Get more replies from employers
Send a job-specific resume in minutes.
Cone Health is seeking an Intermediate GRC Analyst to collaborate with process owners, internal and external auditors, and stakeholders to review, monitor, and resolve cybersecurity risk. You will support HITRUST, HIPAA and NIST CSF audits and attestations and help manage IT compliance with SOC2, ISO 27001, PCI-DSS and SOX.
This role contributes to maturing the organization’s compliance program. The ideal candidate has a Bachelor's degree and 5 years of relevant experience, plus CISA
The Governance, Risk & Compliance (GRC) Analyst - Intermediate will collaborate with process owners, internal auditors, external auditors, and other stakeholders in order to assist in reviewing, monitoring, and resolving cybersecurity risk. This includes helping the organization manage HITRUST, HIPAA and NIST Common Security Framework (CSF) audits and attestations. By supporting the implementation of internal and external assessments, responding to and managing the full lifecycle of compliance audits, and ensuring compliance with existing and emerging regulations and standards including SOC2, ISO 27001, PCI-DSS, SOX, and other GRC activities, the Principal GRC Analyst will also contribute to managing the organization's IT compliance program.