Sr. GRC Analyst (Healthcare)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior GRC Analyst (Cybersecurity/Healthcare): Developing and maturing the compliance program and security interface for customers with an accent on risk evaluation, audit cycles, and regulatory adherence. Focus on automating compliance processes using AI and ensuring alignment with NIST, HITRUST, and HIPAA frameworks.
Location: Remote (United States)
Company
is a leader in Real-Time Care Intelligence solutions focused on improving physical and behavioral health outcomes through seamless, high-quality care.
What you will do
- Evaluate organizational policies and standards to ensure internal and external compliance requirements are met.
- Develop improvements to the compliance program using AI, automation, and process optimization.
- Review security-relevant language in customer contracts (MSAs, DPAs, BAAs) and RFP/RFI sections.
- Respond to customer security questionnaires using AI-assisted tools and trust content.
- Perform vendor security risk assessments and contribute to the third-party risk management program.
- Coordinate with external auditors and maintain customer-facing security documentation.
Requirements
- Bachelor’s degree in information security, computer science, or related field.
- 5+ years of experience in information security with a focus on compliance, audit, or risk management.
- Direct experience with NIST SP 800-53, HITRUST, HIPAA, and/or FedRAMP frameworks.
- Experience responding to customer security questionnaires and conducting due diligence.
- Proven experience reviewing security-relevant language in contracts.
- Must be based in the United States.
Nice to have
- Security compliance certifications such as CISSP, CISA, or CRISC.
- Familiarity with cloud security concepts and practices.
Culture & Benefits
- Autonomy to build and influence strategic priorities within a supportive team.
- Opportunity to work with world-class investors and advisors.
- Competitive compensation package.
- Comprehensive health, dental, and vision benefits.
- Remote-first work environment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →