Назад
Company hidden
5 дней назад

Security Analyst, GRC

100 000 - 120 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Analyst, GRC (Cybersecurity/Healthcare): Supporting governance, risk, and compliance operations for an AI-native medical imaging platform with an accent on third-party risk, GRC tooling, audit readiness, and security metrics. Focus on coordinating vendor assessments, improving workflows and dashboards, managing evidence and remediation, and escalating material risks and control gaps.

Location: Remote

Salary: $100,000–$120,000 per year, plus eligibility for an annual discretionary bonus.

Company

hirify.global' Mosaic Clinical Technologies develops an AI-native, cloud-based medical imaging platform designed to improve diagnostic quality, clinical capacity, operational efficiency, and continuity of care.

What you will do

  • Support day-to-day governance, risk, and compliance operations, including coordination, stakeholder communications, reporting, metrics, training, and documentation.
  • Coordinate third-party risk and vendor assessments, including intake, evidence collection, remediation tracking, approvals, reporting, and process improvements.
  • Administer and improve GRC tools, workflows, dashboards, automations, and reporting solutions.
  • Support access management, vulnerability management, audit readiness, evidence collection, issue tracking, and operational continuity initiatives.
  • Collaborate with Security, Privacy, Compliance, Legal, Technology, Product, and business teams to improve processes and escalate material risks or control gaps.
  • Travel up to 5%.

Requirements

  • 2+ years of experience in GRC, information security, risk, compliance, audit, vendor risk, security operations, or a related field preferred.
  • Bachelor's degree in computer science, information security, information systems, risk management, compliance, or a related field preferred.
  • Working knowledge of GRC frameworks and regulations such as HIPAA, SOC 2, NIST, ISO 27001, PCI DSS, GDPR, or applicable privacy requirements.
  • Experience supporting or administering GRC, workflow, ticketing, reporting, or security platforms such as ServiceNow, LogicGate, or comparable tools preferred.
  • Understanding of data analytics, KPI development, dashboards, reporting, evidence management, and operational metrics.

Culture & Benefits

  • Flexible remote schedules.
  • Competitive benefits with eligibility beginning the month after hire.
  • Generous paid time off plans and paid holidays.
  • Compensation reviews and career growth opportunities.
  • Health and wellness coverage, 401(k) benefits, family planning support, and telehealth options subject to eligibility.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →