Writing.io Jobs

Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.

1 What roles are you open to?

2 Experience level

3 Work style

Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.

Security Security & Compliance Associate at Healthie

Supports security and compliance programs by coordinating controls, documentation, audits, risk management, and customer security requests.

Junior Posted 2 days ago RemoteFirstJobs Product
What this role involves

Our Mission

Healthie is an AI-Native, ONC Certified EHR for modern outpatient healthcare.

Healthie is proud to power clinically excellent healthcare for over 40,000 providers who deliver clinically excellent healthcare - longitudinal and collaboratively, with patient and provider experiences at the center. Both healthcare and technology are undergoing unparalleled industry innovation, and it’s incredible to see the momentum - from consumers, from providers, and from reimbursement for this type of healthcare - grow exponentially.

We provide the powerful infrastructure every care delivery organization needs. On the surface this includes EHR, Scheduling, Engagement, Billing, Data, and much more. Underneath the iceberg are thousands of configurations, settings, widgets, automations, and limitless capabilities because we are an API-first platform. Our fully brandable platform makes it easy for clinics and organizations of any size to scale and never reach a limit.

Today, over 3 billion API calls are made to Healthie every month, as thousands of organizations who work with more than 21 million patients in total, rely on Healthie to deliver clinically excellent healthcare in over 35 specialties, from behavioral healthcare to complex chronic care management and personalized medicine.

We believe in the power of technology to improve access to healthcare and we’re building the rails that make this a reality. We work fast and with quality because we provide business-critical, healthcare-critical software that clinicians and patients need for a better healthcare system. We’re customer-obsessed, operate with lightning-fast processes and responses, and always share our product roadmap publicly-  so customers can see what we’re building, and remain relentlessly focused on how care gets delivered.

Healthie is backed by leading investors, and while we’ve $42M raised to date, more importantly, we operate with fiscal responsibility and have been profitable for more than half of our time as a company. We know that building an ONC-Certified EHR is a lifetime’s body of work, and we are here to build for our customers forever.

Learn more at https://www.gethealthie.com/

About the role

As a Security and Compliance Associate, you’ll work closely with Healthie’s VP of Security and Compliance to help operate and strengthen the security and compliance programs that support our business, customers, and platform. This is a hands-on role for someone who is highly organized, detail-oriented, and comfortable owning work from intake through completion.

You’ll support third-party audits, assess vendor risk, respond to customer and internal security and compliance requests, and help keep the day-to-day work of the function moving. You’ll collaborate across technical and business teams and will be trusted to work with sensitive information, follow through on open items, and know when something needs to be escalated.

The work will include:

  • Helping with third party audits such as SOC 2, annual HIPAA assessment, and HITRUST, including gathering evidence and following-up on the artifacts that are missing
  • Assessing third party’s security risk, interacting with  vendors and driving remediation items to closure
  • Answering internal and customer questions regarding security and compliance
  • Answering security and compliance questionnaires from customers and prospective customers
  • Prioritizing incoming requests across multiple channels to security and compliance, and answering, escalating, or delegating them. Some of this is routing, and some is assigning compliance work to people senior to you and following up until it is done
  • Collaborating with other departments, primarily IT, Operations, Platform, R&D, and the offices of the CEO and CTO

What a week may look like: A few customer questionnaires, a vendor review or two, and evidence pulled for whatever audit is in flight. The queue gets cleared daily, including whatever Vanta  flags and the questions from other teams who are blocked until they get an answer. Audit season is the exception. When evidence requests land, that is the week.

Note that you will have access to some of the company’s most sensitive information, including data entrusted to our protection by customers and their clients. You must follow access rules exactly, raise your own mistakes before anyone else finds them, and keep confidence when it would be easier not to. Colleagues should be able to watch how you work and copy it.

This position might be suitable for someone with work experience in compliance and/or IT SOX work. But you might also be a fresh JD, BA, or MA that has an affinity for this kind of work in a dynamic, challenging, and exciting environment.

