IT Security Analyst II — GRC, TPRM & Phishing Lead

Capital Health System, Inc.

Lawrenceville (GA)

On-site

USD 108,000 - 141,000

Full time

3 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Medical Plan
Dental Plan
Vision Plan
Paid Time Off
FSA

Job summary

Capital Health seeks an IT Security Analyst II to own and manage core information security programs, including TPRM, phishing awareness training and application security assessments. This role guides policy development, metrics reporting and risk remediation across the organization, mentoring junior staff and collaborating with the IT Manager.

The candidate will demonstrate strong ability to translate technical risks into business terms, oversee vendor risk, and drive security improvements while

Qualifications

  • Bachelor's degree in a relevant field or equivalent experience.
  • Three years cybersecurity experience including GRC, vulnerability management or TPRM; knowledge of NIST CSF, HIPAA or similar frameworks; CompTIA Security+ required.

Responsibilities

  • Owns the end-to-end third-party risk management (TPRM) program including risk scoring, intake workflows, assessments and reassessments.
  • Drives vendor risk assessments from outreach to closure and escalates high-risk relations to leadership.
  • Administers phishing simulation program; designs campaigns, schedules, executes and reports trends to leadership.
  • Performs Application Security Assessments and provides risk-based recommendations.
  • Manages software request/review process for security risk prior to approval and onboarding.
  • Supports overall GRC strategy with the IT Manager; contributes to phishing roadmaps and capacity planning.
  • Drafts and maintains information security policies, standards and procedures; reports remediation progress for HIPAA/NIST gaps.
  • Develops security awareness training content for staff and management; stays current with threats and controls.

Skills

Vendor risk management
GRC
NIST CSF
HIPAA
CompTIA Security+
Risk assessment
Stakeholder communication
Security policy drafting

Education

Bachelor's degree

Job description

Capital Health seeks an IT Security Analyst II to own and manage core information security programs, including TPRM, phishing awareness training and application security assessments. This role guides policy development, metrics reporting and risk remediation across the organization, mentoring junior staff and collaborating with the IT Manager.

The candidate will demonstrate strong ability to translate technical risks into business terms, oversee vendor risk, and drive security improvements while

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior IT Security & GRC Analyst
Senior IT Security & GRC Analyst

Capital Health • Lawrenceville (GA), Northern (KY)

Hybrid
USD 108,000 - 141,000
Medical Plan
Dental Plan
Vision Plan
+2
Senior IT Security & GRC Analyst
Senior IT Security & GRC Analyst

Capital Health Screening Centre • Lawrenceville (NJ)

On-site
USD 108,000 - 141,000
Medical Plan
Dental Plan
Vision Plan
+1
IT Security Analyst II
IT Security Analyst II

Capital Health System, Inc. • Lawrenceville (GA)

On-site
USD 108,000 - 141,000
Medical Plan
Dental Plan
Vision Plan
+2
IT Security Analyst II
IT Security Analyst II

Capital Health Screening Centre • Lawrenceville (NJ)

On-site
USD 108,000 - 141,000
Medical Plan
Dental Plan
Vision Plan
+1
Security Awareness & Phishing Program Analyst
Security Awareness & Phishing Program Analyst

Software Technology, Inc. • Harrisburg

On-site
USD 60,000 - 90,000
Security Operations & GRC Analyst: Triage, Risk & Remediation
Security Operations & GRC Analyst: Triage, Risk & Remediation

Jobvite, Inc. • Duluth (GA)

Hybrid
USD 70,000 - 110,000
GRC Security Analyst: HIPAA/HITRUST & Third-Party Risk
GRC Security Analyst: HIPAA/HITRUST & Third-Party Risk

TEKsystems • Columbia (MD)

Hybrid
USD 114,000 - 125,000
Medical, dental & vision
401(k) Retirement Plan
Life Insurance
+4
Information Security Governance, Risk and Compliance Analyst II
Information Security Governance, Risk and Compliance Analyst II

Saint Luke's • Kansas City (MO)

On-site
USD 85,000 - 115,000
Cyber Security Analyst II: Risk & Compliance
Cyber Security Analyst II: Risk & Compliance

Centauri Health Solutions, Inc • United States

On-site
USD 85,000 - 110,000
Medical, dental, vision, prescription
Wellness program
Company-paid life and AD&D insurance
+3
Security Awareness & Compliance Analyst - Phishing & GRC
Security Awareness & Compliance Analyst - Phishing & GRC

Mbi Llc • Harrisburg, Northern (KY)

Hybrid
USD 75,000 - 95,000