOC2 and HITRUST, and knowledge of security controls including NIST, HIPAA, & Privacy
You have the ability to foster a collaborative working relationship in a fast-paced, team-oriented environment
You bring strong written and verbal communication skills with a proven ability to hold constructive discussions with the business to ensure information security risks are adequately addressed
You have attention to detail and strong research skills
You have the ability to analyze problems from different angles and foster multiple perspectives
You have experience with risk management tool administration and configuration is a plus
You have the ability to digest and translate technical language and relay to stakeholders outside of the Security field in understandable terms
You have the ability to exercise judgement within defined procedures and determine appropriate action with autonomy and support as needed

Benefits

Generous benefits include medical, dental and vision beginning on your first day of employment
401K with matching
Tuition reimbursement
Employee stock purchase program
12 company paid holidays and flexible time off (PTO for non-exempt)

Company

eHealth, Inc.

company-logo
We’re Matchmakers. For over 25 years, we’ve helped millions of Americans find the healthcare plan that fits their needs at a price they can afford.

H1B Sponsorship

eHealth, Inc. has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (21)
2024 (22)
2023 (23)
2022 (49)
2021 (31)
2020 (18)

Funding

Current Stage
Public Company
Total Funding
$773.7M
Key Investors
Comvest Credit PartnersH.I.G. Capital
2026-01-06Post Ipo Debt· $125M
2022-02-28Post Ipo Debt· $70M
2021-01-29Post Ipo Equity· $225M

Leadership Team

leader-logo
John Hass
Director
linkedin
leader-logo
Michelle Barbeau
Chief Marketing Officer
Company data provided by crunchbase