About you

  • You must be based in the United States. (The reason for this is that on occasion you may need to see protected health information [PHI], and our customers have contracts that forbid access to such information from outside the United States.)
  • You must be an excellent and fluent writer, speaker, and communicator in English. Those skills must be at least as good as any AI (in other words, you should be able to write, speak, and communicate without the aid of AI). You can compress a dense control requirement into two sentences a customer’s security team will accept, and document an exception so it still holds up when someone audits it next year.
  • You must understand or have an aptitude for the scope of the security and compliance challenges faced by a modern healthcare software company.
  • You must be adept with AI. You are not an expert, but you are able to write useful prompts that get answers to the questions you want. You are also skilled at identifying AI slop and wading through and correcting AI bloviation. You can spot when a model is confidently wrong, and you know when to rewrite it rather than pass it along.
  • You are interested in software, technology, and its impact on humans. You are curious and will ask why a control exists before you enforce it, creative at finding a workable answer when the framework doesn’t give you one, and empathetic enough to understand why the person on the other end of the request is frustrated. Healthie’s scope is quite large, and you will be asked to provide perspective with regard to how the technology fits with human expectations, both of Healthie’s customers, and the clients of Healthie’s customers.
  • You can hold a position with people more senior than you when the requirement is clear, and change it when someone gives you a better reason. You will be new to a lot of this and expected to ask early rather than guess.

Nice to Have

  • You are familiar with modern GRC tooling such as Vanta, Drata, SecureFrame, or Thoropass.
  • You are familiar with some of the regulatory frameworks in healthcare security and compliance: HIPAA, state level regulations, GDPR, the EU AI Act.
  • Any of CISA, CISM, CISSP, CIPP/US, CIPP/E. Note that this is not a requirement and a narrow professional background in these areas is not what we are looking for.

Details, details

  • This is a full-time, NYC-Hybrid position.
  • U.S. work authorization is required.
  • The salary for this position is a base between $100,000 - $130,000.

Interview Process

  • Quick chat with Katie from our Talent team (15 minutes)
  • Interview with John, VP Security & Compliance (30 minutes)
  • Talk with Edgar, Director of IT & Cindy, Director of People Operations: (30 minutes)
  • Interview with Sean, Staff AppSec Engineer(20 minutes)
  • Exec Interview with Cavan, CTO + cofounder (20 minutes)
  • Reference checks

Learn more at gethealthie.com/careers.

Healthie is subject to HIPAA and other security and privacy frameworks, and this job entails training and conformance to expectations regarding security and compliance.

Healthie participates in e-verify.

Healthie is committed to equal employment opportunity. All qualified applicants will receive consideration for employment without regard to and will not be discriminated against based on age, race, gender, color, religion, national origin, sexual orientation, gender identity, veteran status, disability or any other protected category. We’re proud to be building a diverse and inclusive environment that encourages collaboration, creativity, and growth. Whatever your background, please apply if this is a role that would make you excited to come into work every day.

Read the full description
Security Expel: Associate SOC Analyst

Investigates security alerts, hunts for threats, analyzes incidents, and helps customers remediate attacks in a managed detection and response SOC.

Junior Remote Posted 4 days ago We Work Remotely — Programming
What this role involves

Headquarters: Remote

You’ve got the spark, the curiosity that makes you ask “why?” when others move on. You love solving puzzles, learning new tools, and understanding how things work (and how they break). Maybe you’ve done some hands-on IT work, tinkered with packet captures, or even caught yourself reading about the latest exploits for fun. If that sounds like you, you might be exactly who we’re looking for.

At Expel, we protect customers by thinking like attackers. Our analysts investigate alerts, dig through data, and communicate findings with empathy and precision. As an Associate SOC Analyst, you’ll be on the front lines of our Managed Detection & Response (MDR) service, helping detect, analyze, and respond to threats across diverse environments from endpoint to cloud.

