Healthcare GRC & Security Compliance Analyst

Curana Health, Inc.

United States

Remote

USD 117,000 - 143,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health insurance
401(k) retirement plan
Paid time off
Paid holidays

Job summary

Curana Health, Inc. is seeking an IT Governance, Risk, and Compliance Analyst to strengthen our IT Security and Governance program across risk management, policy, and controls.

You will collaborate with IT, Security, Compliance, Legal, and business teams to identify risks and drive audit-ready processes. You bring 2–5 years in GRC or information security, with hands-on experience in risk assessments, control testing, and regulatory compliance.

Qualifications

  • Bachelor's degree in Information Security, Cybersecurity, Information Technology, Computer Science, Healthcare Informatics, or related field (equivalent experience considered).
  • 2–5 years of experience in GRC, information security, risk management, audit, compliance, cybersecurity, or related function.
  • Experience supporting risk assessments, compliance reviews, audits, control testing, or governance activities.
  • Experience in regulated industries or compliance-driven environments.
  • Knowledge of HIPAA Security Rule and governance concepts.
  • Strong analytical and communication skills; ability to manage multiple priorities in a fast-paced environment.

Responsibilities

  • Conduct security risk assessments and document risks, control gaps, and recommended steps.
  • Support ongoing improvements to Curana Health's GRC program.
  • Maintain security policies, standards, procedures, and guidelines.
  • Coordinate audit and assessment activities, including evidence collection and remediation tracking.
  • Map security controls to HIPAA, SOC 2, NIST, CIS, CMS, URAC, and related frameworks.
  • Support regulatory readiness initiatives and governance metrics.
  • Maintain risk registers, issue logs, and corrective action plans.
  • Collaborate with technology teams to address vulnerabilities and compliance gaps.
  • Participate in risk intake, assessment, prioritization, and monitoring.
  • Support third-party risk management and vendor security reviews.

Skills

GRC
Information Security
Risk Management
Audit
Compliance
Regulated Industry

Education

Bachelor's degree in Information Security/Cybersecurity/IT/CS/Healthcare Informatics

Tools

ServiceNow GRC
Archer
OneTrust
AuditBoard
LogicGate

Job description

Curana Health, Inc. is seeking an IT Governance, Risk, and Compliance Analyst to strengthen our IT Security and Governance program across risk management, policy, and controls.

You will collaborate with IT, Security, Compliance, Legal, and business teams to identify risks and drive audit-ready processes. You bring 2–5 years in GRC or information security, with hands-on experience in risk assessments, control testing, and regulatory compliance.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

GRC Security Analyst
GRC Security Analyst

Curana Health, Inc. • United States

Remote
USD 117,000 - 143,000
Health insurance
401(k) retirement plan
Paid time off
+1
Remote IT GRC Analyst — Healthcare Compliance
Remote IT GRC Analyst — Healthcare Compliance

Eightelevengroup • Town of Texas (WI), Northern (KY)

Hybrid
USD 76,000 - 110,000
Governance, Risk & Compliance Analyst (Third-Party Risk Analyst)
Governance, Risk & Compliance Analyst (Third-Party Risk Analyst)

recruit22 • Chicago (IL)

On-site
USD 65,000 - 90,000
Healthcare GRC Analyst: Risk, Compliance & Vendor Oversight
Healthcare GRC Analyst: Risk, Compliance & Vendor Oversight

recruit22 • Chicago (IL)

On-site
USD 65,000 - 90,000
Remote IT GRC Analyst - Healthcare Compliance & Risk
Remote IT GRC Analyst - Healthcare Compliance & Risk

Medasource • Town of Texas (WI), Northern (KY)

Hybrid
USD 76,000 - 110,000
GRC Analyst: Cyber Risk & Compliance Expert
GRC Analyst: Cyber Risk & Compliance Expert

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000
Senior GRC Analyst: Risk & Compliance Leader
Senior GRC Analyst: Risk & Compliance Leader

Cone Health • Greensboro (NC)

On-site
USD 90,000 - 130,000
Governance Risk and Compliance Analyst Intermediate
Governance Risk and Compliance Analyst Intermediate

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000
Governance, Risk and Compliance Analyst Senior
Governance, Risk and Compliance Analyst Senior

Cone Health • Greensboro (NC)

On-site
USD 90,000 - 130,000
Director of Security & GRC Strategy
Director of Security & GRC Strategy

Concentra • Town of Texas (WI)

On-site
USD 150,000 - 190,000