Information Security GRC Analyst III -TPRM Experience

CareSource

Northern (KY)

Hybrid

USD 94,000 - 165,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

CareSource Information Security GRC Analyst III position manages day-to-day and long-term information security risks, ensuring compliance with risk policies and limits. Requires a Bachelor's degree or equivalent and at least seven years of relevant experience.

The role emphasizes measuring and reporting risk, vendor risk management, and coordinating with Enterprise Risk Management to align policies. Strong communication and collaboration are essential to drive risk mitigation and improve

Qualifications

  • Bachelor's degree or equivalent required.
  • Minimum of seven (7) years of relevant work experience required.

Responsibilities

  • Measure, monitor, and report on information security risks
  • Review and report on vendor/third party risk to support vendor risk management activities
  • Engage staff and/or vendors to develop information security risk mitigation plans to address risks identified in Vendor risk reviews
  • Monitor and report on information security risk mitigation plans to ensure timely execution
  • Engage employees in the management of information security risk and ensure they are aware of their accountabilities with regard to information security risk management
  • Regularly assess and report to management any exceptions to information risk management policies, procedures and limits
  • Engage with the Enterprise Risk Management office to ensure information risk management policies, procedures and limits are aligned with Enterprise Risk Management policies and guidance
  • Contribute and provide input to the development of operational department goals
  • Acts as technical expert in functional domain
  • Recommends technical advancements to improve CareSource customer and partner experiences
  • Perform any other job related instructions as requested

Skills

IT Audit
App Security
Server Security
Network Security
SOX Compliance
MS Office
Access Management
Security Monitoring
Data Encryption
Networking
SSL/IPSec/TCP/IP
Windows OS
Project Management

Education

Bachelor's Degree or equivalent

Job description

Job Summary:

The Information Security GRC Analyst III managed day to day, short and long term information security risks and ensures activities are within risk tolerance and in compliance with approved risk management policies, procedures and limits.

Essential Functions:
  • Measure, monitor, and report on information security risks
  • Review and report on vendor/third party risk to support vendor risk management activities
  • Engage staff and/or vendors to develop information security risk mitigation plans to address risks identified in Vendor risk reviews
  • Monitor and report on information security risk mitigation plans to ensure timely execution
  • Engage employees in the management of information security risk and ensure they are aware of their accountabilities with regard to information security risk management
  • Regularly assess and report to management any exceptions to information risk management policies, procedures and limits
  • Engage with the Enterprise Risk Management office to ensure information risk management policies, procedures and limits are aligned with Enterprise Risk Management policies and guidance
  • Contribute and provide input to the development of operational department goals
  • Acts as technical expert in functional domain
  • Recommends technical advancements to improve CareSource customer and partner experiences
  • Perform any other job related instructions as requested
Education and Experience:
  • Bachelor Degree or equivalent years of relevant work experience required
  • Minimum of seven (7) years of relevant work experience is required
Competencies, Knowledge and Skills:
  • Ability to effectively prioritize and execute tasks while working both independently and in a team-oriented, collaborative environment
  • Strong interpersonal skills including excellent written and verbal communication skills; listening and critical thinking; presentation skills, facilitation skills
  • Ability to establish effective working relationships with stakeholders at all different levels
  • Flexibility during organizational and/or business changes
  • Ability to manage multiple projects while demonstrating a sense of urgency
  • Effective problem-solving skills with attention to detail
  • Working technical knowledge/experience of the following:
    • IT Audit
    • Application, server, and network security
    • Monitoring security events and supporting incident response activities
    • Sarbanes-Oxley (SOX) compliance
    • Microsoft Office
    • Access Management/Authentication and Authorization
    • Scurity Monitoring
    • Data Enryption
    • Computer Networking
    • Security Internet protocols (SSL, IPSEC, TCP/IP)
    • Windows Operating System
    • Project Management
Licensure and Certification:
  • Certified in Risk and Information System Control (CRISC) or System Security Certified Practitioner (SSCP) preferred
  • CISSP preferred
Working Conditions:
  • General office environment; may be required to sit or stand for extended periods of time

$94,100.00 - $164,800.00 CareSource takes into consideration a combination of a candidate’s education, training, and experience as well as the position’s scope and complexity, the discretion and latitude required for the role, and other external and internal data when establishing a salary level. In addition to base compensation, you may qualify for a bonus tied to company and individual performance. We are highly invested in every employee’s total well-being and offer a substantial and comprehensive total rewards package.

Salary

  • Organization Level Competencies
  • Fostering a Collaborative Workplace Culture
  • Cultivate Partnerships
  • Develop Self and Others
  • Drive Execution
  • Influence Others
  • Pursue Personal Excellence
  • Understand the Business

This job description is not all inclusive. CareSource reserves the right to amend this job description at any time. CareSource is an Equal Opportunity Employer. We are dedicated to fostering an environment of belonging that welcomes and supports individuals of all backgrounds.

#LI-GB1

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

IT GRC Analyst
IT GRC Analyst

Eightelevengroup • Town of Texas (WI), Northern (KY)

On-site
USD 76,000 - 110,000
Director, Security - GRC
Director, Security - GRC

Concentra, Inc. • Addison (TX), Northern (KY)

On-site
USD 180,000 - 260,000
401(k) Retirement Plan with Employer
Life & Disability Insurance
Paid Time Off
+4
REMOTE - Healthcare Analyst II - R10164
REMOTE - Healthcare Analyst II - R10164

CareSource • United States

On-site
USD 72,200 - 115,500
Bonus tied to performance
Comprehensive total rewards package
GRC Security Analyst
GRC Security Analyst

Curana Health, Inc. • United States

Remote
USD 117,000 - 143,000
Health insurance
401(k) retirement plan
Paid time off
+1
REMOTE - Provider Systems Analyst II - R9442
REMOTE - Provider Systems Analyst II - R9442

CareSource • United States

On-site
USD 70,800 - 113,200
Medical Records Coordinator II
Medical Records Coordinator II

CareSource • United States

On-site
USD 36,000 - 57,000
Senior InfoSec GRC Analyst – Risk & Compliance
Senior InfoSec GRC Analyst – Risk & Compliance

CareSource • Northern (KY)

Hybrid
USD 94,000 - 165,000
Information Security Analyst, FT, Days
Information Security Analyst, FT, Days

Prisma Health • Greenville (SC)

On-site
USD 90,000 - 130,000
Governance, Risk & Compliance (GRC) Analyst
Governance, Risk & Compliance (GRC) Analyst

Delta-Denta • St. Louis (MO)

On-site
USD 75,000 - 110,000
IT Security Analyst II
IT Security Analyst II

Capital Health System, Inc. • Lawrenceville (GA)

On-site
USD 108,000 - 141,000
Medical Plan
Dental Plan
Vision Plan
+2