This is more than an entry point, it’s a launch pad. We’ll train you, mentor you, and help you grow from your first alert triage to full-scale investigations. You’ll learn from expert analysts who’ve seen it all (and lived to meme about it). You’ll refine your craft in real-world scenarios, protecting real organizations, and making a visible impact.

What Expel Can Do For You

  • Analyze and investigate alerts to identify, assess, and respond to potential threats.
  • Collaborate with teammates and customer security teams to remediate incidents and strengthen defenses.
  • Conduct threat hunts and root-cause analysis to uncover attacker activity.
  • Take ownership of alert triage through the entire lifecycle—from detection to resolution.
  • Constantly look for ways to improve how we detect, defend, and deliver for our customers.
  • Participate in 24x7 rotational coverage, because attackers don’t sleep.

What You Can Do For Expel (With the help of training, of course)

  • Get you out of theory and into real security operations.
  • Surround you with seasoned mentors who want to see you succeed.
  • Offer training, tools, and hands-on experience to accelerate your career.
  • Immerse you in a collaborative, growth-minded culture that values curiosity, communication, and creativity.
  • Provide transparent pay, unlimited PTO, flexible work, and up to 24 weeks parental leave.

What You Should Bring With You

  • Integrity, curiosity, and a client-first mindset.
  • Strong written communication, you can adapt tone and detail whether you’re messaging a teammate or writing a customer report.
  • A fundamental understanding of TCP/IP, operating systems, and common network protocols.
  • Experience with Windows, macOS, and Linux systems, including command-line familiarity.
  • Awareness of cloud applications (O365, Okta) and cloud infrastructure (AWS, Azure, GCP).
  • Familiarity with detection and response tools like SIEM, EDR, and IDS/IPS.
  • A curiosity about attacker techniques, the MITRE ATT&CK framework, and how defenders can outsmart them.
  • 1–2 years of IT or security experience is preferred, but if you’ve got passion, potential, and a compelling story, we want to hear it.

Additional notes

The base salary range for this role is between $85,000 USD and $90,000 USD + 20% bonus (paid out quarterly) & equity.

We believe in paying transparently and equitably. Your salary will ultimately be based on factors such as your experience, skills, team equity, and market data. You’ll also be eligible for unlimited PTO (which we model and encourage), work location flexibility, up to 24 weeks of parental leave, and really excellent health benefits.

We’re only hiring those authorized to work in the United States. We do not currently sponsor immigration visas.

We’re an Equal Opportunity Employer: You’ll receive consideration for employment without regard to race, sex, color, religion, sexual orientation, gender identity, national origin, protected veteran status, or on the basis of disability.

We’ll ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please let us know if you need accommodation of any kind.

Salary Range$85,000—$90,000 USD

To apply: https://weworkremotely.com/remote-jobs/expel-associate-soc-analyst

Read the full description
Security Associate Services Architect

Supports the design and delivery of cybersecurity services and exposure management solutions for organizational clients.

Junior Posted 9 days ago Jobicy AI
What this role involves
Who is Tenable? Tenable® is the Exposure Management company. Over 40,000 organizations around the globe rely on Tenable to understand and reduce cyber risk. Our global employees support 65 percent...
Read the full description
Security Cybersecurity Engineer- Junior level

Junior cybersecurity engineer supporting DoD enterprise network modernization and infrastructure security.

Junior Posted 15 days ago Himalayas
What this role involves
Job Title: Cybersecurity Engineer- Junior levelJob Category: Information TechnologyTime Type: Full timeMinimum Clearance Required to Start: SecretEmployee Type: RegularPercentage of Travel Required: Up to 50%Type of Travel: Continental US* * *The OpportunityCACI's Enterprise Network Services (ENS) Division supports the Department of Defense (DoD) in modernizing mission-critical communications and enterprise network infrastructures.
Read the full description
Security SecOps Engineer I

Manages security operations, monitors infrastructure for threats, responds to incidents, and maintains security compliance systems.

