
Freelance WordPress, Security, HIPAA Compliance Consultant
Posted May 10

Posted May 10
This is a fully remote position, open to applicants in United States.
• Conduct an audit of WordPress setups, including hosting, plugins, forms, integrations, tracking tools, and user access.
• Detect any HIPAA, privacy, and security deficiencies concerning the handling of PHI, encryption, access control, backups, logging, and third-party vendors.
• Evaluate risks associated with CRMs, analytics tools, email platforms, payment solutions, APIs, and form builders.
• Analyze the overall security posture of the website and pinpoint vulnerabilities or misconfigurations.
• Deliver a succinct audit report that outlines findings, assesses risk levels, and prioritizes remediation actions.
• 4-5 years of experience in conducting security assessments and technical audits for WordPress.
• Practical experience with HIPAA compliance for healthcare or regulated websites.
• Understanding of website privacy, consent management, data retention, and risks associated with third-party services.
• Familiarity with OWASP standards, SSL/TLS protocols, firewalls, malware scanning, backups, and least-privilege access principles.
• Strong communication and documentation abilities.
• Opportunity to work on a variety of projects in a dynamic environment.
• Competitive salary with performance-based incentives.
• Professional development opportunities and training programs.
• Flexible work hours and remote work options.
Istari
Redgrave LLP
Anomaly
CrowdStrike
Get handpicked remote jobs straight to your inbox weekly.