Senior GRC Analyst: Risk & Compliance Leader

Cone Health

Greensboro (NC)

On-site

USD 90,000 - 130,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Cone Health is seeking a Senior GRC Analyst to collaborate with process owners, internal and external auditors, and stakeholders to review, monitor, and resolve cybersecurity risk. You will support HITRUST, HIPAA and NIST CSF audits and attestations, respond to assessments, and ensure compliance with SOC2, ISO 27001, PCI-DSS, SOX, and other GRC activities.

The role involves implementing internal and external assessments, managing the lifecycle of audits, and contributing to the IT compliance

Qualifications

  • Bachelor's degree or equivalent experience is required.
  • 7+ years of experience is required.
  • CISM certification is required.

Responsibilities

  • Lead the execution and reporting of outcomes derived from Third Party Risk Assessments.
  • Manage the completion of risk and vulnerability assessments, validation testing, compliance reviews, and audits in accordance with NIST and HITRUST standards.
  • Manage and monitor a central repository for all security risks and audit evidence.
  • Maintain security standards, policies, and practices on an annual basis to meet organizational and regulatory requirements.
  • Manage a security awareness training program to educate associates about security compliance standards, risk management practices, and ethical behavior.
  • Collaborate with legal and compliance teams to ensure policies and security controls align with regulatory requirements.
  • Conduct internal audits to assess the effectiveness of security controls and identify areas for improvement.
  • Performs other duties as assigned.

Skills

Risk assessments
Audits
Security controls
Compliance programs
Security awareness

Education

Bachelor's degree or equivalent experience

Job description

Cone Health is seeking a Senior GRC Analyst to collaborate with process owners, internal and external auditors, and stakeholders to review, monitor, and resolve cybersecurity risk. You will support HITRUST, HIPAA and NIST CSF audits and attestations, respond to assessments, and ensure compliance with SOC2, ISO 27001, PCI-DSS, SOX, and other GRC activities.

The role involves implementing internal and external assessments, managing the lifecycle of audits, and contributing to the IT compliance

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Analyst: Cyber Risk & Compliance Expert
GRC Analyst: Cyber Risk & Compliance Expert

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000
Governance, Risk and Compliance Analyst Senior
Governance, Risk and Compliance Analyst Senior

Cone Health • Greensboro (NC)

On-site
USD 90,000 - 130,000
Senior GRC Manager: Risk, Audit & Compliance Lead | Flexible
Senior GRC Manager: Risk, Audit & Compliance Lead | Flexible

Harris Computer • Indiana (PA)

On-site
USD 130,000 - 150,000
Full benefits package
Vacation and personal days
Employee stock ownership
+2
Senior GRC Manager: Risk, Policy & Audit Leadership
Senior GRC Manager: Risk, Policy & Audit Leadership

Harris Computer • Washington

On-site
USD 130,000 - 150,000
We empower our employees to make a dif
We have an award-winning culture
We offer opportunity to learn
+2
Senior GRC Manager - Hands-on Security & Compliance
Senior GRC Manager - Hands-on Security & Compliance

Harris Computer • Illinois

On-site
USD 130,000 - 150,000
We empower our employees to make a dif
Award-winning culture
Opportunity to learn
+2
Governance Risk and Compliance Analyst Intermediate
Governance Risk and Compliance Analyst Intermediate

Cone Health • Greensboro (NC)

On-site
USD 110,000 - 140,000
Senior GRC Lead: Compliance Strategy & Risk Programs
Senior GRC Lead: Compliance Strategy & Risk Programs

Harris Computer • South Dakota

On-site
USD 130,000 - 150,000
Full benefits package
3 weeks vacation + 5 personal days
Employee stock ownership and RRSP
Senior GRC Lead: Risk, Policy & Audit
Senior GRC Lead: Risk, Policy & Audit

Harris Computer • Missouri

On-site
USD 130,000 - 150,000
Flexible work arrangements
Full benefits package
3 weeks vacation + 5 personal days
+2
Senior GRC Lead — Build Compliance that Drives Confidence
Senior GRC Lead — Build Compliance that Drives Confidence

ClearData Networks, Inc. in • Raleigh (NC)

On-site
USD 130,000 - 170,000
Opportunity to learn
Vacation + personal days
Employee stock ownership
+2
GRC Analyst: Elevate Security, Compliance & Risk
GRC Analyst: Elevate Security, Compliance & Risk

Visa Hunt • United States

On-site
USD 81,000 - 138,000