
Freelance WordPress Consultant – Security, HIPAA Compliance
Posted May 10

Posted May 10
This is a fully remote position, open to applicants in United States.
• Conduct a thorough audit of WordPress configurations, hosting environments, plugins, forms, integrations, tracking systems, and user permissions.
• Detect HIPAA, privacy, and security deficiencies related to the handling of PHI, including encryption, access control, data backups, logging practices, and third-party vendor assessments.
• Evaluate risks associated with CRMs, analytics tools, email services, payment solutions, APIs, and form builders.
• Analyze the overall security posture of the website to identify potential vulnerabilities or configuration errors.
• Deliver a clear audit report summarizing findings, risk assessments, and prioritized steps for remediation.
• Proven experience in WordPress security and technical auditing.
• Practical experience with HIPAA compliance in the context of healthcare or regulated websites.
• Understanding of website privacy practices, consent management, data retention policies, and third-party risk management.
• Familiarity with OWASP guidelines, SSL/TLS protocols, firewalls, malware scanning, data backup strategies, and least-privilege access principles.
• Excellent communication and documentation skills.
• Competitive salary and performance-based incentives.
• Opportunities for professional development and continued education.
• Flexible work environment with remote options.
• Comprehensive health and wellness benefits.
Istari
Redgrave LLP
Anomaly
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.