Senior Analyst, GRC

jeffersonhealth

Pennsylvania

On-site

USD 120,000 - 150,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Jefferson Health in Fort Washington, PA seeks an experienced information security leader to manage resilience risks and regulatory compliance. You will develop and enforce policies, perform advanced risk assessments, and drive data-driven decisions to protect assets and promote security awareness.

The role emphasizes executive dashboards, risk measurement, and cross-functional collaboration to align with organizational resilience goals.

Qualifications

  • Bachelor's Degree in a science, technology, engineering, or math discipline.
  • High School Diploma/GED and preferred certifications.
  • 5 years related work experience.

Responsibilities

  • Contribute to the implementation of an integrated Governance, Risk, and Compliance (GRC) program and tools to support GRC workflows, which align with organizational objectives and regulatory requirements.
  • Develop and enforce enterprise-wide information security policies, standards, and procedures to support robust information security and operational resilience, including processes to manage exceptions to policies and standards.
  • Perform risk assessments, including business impact assessments, third party risk assessments, and assessments of cloud systems. Synthesize data to inform senior leadership on security posture, resilience gaps, and emerging threats.
  • Contribute to the prioritization and deployment of risk mitigation strategies using risk quantification methodologies, ensuring a coordinated response across business units and with external partners.
  • Advance the culture of compliance and resilience by conducting enterprise-level information security awareness and business resilience training campaigns and tabletop exercises.
  • Collaborate with cross-functional teams to integrate information security best practices and regulatory requirements into operational policies and procedures both within and beyond the immediate job area.
  • Mentor and coach GRC analysts, fostering operational excellence and professional growth within the GRC organization.
  • Develop executive dashboards and data pipelines to measure and communicate risk trends, compliance metrics, and strategic security objectives to senior stakeholders.

Skills

Regulatory compliance
Risk management
GRC
Security data engineering
Organizational resilience
Policy development

Education

Bachelor's in STEM
High School Diploma

Job description

Number of Positions In Requisition

1

Job Details

Responsible for effective management of information security and resilience risks through domain expertise in areas such as regulatory compliance, risk management, security data engineering, or organizational resilience. This position develops and enforces information security policies, performs advanced risk assessments, and ensures alignment with regulatory requirements. Uses data driven decision making to protect assets by identifying vulnerabilities, measuring risks, improving resilience, and promoting compliance through security awareness.

Job Description
Summary

Responsible for effective management of information security and resilience risks through domain expertise in areas such as regulatory compliance, risk management, security data engineering, or organizational resilience. This position develops and enforces information security policies, performs advanced risk assessments, and ensures alignment with regulatory requirements. Uses data driven decision making to protect assets by identifying vulnerabilities, measuring risks, improving resilience, and promoting compliance through security awareness.

Job Duties
  • Contribute to the implementation of an integrated Governance, Risk, and Compliance (GRC) program and tools to support GRC workflows, which align with organizational objectives and regulatory requirements.
  • Develop and enforce enterprise-wide information security policies, standards, and procedures to support robust information security and operational resilience, including processes to manage exceptions to policies and standards.
  • Perform risk assessments, including business impact assessments, third party risk assessments, and assessments of cloud systems. Synthesize data to inform senior leadership on security posture, resilience gaps, and emerging threats.
  • Contribute to the prioritization and deployment of risk mitigation strategies using risk quantification methodologies, ensuring a coordinated response across business units and with external partners.
  • Advance the culture of compliance and resilience by conducting enterprise-level information security awareness and business resilience training campaigns and tabletop exercises.
  • Collaborate with cross-functional teams to integrate information security best practices and regulatory requirements into operational policies and procedures both within and beyond the immediate job area.
  • Mentor and coach GRC analysts, fostering operational excellence and professional growth within the GRC organization.
  • Develop executive dashboards and data pipelines to measure and communicate risk trends, compliance metrics, and strategic security objectives to senior stakeholders.
Minimum Qualifications
  • Bachelor's Degree in a science, technology, engineering, or math discipline or
  • High School Diploma/GED and preferred certifications.
  • 5 years related work experience
Physical Demands

Lift and carry 25 lbs. frequent sitting/standing, frequent keyboard use, *patient care providers may be required to perform activities specific to their role including kneeling, bending, squatting and performing CPR.

Job Description Disclaimer:

This position description provides the major duties/responsibilities, requirements and working conditions for the position. It is intended to be an accurate reflection of the current position, however management reserves the right to revise or change as necessary to meet organizational needs. Other responsibilities may be assigned when circumstances require.

Work Shift

Workday Day (United States of America)

Worker Sub Type

Regular

Employee Entity

Thomas Jefferson University Primary Location Address

1100 Virginia Drive, Fort Washington, Pennsylvania, United States of America

Nationally ranked, Jefferson, which is principally located in the greater Philadelphia region, Lehigh Valley and Northeastern Pennsylvania and southern New Jersey, is reimagining health care and higher education to create unparalleled value. Jefferson is more than 65,000 people strong, dedicated to providing the highest-quality, compassionate clinical care for patients; making our communities healthier and stronger; preparing tomorrow's professional leaders for 21st-century careers; and creating new knowledge through basic/programmatic, clinical and applied research. Thomas Jefferson University , home of Sidney Kimmel Medical College, Jefferson College of Nursing, and the Kanbar College of Design, Engineering and Commerce, dates back to 1824 and today comprises 10 colleges and three schools offering 200+ undergraduate and graduate programs to more than 8,300 students. Jefferson Health , nationally ranked as one of the top 15 not-for-profit health care systems in the country and the largest provider in the Philadelphia and Lehigh Valley areas, serves patients through millions of encounters each year at 32 hospitals campuses and more than 700 outpatient and urgent care locations throughout the region. Jefferson He

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Analyst, GRC
Analyst, GRC

jeffersonhealth • Pennsylvania

On-site
USD 90,000 - 120,000
Senior Analyst, GRC
Senior Analyst, GRC

Thomas Jefferson University • Orlando (FL)

On-site
USD 110,000 - 170,000
Medical insurance
Dental insurance
Vision insurance
+5
Senior Analyst, GRC
Senior Analyst, GRC

Jefferson Health • Fort Washington

On-site
USD 120,000 - 160,000
Medical benefits
Tuition assistance
Retirement plans
Analyst, GRC
Analyst, GRC

Thomas Jefferson University • Orlando (FL)

On-site
USD 90,000 - 130,000
Medical insurance
Tuition assistance
Retirement plans
+1
Senior Analyst, GRC
Senior Analyst, GRC

Jefferson Health • Washington, Northern (KY)

Hybrid
USD 100,000 - 150,000
Analyst, GRC
Analyst, GRC

Jefferson Health • Washington, Northern (KY)

Hybrid
USD 90,000 - 120,000
Medical Insurance
Tuition Assistance
Cloud Security, Expert
Cloud Security, Expert

jeffersonhealth • Pennsylvania

On-site
USD 110,000 - 150,000
Cloud Security, Expert
Cloud Security, Expert

Thomas Jefferson University • Orlando (FL)

On-site
USD 120,000 - 180,000
Medical insurance
Tuition discounts
Retirement plans
Senior Analyst Clinical Applications-Derivatives Team
Senior Analyst Clinical Applications-Derivatives Team

Jefferson Health • Washington, Northern (KY)

Hybrid
USD 90,000 - 135,000
Senior Analyst Clinical Applications-Derivatives Team
Senior Analyst Clinical Applications-Derivatives Team

Thomas Jefferson University • Orlando (FL)

On-site
USD 100,000 - 130,000
Medical insurance
Dental & Vision
Tuition assistance
+1