Enable job alerts via email!

Senior GRC Analyst

TherapyNotes, LLC

United States

On-site

USD 95,000 - 135,000

Full time

5 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

TherapyNotes, LLC seeks an experienced cybersecurity professional to enhance its security posture through compliance strategies and risk management. The candidate will tackle evolving challenges, ensuring adherence to regulatory standards while collaborating across teams to fortify organizational security.

Benefits

Employer sponsored health, dental, and vision insurance
Retirement plan with company contribution
Annual company profit sharing
Personal development/training budget
Comprehensive mentorship program

Qualifications

  • 8+ years of experience in GRC or risk management.
  • Certified Information Systems Security Professional (CISSP) preferred.
  • Strong knowledge of regulatory requirements like GDPR and HIPAA.

Responsibilities

  • Develop and implement GRC strategies for compliance.
  • Lead risk assessments and develop mitigation plans.
  • Oversee internal cybersecurity audit programs.

Skills

Cybersecurity compliance
Risk management
Security awareness training
Incident response
Regulatory knowledge

Education

BS degree in Information Security

Job description

This range is provided by TherapyNotes, LLC. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more.

Base pay range

$95,000.00/yr - $135,000.00/yr

About Us

TherapyNotes is the go-to superhero for behavioral health Practice Management and EHR software! Our top-notch SaaS solution handles scheduling, billing, documenting, telehealth, and more so clinicians can focus on awesome patient care.

We're a dynamic team of pros who love to innovate and push the envelope, keeping our software cutting-edge. Join us, and let's revolutionize behavioral health software together while making a real difference!

Description

TherapyNotes is seeking an experienced cyber security professional to join our team of technology enthusiasts. The right candidate should have a focus on cybersecurity compliance, security control implementation, risk/vulnerability management, continuous monitoring, and security awareness training. The role will serve as the liaison for external audits, oversee an internal cybersecurity audit program. This role requires a strong understanding of regulatory requirements, risk management frameworks, and industry best practices.

Responsibilities

  • Develop and implement GRC strategies, policies, and procedures to ensure compliance with regulatory standards and industry best practices
  • Lead the assessment and management of risks across the organization, including conducting risk assessments, identifying gaps, and developing mitigation plans
  • Collaborate with cross-functional teams to integrate GRC principles into business processes and systems
  • Monitor regulatory changes and industry trends to ensure the organization remains compliant and proactive in addressing emerging risks
  • Provide guidance and training to employees on GRC policies, procedures, and best practices
  • Support the execution of audits, assessments, and compliance activities through validation of adherence to compliance standards
  • Mentor and coach GRC analysts, fostering their professional development and growth within the organization
  • Support the execution and continual improvement of the company's information security program, with an emphasis on meeting HIPAA-HITECH, state, and GDPR compliance requirements
  • Identify and document cyber risks and manage mitigation, follow up on open security risks, and report issues to leadership
  • Assist with ad-hoc compliance reporting and follow up with customers and/or support partners to ensure all identified vulnerabilities are being addressed
  • Provide support to Information Security Incident Response team during cyber/privacy incidents
  • Validate that information security requirements are built into architectures and new technology projects
  • Ensures the running application and developing codebase protects the confidentiality, integrity, and availability of our customer's data
  • Evaluate the technical security posture of newly proposed third-party solutions
  • Identify areas of improvement related to third party risk management to drive maturity

Requirements

  • BS degree in Information Security, Risk Management, Business Administration, or related field
  • 8+ years of experience in GRC, risk management, or related fields
  • Experience supporting and/or leading audit discussions
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM) or Certified in Risk and Information Systems Control (CRISC) strongly preferred
  • Strong knowledge of regulatory requirements (e.g., GDPR, HIPAA, PCI-DSS, CPRA) and industry standards (e.g., ISO 27001, NIST)
  • Expert in designing, implementing, and maintaining security solutions
  • Experience developing and implementing GRC frameworks, policies, and procedures
  • Excellent analytical skills with the ability to assess complex risks and develop effective mitigation strategies
  • Exceptional communication and interpersonal skills, with the ability to effectively collaborate with stakeholders at all levels of the organization
  • Proven ability to lead and manage projects, including coordinating cross-functional teams and delivering results on time
  • Ability to adapt to a fast-paced and dynamic environment, with a focus on continuous improvement and innovation
  • Expert in OWASP, CIS and/or other security standards and secure configuration baselines
  • Proficiency with cloud-based solutions and web related technologies

