Enable job alerts via email!

Third Party Risk Analyst

Fortified Health Security

United States

Remote

USD 85,000 - 90,000

Full time

13 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

Fortified Health Security is seeking a Third Party Risk Analyst to manage client relationships and ensure compliance with information security regulations in healthcare. The ideal candidate will have knowledge of various risk assessment frameworks and demonstrate strong writing and project management skills. This role requires regular interaction with clients and vendors, ensuring timely service delivery and meticulous documentation of assessments.

Benefits

Medical insurance
Vision insurance
401(k)
Paid paternity leave
Paid maternity leave

Qualifications

  • 3+ years experience in Information Security Risk Assessment with focus in Healthcare preferred.
  • Experience with compliance-based risk assessments related to HIPAA and other regulations.
  • Security certification such as CISSP, CISM, or similar preferred.

Responsibilities

  • Manage client TPRM services ensuring communication flow and timely deliverables.
  • Document results of third-party risk assessments and write reports.
  • Collaborate with clients and vendors regarding TPRM assessments.

Skills

Information Security Risk Assessment
Project Management
Written Communication

Education

Bachelor's degree in CS / MIS

Tools

HIPAA
NIST Cybersecurity Framework

Job description

Join to apply for the Third Party Risk Analyst role at Fortified Health Security

Join to apply for the Third Party Risk Analyst role at Fortified Health Security

Direct message the job poster from Fortified Health Security

Under the general direction of the Director of Third-Party Risk Management (TPRM), the TPRM Analyst is responsible for ensuring that TPRM assignments are successfully processed and delivered to our clients. This position requires substantial knowledge of information security frameworks, standards, laws, regulations, and protocols relevant to the healthcare industry. The role includes responsibilities in project management; assessing risks related to information security, third-parties, and regulatory compliance; documentation; report writing, and communication with vendors and clients.

Essential Job Functions

The following duties are normal for this position. The omission of specific statements of duties does not exclude them from being expected of this position if the work is similar, related, or a logical assignment for this position. Other duties may be required.

  • Project Management of client TPRM services ensuring proper communication flow, leveled expectations and on time deliverables.
  • Maintain working knowledge of Healthcare security/compliance federal, state laws/regulations and third-party standards; including but not limited to HIPAA, HITECH, and NIST.
  • Collaborate directly with TPRM clients regarding service delivery, escalation needs, issues, and client needs. Lead routine TPRM Service update calls with client. Prepare agendas for meetings and document key and relevant meeting outcomes. Exceptional written and verbal communication skills are required.
  • Engage and communicate with vendors to guide and assist them through the completion of TPRM assessment questionnaires.
  • Ensure timely delivery of TPRM vendor assessment reports, monthly status reports, and other service deliverables.
  • Document results of third-party risk assessments. Strong experience with risk-based report writing (e.g., documentation of assessment findings, recommendations, executive-level summaries) is required.
  • Frequent written communications with clients and third parties related to TPRM Service delivery. Exceptional writing skills are required.

Knowledge & Skills

Education & Experience

  • Bachelor's degree in CS / MIS or equivalent experience preferred
  • 3+ year(s) experience in the following related areas (experience in all areas below is NOT required):
  • Information Security Risk Assessment with focus in Healthcare preferred.
  • Remediation and Corrective Action Plan development and implementation.
  • Potential and emerging threats, vulnerabilities, and techniques used to control such as technical, physical and administrative controls.
  • Security Standards, Architectures, Frameworks and Best Practices such as ISSA, ISO27001/27002, NIST Cybersecurity, and COBIT.
  • Experience with compliance-based risk assessments related to International, Federal and State regulatory compliance requirements such as HIPAA, PCI DSS, and GDPR.

Special Skills & Knowledge

  • Conceptual understanding of risks of data at rest and in transit.
  • Conceptual understanding of encryption technologies
  • Conceptual understanding of network connectivity requirements for solutions to function within an organization, and network connectivity requirements associated with vendor support and ongoing update requirements.
  • Conceptual understanding of device update processes (operating systems, firmware, etc.)
  • Conceptual understanding of physical access risks and remote access risks
  • Conceptual understanding of internet-facing risks (patch vulnerabilities, application vulnerabilities, end of support software version deployments, etc.)
  • Security certification such as HITRUST, CISSP, CISM, CISA, CEH, GIAC, CHP, CHPS, and third-party focus preferred.

Requirements

Supervisory Responsibility

Working Conditions & Travel Requirements

  • Remote
  • Travel as needed.

Fortified Health Security is an Equal Opportunity Employer. In compliance with the Americans with Disabilities Act, Fortified Health Security will provide reasonable accommodations to qualified individuals with disabilities.If a reasonable accommodation is needed to perform this position, you need to inform Fortified Health Security People and Culture Team of such request. Signatures below indicate the receipt and review of this job description by the associate assigned to the position and the People and Culture Team.

Seniority level
  • Seniority level
    Associate
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Consulting
  • Industries
    Computer and Network Security

Referrals increase your chances of interviewing at Fortified Health Security by 2x

Inferred from the description for this job

Vision insurance

Medical insurance

401(k)

Paid paternity leave

Paid maternity leave

Get notified when a new job is posted.

Sign in to set job alerts for “Risk Analyst” roles.

Philadelphia, PA $85,000.00-$90,000.00 1 week ago

United States $102,000.00-$125,000.00 2 weeks ago

Internal Audit Financial Crimes Compliance Analyst
Consultant - Chief Risk Officer, Investments (Fractional/Contract Role)
VP/Director, Fintech Third-Party Risk Manager
Associate Liquidity Risk Manager, Prime Brokerage

United States $120,000.00-$135,000.00 2 weeks ago

Risk Advisory Manager (Entry Level - Work from Home)
Financial Compliance Analyst, 4 mth contract, remote, in EST or CST time zones, 28 hr
Senior Analyst, Risk Advisory, Production eDiscovery Specialist

King of Prussia, PA $200,000.00-$250,000.00 3 weeks ago

Manager, Risk Model and System Validation, US

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Third Party Risk Management Analyst III

American Red Cross

Portland

Remote

USD 85,000 - 138,000

Yesterday
Be an early applicant

Third Party Risk Management Analyst III

Davita Inc.

Philadelphia

Remote

USD 85,000 - 138,000

Yesterday
Be an early applicant

Third Party Risk Management Analyst III

Davita Inc.

Manchester

Remote

USD 85,000 - 138,000

Yesterday
Be an early applicant

Third Party Risk Management Analyst III

Davita Inc.

Charlotte

Remote

USD 85,000 - 138,000

Yesterday
Be an early applicant

Third Party Risk Management Analyst III

American Red Cross

South Carolina

Remote

USD 85,000 - 138,000

8 days ago

Third Party Risk Management Analyst III

American Red Cross

Missouri

Remote

USD 85,000 - 138,000

8 days ago

Third Party Risk Management Analyst III

American Red Cross

Arkansas

Remote

USD 85,000 - 138,000

8 days ago

Third Party Risk Management Analyst III

American Red Cross

New Hampshire

Remote

USD 85,000 - 138,000

8 days ago

Third Party Risk Management Analyst III

Davita Inc.

Louisville

Remote

USD 85,000 - 138,000

Yesterday
Be an early applicant