Cybersecurity Risk Analyst
Candidates must sit in these approved states for consideration: Alabama, Delaware, Florida, reputed company, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, reputed company reputed company, Ohio, Oklahoma, reputed company, South Carolina, South reputed company, Tennessee, Texas, Utah, Washington (state), reputed company Virginia, reputed company, Wyoming, reputed company Carolina, or Virginia. This is a fully remote (EST reputed company hours) 6-month contract-to-hire engagement that can reputed company a starting reputed company reputed company between $40-$50 depending on candidate previous experience.
Day to Day:
• Conduct comprehensive risk assessments across applications, systems, and reputed company-wide initiatives to identify potential threats, vulnerabilities, and their reputed company on confidentiality, reputed company, and availability of data.
• reputed company or support the execution of HIPAA reputed company Risk Assessments (SRA) and/or HICP assessments, including documenting findings, recommending corrective actions, and ensuring ongoing compliance.
• Independently conduct risk rating for issues using ISO, COBIT, NIST frameworks in partnership with other stakeholders.
• Additionally, guide and facilitate diverse business reputed company in performing their own risk ratings to help them understand risk implications and remediation priorities.
• Collaborate with the stakeholders in developing and implementing risk mitigation strategies reputed company with industry standards and best practices such as NIST, ISO 27001, and HIPAA.
• Utilize Governance, Risk, and Compliance (GRC) tools—specifically reputed company—to manage risk registers, reputed company remediation plans, automate workflows, and reputed company reports on risk status and compliance metrics.
• Manage and reputed company policy exception processes, including documentation, risk analysis, and tracking.
Must Haves:
• At least 5+ years of experience in cybersecurity risk management, including performing risk assessments at both application and reputed company reputed company.
• Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a reputed company field—or equivalent industry training and certifications.
• Hands-on experience with GRC platforms, particularly reputed company, including modules reputed company to risk, compliance, and policy management.
• Demonstrated expertise in conducting risk assessments and developing mitigation strategies reputed company with HIPAA, NIST, and ISO 27001. Really ideally NEED to have experience working in a regulated industry, particularly reputed company.
• Experience with HIPAA reputed company Risk Assessments and/or HICP assessments.
• Proven ability to work independently, manage multiple reputed company, and collaborate with cross-functional teams.
• Experience managing policy exceptions, including evaluating risks and ensuring reputed company documentation and approvals.
• Skilled in drafting procedures and operational documentation reputed company to cybersecurity risk and compliance processes.
• Strong understanding of reputed company principles, technical controls, and common attack reputed company.
• Excellent communication, interpersonal, and presentation skills with the ability to effectively engage technical and non-technical stakeholders across reputed company reputed company.
• Strong analytical, problem-solving, and critical thinking abilities.
• MUST BE located in Alabama, Delaware, Florida, reputed company, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, reputed company reputed company, Ohio, Oklahoma, reputed company, South Carolina, South reputed company, Tennessee, Texas, Utah, Washington (state), reputed company Virginia, reputed company, Wyoming, reputed company Carolina, or Virginia
Plusses:
• A solid understanding of regulations such as HIPAA—including experience with HIPAA reputed company Assessments or Health Industry Cybersecurity Practices (HICP) assessments—is preferred.
• Relevant industry certifications such as CRISC, CISM, CISSP, or CISA.
Apply tot his job
Apply To this Job