
In Progress
Posted
Paid on delivery
We are seeking a qualified, US-based security professional to conduct a comprehensive security assessment and HIPAA gap analysis for a small tenant environment supporting approximately 4–5 users. The goal of this engagement is to evaluate our current technical and administrative safeguards, identify security and compliance gaps, and deliver a clear, actionable report that will guide remediation efforts in the next phase of the project. You will assess the overall environment, including user access controls, data handling practices, system configurations, and basic security policies, with a focus on HIPAA requirements. Your responsibility is to document findings in a structured manner, highlight areas of risk or non-compliance, and clearly outline recommended next steps so we can prioritize remediation in a follow-up engagement. This phase is strictly an assessment and reporting project—no remediation or implementation work is required at this stage. Accuracy, discretion, and clarity are critical, as the findings will be used to inform security improvements moving forward. Requirements: - US-based freelancer only - Must have appropriate background clearance and be eligible to handle sensitive healthcare-related information - Demonstrated experience with HIPAA security assessments and gap analysis - Strong written communication skills for delivering a clear, professional report - Please include a brief overview of your relevant experience, availability to start, and examples of similar assessments you’ve completed for small environments.
Project ID: 40217596
6 proposals
Remote project
Active 4 mos ago
Set your budget and timeframe
Get paid for your work
Outline your proposal
It's free to sign up and bid on jobs

I’m a US-based security professional with experience conducting security assessments and HIPAA gap analyses for small tenant environments. I focus on practical evaluations that identify real security and compliance gaps without unnecessary complexity. For this engagement, I will assess technical and administrative safeguards aligned with HIPAA Security Rule requirements, including user access controls, authentication practices, data handling processes, system configurations, and basic security policies. The objective is to evaluate the current environment, document areas of risk or non-compliance, and clearly outline actionable recommendations to support remediation in the next phase. Deliverables will include a structured gap analysis report detailing identified issues, potential impact, and prioritized next steps tailored specifically for a 4–5 user tenant. This phase will be limited to assessment and reporting only, as requested. I meet the requirement for a US-based freelancer, have appropriate background clearance, and understand the importance of confidentiality when handling healthcare-related information. I’m available to start immediately and can complete the work within the proposed timeline.
$255 CAD in 7 days
0.0
0.0
6 freelancers are bidding on average $584 CAD for this job

Hey there What is the tenant stack and data flow today: Microsoft 365 or Google Workspace, any EHR, cloud storage, and where does ePHI live and move (email, files, backups, endpoints)? Do you need this mapped to HIPAA Security Rule standards with a formal risk analysis format (45 CFR 164.308/310/312) and a remediation roadmap with priority and effort estimates? I can lead a clear, evidence-based HIPAA security assessment for a small environment and deliver a practical gap analysis report your team can execute on. The assessment covers access controls and MFA, device and endpoint posture, logging and audit trails, encryption in transit and at rest, backup and retention, vendor BAAs, incident response basics, and admin policies that HIPAA expects. Output will be a structured report with findings, risk ratings, supporting observations, and a prioritized remediation plan for your next phase. Hope to discuss more on chat Best, Kirill
$1,500 CAD in 14 days
2.4
2.4

Hi, I’d be happy to contribute. I have experience in HIPAA, Risk Assessment, Compliance and Security. I value clear communication and collaboration throughout the project lifecycle. Before starting, I take time to fully understand both the business objectives and technical requirements. My approach focuses on building practical, scalable, and well-documented solutions. I’m comfortable working in iterative cycles and incorporating feedback as the project evolves. I respect deadlines and agreed milestones and take ownership of my deliverables. I can adapt easily to your preferred tools, tech stack, and workflow. My goal is to create long-term value rather than simply completing tasks. I’d welcome the opportunity to discuss your project and next steps. Best regards, Marko O.
$250 CAD in 3 days
0.0
0.0

Saskatoon, Canada
Payment method verified
Member since Feb 8, 2024
$15-25 USD / hour
$250-750 USD
£5000-10000 GBP
$10-60 USD
₹1500-12500 INR
$10-30 USD
$10-30 USD
$50000-100000 USD
$250-750 USD
₹750-1250 INR / hour
$750-1500 USD
$250-750 USD
$200-300 SGD
₹12500-37500 INR
$10-50 USD
₹1500-12500 INR
$30-250 USD
$1500-3000 USD
$125-150 USD
$10-30 USD