Benefits

  • Competitive salary - $95,000-$135,000
  • Employer sponsored health, dental, vision, life, and disability insurance
  • Retirement plan with company contribution
  • Annual company profit sharing
  • Personal development/training budget
  • Open, collaborative work environment
  • Extensive 2-week onboarding plan
  • Comprehensive mentorship program

Equal Opportunity Employer Statement & Applicant Rights

TherapyNotes LLC is an Equal Opportunity Employer and does not discriminate based on race, color, religion, sex, national origin, age, disability, genetic information, or any other protected status under federal, state, or local law. We are committed to providing a workplace free of discrimination and harassment. For more information about your rights under federal employment laws, please review the following{{:}

  • }Know Your Rights{{:}} Workplace Discrimination is Illeg
  • alFamily and Medical Leave Act (FMLA){{:}} Employee Rights Under F

MLAIf you require a reasonable accommodation during the application process, please contact humanresources@therapynotes.c

om.5/30/2

025

Seniority level
  • Seniority level
    Mid-Senior level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Information Technology
  • Industries
    Technology, Information and Internet

Referrals increase your chances of interviewing at TherapyNotes, LLC by 2x

Inferred from the description for this job

401(k)

Vision insurance

Medical insurance

Get notified when a new job is posted.

Sign in to set job alerts for “Senior Analyst” roles.

United States $93,000.00-$150,000.00 1 week ago

Senior Sales Operations and Strategy Analyst

United States $90,000.00-$100,000.00 2 weeks ago

United States $85,850.00-$101,000.00 5 days ago

Senior Analyst I , Growth & Retention Insights

United States $129,000.00-$152,000.00 1 week ago

Senior Workforce Management Data Analyst

United States $136,400.00-$178,300.00 4 days ago

Chicago, IL $88,350.00-$123,700.00 1 week ago

Rhode Island, United States $86,300.00-$118,700.00 1 week ago

New Jersey, United States $86,300.00-$118,700.00 1 week ago

New York, United States $86,300.00-$118,700.00 1 week ago

Georgia, United States $86,300.00-$118,700.00 1 week ago

United States $90,000.00-$120,000.00 22 hours ago

United States $69,000.00-$100,000.00 5 days ago

Pennsylvania, United States $86,300.00-$118,700.00 1 week ago

Senior Analyst, Revenue Operations (Partner Ops Focus)

United States $90,000.00-$100,000.00 2 weeks ago

Sr Associate, Senior Business Analyst & Special Projects

United States $75,000.00-$95,000.00 4 days ago

North Carolina, United States $86,300.00-$118,700.00 1 week ago

Kentucky, United States $86,300.00-$118,700.00 1 week ago

Florida, United States $86,300.00-$118,700.00 1 week ago

New Hampshire, United States $86,300.00-$118,700.00 1 week ago

Connecticut, United States $86,300.00-$118,700.00 1 week ago

Maryland, United States $86,300.00-$118,700.00 1 week ago

Massachusetts, United States $86,300.00-$118,700.00 1 week ago

Indiana, United States $86,300.00-$118,700.00 1 week ago

Vermont, United States $86,300.00-$118,700.00 1 week ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior GRC Analyst

Chainguard

Remote

USD 120,000 - 135,000

3 days ago
Be an early applicant

Global Senior Governance, Risk, and Compliance Analyst

UGI

King of Prussia

Hybrid

USD 90,000 - 120,000

13 days ago

Senior GRC Analyst

Skillable

Remote

USD 130,000 - 160,000

30+ days ago

Senior GRC Analyst

News Corporation

New York

Hybrid

USD 90,000 - 120,000

30+ days ago

Senior Analyst GRC - ISSO / Federal Compliance | Fully Remote US

HireVue

South Jordan

Remote

USD 80,000 - 120,000

30+ days ago