Unfortunately, this job posting is expired.
Don't worry, we can still help! Below, please find related information to help you with your job search.
Some similar recruitments
Cyber Security Analyst (Remote Eligible)
Recruited by James Hardie 8 months ago Address Chicago, IL, United States
Line Of Business Operational Risk Analyst
Recruited by TriState Capital Bank 8 months ago Address Greater Pittsburgh Region, United States
Cyber Security Analyst Jobs
Recruited by Franklin Fitch 8 months ago Address Pennsylvania, United States
Cyber Security Analyst Jobs
Recruited by InfoObjects Inc. 8 months ago Address Boston, MA, United States
Cyber Security Analyst Jobs
Recruited by Leeds Professional Resources 8 months ago Address Miami, FL, United States
Operational Financial Analyst Jobs
Recruited by SH Hotels & Resorts 9 months ago Address Miami, FL, United States
Sr. Director, Corporate Sponsorships
Recruited by Food Bank For New York City 9 months ago Address New York City Metropolitan Area, United States
Cyber Security Analyst Jobs
Recruited by Pregis 9 months ago Address Greater Chicago Area, United States
Cyber Security Analyst Jobs
Recruited by Apptad Inc. 9 months ago Address Alpharetta, GA, United States
Governance Risk And Compliance Manager
Recruited by Beta Search 9 months ago Address , New York
Cyber Security Analyst Jobs
Recruited by Ryan Consulting Group, LLC 9 months ago Address Charlotte Metro, United States
Operational Risk Manager Jobs
Recruited by Crédit Agricole CIB 9 months ago Address , New York $150,000 - $200,000 a year
Security Governance Analyst - Remote | Wfh
Recruited by Get It Recruit - Transportation 9 months ago Address Elk Grove Village, IL, United States
Sr. Manager – Governance Risk And Compliance
Recruited by Saviynt 9 months ago Address , El Segundo $190,000 - $215,000 a year
Cybersecurity Risk Analyst Jobs
Recruited by Qorvo 9 months ago Address , Richardson
Cybersecurity Risk Assessor Jobs
Recruited by HP 9 months ago Address , Austin, 78728
Senior Analyst - It Cyber Risk
Recruited by Ally Financial 9 months ago Address , Detroit, 48226
Sr. Counsel, Corporate - International (Remote)
Recruited by CrowdStrike 9 months ago Address , Remote $140,000 - $210,000 a year
Senior Technology And Security Risk Analyst (Hybrid)
Recruited by Comrise 9 months ago Address Jersey City, NJ, United States
Cybersecurity Risk And Compliance Analyst
Recruited by MindPoint Group 9 months ago Address , Washington, 20002
Security Analyst, Governance, Risk And Compliance
Recruited by Inclusively 9 months ago Address , Atlanta, 30354
Governance, Risk, And Compliance (Grc) Supervisor
Recruited by California Public Employees' Retirement System (CalPERS) 9 months ago Address , Sacramento, 95811 $7,783 - $10,428 a month
Sr Risk Analyst Jobs
Recruited by Raymond James Financial 9 months ago Address , Saint Petersburg, 33716
Cyber Security Analyst (Remote)
Recruited by Crum & Forster 9 months ago Address Glastonbury, CT, United States
Associate It Governance, Risk, And Compliance Analyst - Technology Services
Recruited by City and County of Denver 9 months ago Address , Denver $68,905 - $113,693 a year
Governance, Risk And Compliance Technology Manager
Recruited by Mountain America Credit Union 9 months ago Address , Sandy, 84070
Operational Risk Manager Jobs
Recruited by Comerica Bank 9 months ago Address Dallas-Fort Worth Metroplex, United States
Senior It Risk Analyst (Ft Remote)
Recruited by Webster Financial Corp 9 months ago Address , Remote $90,000 - $105,000 a year
Cyber Security Analyst Jobs
Recruited by Falconwood, Inc. 9 months ago Address , Washington $120,000 - $160,000 a year
Cyber Security Analyst - Governance, Risk, Cyber, And Compliance (Southern California)
Recruited by Burns & McDonnell 9 months ago Address , Los Angeles $105,000 - $120,000 a year

Sr. Cyber Risk Governance Analyst

Company

Global Healthcare Exchange, Inc.

Address ,
Employment type
Salary $84,000 - $112,000 a year
Expires 2023-11-14
Posted at 9 months ago
Job Description

Provide professional expertise and advise IT and senior leadership in matters relating to technology-related compliance with all applicable laws, regulations, industry standards and corporate compliance requirements. Assess changes in the regulatory, business and technology environment and recommend and implement or guide appropriate changes to IT policies, controls, and processes to address security and technology issues.

Manage and coordinate IT audit activities by working with IT leaders, team members, external auditors, regulators, and other organizations that review and assess IT processes and controls.

Lead and execute cybersecurity risk management activities include internal compliance and risk management activities as well as third-party vendor security oversight and response to customer security inquiries.


