Enable job alerts via email!

Security Risk Management Analyst

CVS Health

United States

Remote

USD 64,000 - 174,000

Full time

Yesterday
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

CVS Health is seeking a dedicated professional for their Information Security Client Assurance function. This role involves supporting clients, managing security assurance relationships, and ensuring compliance with various security frameworks. The ideal candidate will have experience in security audit management and a strong understanding of regulatory standards. Join a leading health solutions company committed to transforming healthcare and making a difference in people's lives.

Benefits

Affordable medical plan options
401(k) plan with matching contributions
Employee stock purchase plan
Wellness screenings
Tobacco cessation programs
Weight management programs
Confidential counseling
Financial coaching
Paid time off
Tuition assistance

Qualifications

  • 2-5 years of security audit management or information security experience.
  • Experience with security frameworks like NIST 800-53 and HIPAA.

Responsibilities

  • Represent CVS Health in client-facing information security assurance.
  • Respond to client security assurance requests and manage relationships.

Skills

Security Audit Management
Third Party Risk Management
Interpersonal Skills
Written Communication
Verbal Communication

Education

Bachelor Degree

Job description

At CVS Health, we’re building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.

As the nation’s leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues – caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day.

Job Purpose and Summary:

Represent CVS Health information security practices via our client facing Information Security Client Assurance function. This role will provide extraordinary support to our clients and will navigate complex client security assurance relationship issues. You will do this by partnering with other technology teams, business account teams, legal & privacy. Delight our clients by providing Request For Information/Proposal (RFI/P) responses, responding to client third party risk management questionnaires and updating our client facing security materials based on the latest industry trends. Leverage & maintain a current knowledge base for all information security policies, standards, procedures and practices to accurately represent CVS Health’s information security posture.



Required Qualifications

  • 2-5 years of Security Audit Management, Third Party Risk Management or information security related experience
  • 2+ years experience working with common security frameworks and regulations, including but not limited to NIST 800-53, ISO 27001/2, HIPAA/HITECH, HITRUST and the PCI-DSS



Preferred Qualifications

Knowledge of:

  • Enterprise level Information security policies and procedures
  • Working knowledge of regulatory (including audit frameworks) standards, including but not limited to NIST 800-53, SOX, SOC1/SOC2 Type II audits, HIPAA/HITECH, HITRUST, and the PCI-DSS
  • Previous experience in a client facing security role, third party risk management or controls assurance function
  • Cloud Security Control frameworks a bonus

Skill in:

  • Control evaluation, audit, and testing
  • Understanding security schedule legal terminology
  • Technical control negotiations
  • Strong interpersonal and collaboration skills
  • Strong written and verbal communication skills

Ability To:

  • Ability to comprehend implications of security risk & technical control implementations
  • Worked independently
  • Take initiative; Be a self-starter
  • Execute on assigned tasks
  • Collaborate across many teams


Education
Bachelor Degree or equivalent experience

Anticipated Weekly Hours

40

At CVS Health, we’re building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.

As the nation’s leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues – caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day.

Job Purpose and Summary:

Represent CVS Health information security practices via our client facing Information Security Client Assurance function. This role will provide extraordinary support to our clients and will navigate complex client security assurance relationship issues. You will do this by partnering with other technology teams, business account teams, legal & privacy. Delight our clients by providing Request For Information/Proposal (RFI/P) responses, responding to client third party risk management questionnaires and updating our client facing security materials based on the latest industry trends. Leverage & maintain a current knowledge base for all information security policies, standards, procedures and practices to accurately represent CVS Health’s information security posture.



Required Qualifications

  • 2-5 years of Security Audit Management, Third Party Risk Management or information security related experience
  • 2+ years experience working with common security frameworks and regulations, including but not limited to NIST 800-53, ISO 27001/2, HIPAA/HITECH, HITRUST and the PCI-DSS



Preferred Qualifications

Knowledge of:

  • Enterprise level Information security policies and procedures
  • Working knowledge of regulatory (including audit frameworks) standards, including but not limited to NIST 800-53, SOX, SOC1/SOC2 Type II audits, HIPAA/HITECH, HITRUST, and the PCI-DSS
  • Previous experience in a client facing security role, third party risk management or controls assurance function
  • Cloud Security Control frameworks a bonus

Skill in:

  • Control evaluation, audit, and testing
  • Understanding security schedule legal terminology
  • Technical control negotiations
  • Strong interpersonal and collaboration skills
  • Strong written and verbal communication skills

Ability To:

  • Ability to comprehend implications of security risk & technical control implementations
  • Worked independently
  • Take initiative; Be a self-starter
  • Execute on assigned tasks
  • Collaborate across many teams


Education
Bachelor Degree or equivalent experience

Anticipated Weekly Hours

40

Time Type

Full time

Pay Range

The typical pay range for this role is:

$64,890.00 - $173,040.00

This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above.

Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.

Great benefits for great people

We take pride in our comprehensive and competitive mix of pay and benefits – investing in the physical, emotional and financial wellness of our colleagues and their families to help them be the healthiest they can be. In addition to our competitive wages, our great benefits include:

  • Affordable medical plan options, a 401(k) plan (including matching company contributions), and an employee stock purchase plan.

  • No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching.

  • Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility.

For more information, visit https://jobs.cvshealth.com/us/en/benefits

We anticipate the application window for this opening will close on: 05/16/2025

Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

About the company

At CVS Health, we share a clear purpose: helping people on their path to better health. Through our health services, plans and community pharmacists, we’re pioneering a bold new approach to total health. Making quality care more affordable, accessible, simple and seamless, to not only help people get well, but help them stay well in body, mind and spirit.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Risk Management Analyst (Hiring Immediately)

USAA

Phoenix

Remote

USD 127,000 - 244,000

2 days ago
Be an early applicant

Risk Management Analyst (Hiring Immediately)

Society for Conservation Biology

Guadalupe

Remote

USD 127,000 - 244,000

3 days ago
Be an early applicant

OPERATIONS MANAGEMENT ANALYST

CBRE

Denver

Remote

USD 68,000 - 99,000

2 days ago
Be an early applicant

Management Analyst

ManTech

Remote

USD 90,000 - 150,000

11 days ago

Sr Vendor Risk Management Analyst

Thomson Reuters

Richmond

Hybrid

USD 88,000 - 164,000

Today
Be an early applicant

Remote Business Analyst (Danish) - 31267

Turing

Remote

USD 70,000 - 150,000

Today
Be an early applicant

Business Analyst

Oracle

Remote

USD 51,000 - 100,000

Yesterday
Be an early applicant

IT Business Analyst

Bayforce

Remote

USD 65,000 - 95,000

Today
Be an early applicant

Business Systems Analyst

CDW

Remote

USD 60,000 - 220,000

Today
Be an early applicant