Junior Posted 18 days ago Jobicy AI
What this role involves
LivePerson (NASDAQ:LPSN) is a Conversational AI company creating digital experiences that are Curiously Human. Everyperson is unique, and our technology makes it possible for companies, including leading brands like HSBC,...
Read the full description
Security Security Assistant at Assystem

Supports personnel security operations by processing vetting applications, monitoring clearances, liaising with external agencies, and maintaining security compliance controls.

Junior Hybrid Posted 18 days ago RemoteFirstJobs Product
What this role involves

Company Description

Today, Assystem is among the top three independent nuclear engineering firms worldwide. With over 60 years of experience in highly regulated sectors, the group supports public and industrial stakeholders in the execution of complex and strategic infrastructure projects, subject to high safety and security requirements.

Assystem mobilizes 8,000 experts in 13 countries and intervenes across the entire project lifecycle, in engineering, project management and digital solutions.

Job Description

🔐 Security Assistant

Reporting to the Personnel Security Manager, the Security Assistant will support the company’s Personnel Security activities, with a focus on security vetting, aftercare and security compliance.

📍 Location: Bolton

🏢 Working pattern: Hybrid – 2–3 days per week in the office

🔹 Key Responsibilities

🛡️ Process vetting applications for staff and contractors, providing guidance on all types of vetting.

🔄 Monitor security clearances and ensure renewals are completed promptly.

📋 Communicate changes to vetting policies and procedures.

🤝 Liaise with external agencies and verify internal and external clearances.

🔎 Conduct thorough checks and maintain effective Personnel Security controls.

💬 Act as the main contact for vetting and security enquiries, handling information sensitively and in line with data protection requirements.

🚨 Support security incident reporting, follow-up actions and lessons learned.

📁 Provide security support for key projects.

🎫 Manage site-specific security responsibilities, including issuing site passes.

📢 Support the wider Security Department with general security activities, communications and awareness campaigns.

Qualifications

🎓 Essential Experience & Qualifications

💻 Experienced user of Microsoft Office, particularly Word and Excel

⭐ Desirable Experience

🛡️ Previous experience in a similar security role

🎓 DISA Training

👤 Person Specification

⏰ Reliable and dependable

🚀 Self-motivated and proactive

🤝 Honest and trustworthy

📋 Well organised

🎯 Able to meet deadlines and prioritise workload

🔎 Methodical and accurate

🔐 Able to gain and maintain the appropriate security clearance

Additional Information

Due to the nature of work to be undertaken applicants will be required to meet certain residency criteria in order to attain a minimum level of UK security clearance if not already security cleared to a minimum SC level.

NOTICE TO CANDIDATES ON RECRUITMENT FRAUD - We are committed to safeguarding candidates from fraudulent activity associated with our recruitment process. Please note that we will never offer specialist CV writing services, request payment or ask for sensitive personal information during the recruitment process.

We are committed to equal treatment of candidates and promote, as well as foster all forms of diversity within our company. We believe that bringing together people with different backgrounds and perspectives is essential for creating innovative and impactful solutions. Skills, talent, and our people’s ability to dare are the only things that matter !. Bring your unique contributions and help us shape the future.

Read the full description
Security Compliance Engineer Intern

Intern supports compliance and security operations at a Web3 security firm, assisting with blockchain protocol and smart contract security assessments.

Junior Posted 20 days ago Jobicy AI
What this role involves
About the Company Born from groundbreaking research at Columbia University and Yale University, CertiK is a leading Web3 security company focused on securing blockchain protocols, smart contracts, and decentralized applications...
Read the full description
Security Cyber Security Analyst(Remote) at TechBiz Global

Monitors security alerts, analyzes threats, responds to incidents, and manages endpoint protection for managed security service clients.