Duties and responsibilities (5-8 bullets)

  • Provide professional expertise and advise leadership in complying with all applicable laws, regulations, and accreditations, including Health Insurance Portability and Accountability Act (HIPAA), Payment Card Industry Data Security Standard (PCI-DSS), FedRAMP, HITRUST, ISO 27001, and EU General Data Protection Regulation (GDPR).
  • Continuously look to optimize processes, technology and capabilities through tactical and strategic development.
  • Perform IT risk and controls assurance assessments of internal and third-party technology-related processes and solutions, working with IT leaders, security architects, Procurement, and other subject matter experts.
  • Mentor and coach team members through risk assessments, including scoping of an assessment, resolving conflict, and prioritization of issues. Perform peer review of work product and deliverables.
  • Perform recurring assessments of information security and technology functions to measure maturity against industry standard baselines, identifying improvement areas, registering risks, and assisting with action plans to move processes to a higher level of maturity.
  • Develop and maintain operational metrics to ensure information security and technology risk and the performance of the IT risk and compliance program is measured sufficiently to enable success.
  • Facilitate, oversee, and provide point of contact for all IT audits, assessments, and other reviews of processes and technology. Work with teams to coordinate schedules for activity. Work with IT teams to deliver requested evidence, documentation, conduct interviews, walk through processes, test controls, and negotiate issues. Manage and monitor development and execution of action plans by reviewing and evaluating reports for trends, working with leadership to prioritize findings, and track progress toward agreed upon timeframes. Ensure issues are appropriately documented, relevant, and understood.
  • Other duties as assigned.

Qualifications (3-5 bullets)

  • Experience in cloud-based environments for production applications, including Amazon Web Services, Microsoft Azure, GCP or other large-scale cloud deployment
  • 5+ years direct experience with information security, IT controls assurance and IT audit facilitation
  • Working knowledge of industry standards such as NIST Cybersecurity Framework, FedRAMP, NIST SP 800-53, ISO 27001, Sarbanes-Oxley, SOC1, SOC2, HIPAA, HITRUST and other similar frameworks.

Preferred Qualifications (1-3 bullets)

  • CISSP, CISM, CISA, CCSA or equivalent certification preferred;
  • Understanding of attack vectors and methodologies;
  • Ability to weigh business risks and enforce appropriate information security measures;

Knowledge, Skills, and Abilities (7-10 bullets)

  • Tactful and diplomatic when engaging with all levels of management always maintaining a professional demeanor.
  • Good communication, influencing and negotiating skills;
  • Project management and organizational skills;
  • Relationship builder; able to create and maintain a trusted network on all levels;
  • Strong analytical skills;
  • Demonstration of ability to solve problems using best practices and systematic approach
  • Written and oral communication skills including the ability to communicate complex technical issues to non-technical staff;

Estimated Salary Range for this position: $84,000 - $112,000

The base salary range represents the anticipated low and high end of the GHX’s salary range for this position. The base salary is one component of GHX’s total compensation package for employees. Other rewards and benefits include: health, vision, and dental insurance, accident and life insurance, 401k matching, paid-time off, and education reimbursement, to name a few. To view more details of our benefits, visit us here: https://www.ghx.com/about/careers/

#LI-SR #LI-Remote

GHX: It's the way you do business in healthcare
Global Healthcare Exchange (GHX) enables better patient care and billions in savings for the healthcare community by maximizing automation, efficiency and accuracy of business processes.

GHX is a healthcare business and data automation company, empowering healthcare organizations to enable better patient care and maximize industry savings using our world class cloud-based supply chain technology exchange platform, solutions, analytics and services. We bring together healthcare providers and manufacturers and distributors in North America and Europe - who rely on smart, secure healthcare-focused technology and comprehensive data to automate their business processes and make more informed decisions.

It is our passion and vision for a more operationally efficient healthcare supply chain, helping organizations reduce - not shift - the cost of doing business, paving the way to delivering patient care more effectively. Together we take more than a billion dollars out of the cost of delivering healthcare every year. GHX is privately owned, operates in the United States, Canada and Europe, and employs more than 1000 people worldwide. Our corporate headquarters is in Colorado, with additional offices in Europe, Illinois, Florida, and Nebraska.

Disclaimer
Global Healthcare Exchange, LLC and its North American subsidiaries (collectively, “GHX”) provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, national origin, sex, sexual orientation, gender identity, religion, age, genetic information, disability, veteran status or any other status protected by applicable law. All qualified applicants will receive consideration for employment without regard to any status protected by applicable law. This EEO policy applies to all terms, conditions, and privileges of employment, including hiring, training and development, promotion, transfer, compensation, benefits, educational assistance, termination, layoffs, social and recreational programs, and retirement.


GHX believes that employees should be provided with a working environment which enables each employee to be productive and to work to the best of his or her ability. We do not condone or tolerate an atmosphere of intimidation or harassment based on race, color, national origin, sex, sexual orientation, gender identity, religion, age, genetic information, disability, veteran status or any other status protected by applicable law. GHX expects and requires the cooperation of all employees in maintaining a discrimination and harassment-free atmosphere. Improper interference with the ability of GHX’s employees to perform their expected job duties is absolutely not tolerated.