Information Security Risk and Governance Specialist, Consultant

Blue Shield of CA

Springfield Meadows (CA)

On-site

USD 120,000 - 150,000

Full time

5 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Stellarus is seeking an Information Security Risk and Governance Specialist to mature the Compliance function and translate regulatory and security requirements into actionable governance controls. You will work with auditors and internal teams to ensure audit-readiness and maintain a knowledge base across projects.

The role requires 7+ years of experience in security governance, risk management, and regulatory frameworks (NIST, HIPAA, SOC 2).

Qualifications

  • Requires a bachelor's degree or equivalent experience.
  • Requires at least 7 years of prior relevant experience.
  • Understanding of and experience working with security assurance and trust frameworks (in particular NIST, HIPAA and SOC 2)
  • Experience interacting with internal/external auditors and explaining technical concepts
  • Ability to communicate effectively with customers and internal teams
  • Superior organizational skills, extraordinary attention to detail, and an agile mindset that processes can always be improved
  • Proven ability to manage projects and deliverables to completion
  • Ability to understand and contextualize complex technical concepts into terms readily understandable by a non-technical audience
  • Satisfactory knowledge and skills including technical or functional expertise, business acumen and financial analysis skills, risk management, critical thinking and decision-making skills.
  • Intermediate understanding of healthcare information security governance, risk, and compliance practices
  • Ability to learn and understand Stellarus' security controls and to maintain a security knowledge base that can be used for multiple projects

Responsibilities

  • Mature the Compliance function and ensure IT audit-readiness with policy, regulations and control standards.
  • Support Stellarus by translating regulatory, contractual, policy, and security requirements into governance and control practices.
  • Collaborate with internal teams to maintain a security knowledge base for multiple projects.
  • Foster a data-driven approach and accountability for key metrics and deliverables.

Skills

Security governance
Risk management
Auditor liaison
Communication
Project management
Healthcare IT governance
Regulatory knowledge

Education

Bachelor's degree or equivalent

Job description

Your Role

The Information Security Team is seeking an Information Security Risk and Governance Specialist. In this role, you will be supporting Stellarus by helping translate regulatory, contractual, policy, and security requirements into sustainable and measurable governance and control practices.

Stellarus recognizes that IT Services are crucial, strategic, organizational assets and therefore we must invest appropriate levels of resource into the support, delivery and management of these critical IT Services and the IT systems that underpin them.

This position has responsivities within the Information Security Compliance organization, for maturing the Compliance function, ensuring IT audit-readiness with policy, regulations and control standards.

Your Knowledge and Experience
  • Requires a bachelor's degree or equivalent experience
  • Requires at least 7 years of prior relevant experience
  • Understanding of and experience working with security assurance and trust frameworks (in particular NIST, HIPAA and SOC 2)
  • Experience interacting with internal/external auditors and explaining technical concepts
  • Ability to communicate effectively with customers and internal teams
  • Superior organizational skills, extraordinary attention to detail, and an agile mindset that processes can always be improved
  • Proven ability to manage projects and deliverables to completion
  • Ability to understand and contextualize complex technical concepts into terms readily understandable by a non-technical audience
  • Satisfactory knowledge and skills including technical or functional expertise, business acumen and financial analysis skills, risk management, critical thinking and decision-making skills.
  • Intermediate understanding of healthcare information security governance, risk, and compliance practices
  • Ability to learn and understand Stellarus' security controls and to maintain a security knowledge base that can be used for multiple projects
Additionally, candidate must be able to:
  • Demonstrate personal commitment to change through actions and words, and mobilize others to support change through times of stress and uncertainty
  • Foster a team culture of continuous improvement, mentoring and learning, data driven decisions, and accountability for delivery of key metrics and deliverables
  • Breakdown raw information and undefined problems into specific, workable components that in-turn clearly identifies the issues at hand
  • Make logical conclusions, anticipates obstacles and considers different approaches that are relevant to the decision-making process
  • Improve organizational performance though the application of original thinking to existing and emerging methods, processes, products and services

#LI-FB1

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Information Security Risk and Governance Specialist, Consultant
Information Security Risk and Governance Specialist, Consultant

Blue Shield of CA • Rancho Cordova (CA)

On-site
USD 120,000 - 160,000
Information Security Risk and Governance Specialist, Consultant
Information Security Risk and Governance Specialist, Consultant

Blue Shield of CA • Oakland (CA)

On-site
USD 120,000 - 190,000
Information Security Risk and Governance Specialist, Consultant
Information Security Risk and Governance Specialist, Consultant

Blue Shield of CA • Lodi (CA)

On-site
USD 120,000 - 180,000
Information Security Risk and Governance Specialist, Consultant
Information Security Risk and Governance Specialist, Consultant

Blue Shield of CA • Long Beach (CA)

On-site
USD 120,000 - 180,000
Information Security Risk and Governance Specialist, Consultant
Information Security Risk and Governance Specialist, Consultant

Blue Shield of CA • San Diego (CA)

On-site
USD 120,000 - 160,000
Information Security Risk & Governance Lead
Information Security Risk & Governance Lead

Blue Shield of CA • Long Beach (CA)

On-site
USD 120,000 - 180,000
Senior Information Security Risk & Governance Specialist
Senior Information Security Risk & Governance Specialist

Blue Shield of CA • Oakland (CA)

On-site
USD 120,000 - 190,000
Senior Information Security Risk & Governance Advisor
Senior Information Security Risk & Governance Advisor

Blue Shield of CA • Rancho Cordova (CA)

On-site
USD 120,000 - 160,000
Strategic Information Security Risk & Governance Lead
Strategic Information Security Risk & Governance Lead

Blue Shield of CA • San Diego (CA)

On-site
USD 120,000 - 160,000
Strategic Information Security Risk & Governance Leader
Strategic Information Security Risk & Governance Leader

Blue Shield of CA • Springfield Meadows (CA)

On-site
USD 120,000 - 150,000