Junior Remote Posted 23 days ago RemoteFirstJobs Product
What this role involves

Description

At TechBiz Global, we are providing recruitment service to our TOP clients from our portfolio. We are currently seeking a Cyber Security Analyst to join one of our clients’ teams. If you’re looking for an exciting opportunity to grow in a innovative environment, this could be the perfect fit for you. We are seeking an enthusiastic and motivated individual to provide Managed Cyber Security Services to our valued customers. As a key member of the Optimization Engineering & Analytics team, you will be part of an integral and group that is dedicated to protecting system resources from cyber-attacks and other online threats that could have devastating consequences for millions of end users.

Successful candidates will demonstrate foundational Network Security and System Administration with advanced understanding across Endpoint Protection, Threat and Vulnerability Management, Security Automation, and Security Analysis.

Requirements

KEY RESPONSIBILITIES:

• Provide client-facing support of our managed security services, including adherence and development of processes and operational frameworks.

• Ability to work assigned shift, covering alternate shifts as needed.

• Analyze, escalate, and assist in the remediation of critical information security incidents.

• Assist with the integration, deployment, on-boarding and management of endpoint defense and attack surface managed customers.

• Perform real-time alert monitoring and analyze security event data from network and endpoint environments, peer analysts, customer platforms, and other data sources.

• Provide Incident Response (IR) support and assist customers remediation guidance.

• Review procedures relating to Cyber threat intelligence, monitoring, incident response, attack surface reduction, and design automated actions to accelerate the triage, validation, eradication, and remediation of security incidents.

• Leverage expertise in leading security operations tools and industry standard scripting languages to effectively write playbooks in security orchestration, automation, and response.

• Collaborate with team members to create, maintain, and manage a library of automated playbooks for common information security threats and customize these plans for client specific environments.

• Actively identify areas of improvement within the processes of the Security Operations Center and Cyber Incident Response with the goal of decreasing response times, increasing effectiveness, eliminating waste, and streamlining security operations.

• Integrate new security platform functionality with existing systems and automated processes as threats and controls evolve.

• Create well documented and clearly articulated code/ scripts, process, and service documentation.

• Perform health checks and optimization activities on client security technologies or systems.

• Determine information security risk and facilitate remediation actions of identified vulnerabilities and security risk across the enterprise.

• Other, as needed.

MINIMUM QUALIFICATIONS

• 4+ years of IT experience.

• 3+ years of Cyber Security experience.

• Advanced operating systems experience, in 2 or more of the following, Microsoft, MacOS, Linux.

• General network security and troubleshooting knowledge.

• Foundational scripting knowledge preferred in any of the following: PowerShell, Python, Bash.

• In-depth knowledge of TCP/IP, UDP, DNS, FTP, SSH, SSL/TLS, and HTTP Protocols, network analysis, and network/security applications.

• Good knowledge of common malware threats and attack methodologies.

• Passionate about emerging threats and security tools/technologies.

• Malware and Threat analysis.

• Incident Management.

• Able to work under general to minimal supervision.

PREFERRED QUALIFICATIONS

• 3+ years of experience with endpoint security tools (Trellix ePO, Trellix ENS, Trellix EDR, Trellix HX, CrowdStrike, Microsoft Defender, Microsoft ATP, SentinelOne).

• 3+ years managing security endpoints.

• 3+ years of experience with SIEM management and tuning in one or more of the following: LogScale formerly Humio, Splunk, Trellix Helix, Trellix ESM, Azure Sentinel, Elastic SIEM, Chronical, or Devo.

• Experience with Windows patch management tools (Automox, SCCM, SolarWinds, GFI Languard, etc.) a plus.

• Experience creating detection rules in a one ore more SIEM technologies

• Certifications a plus: CEH, CRISC, CISA, CGEIT, CISSP, CIPP, GMON, GHIA, GCIH.

• Bachelor’s Degree (Math, CS, and Engineering), preferred.

• Excellent knowledge of security methodologies, processes (i.e., Cyber Kill Chain/Diamond Models, and the MITRE ATT&CK framework).

Read the full description