IT Governance Risk Compliance Analyst Lead

 Posted 11 hours ago
     
 $96731.58 - $133K per year
  
10+ years experience
Apply Now

Please mention DailyRemote when applying

AI Summary

The Lead GRC Analyst is responsible for creating audit plans, conducting risk assessments, and tracking the resolution of negative findings. They also manage the ServiceNow IRM platform and maintain security control mappings across various frameworks.

Work From Home

Work From Home Work From Home, Indiana 46544

Healthcare Information Security departments must monitor risk every day. The Lead Governance Risk Compliance Analyst creates audit plans and methodologies, as well as conduct audits and risk assessments. This position requires the ability to analyze audit data, create reports, and track the resolution of negative audit findings.

WHO WE ARE
With 12 ministries and access points across Indiana and Illinois, Franciscan Health is one of the largest Catholic health care systems in the Midwest. Franciscan Health takes pride in hiring coworkers that provide compassionate, comprehensive care for our patients and the communities we serve.

WHAT YOU CAN EXPECT

  • Schedule and conduct internal and external audits and assessments.

  • Create audit reports; peer reviews audit reports written by GRC Analysts or other Senior GRC Analysts for accuracy, completeness and other criteria.

  • Create audit methodologies and templates used by the GRC Team to conduct audits and assessments.

  • Analyze audit data to identify risks and complex relationships between threats, controls and vulnerabilities.

  • Formulate prioritized action plans based on audit findings.

  • Track the resolution of negative audit findings and helps remediate findings where appropriate.

  • Understand how to translate compliance requirements into technology functions and how to translate compliance requirements into business impacts.

  • Create and review GRC policies, procedures, and standards.

  • Develop and deliver information security training, education and awareness content to Franciscan’s workforce.

  • Mentor GRC Analysts and Sr. Analysts.

  • Conduct vendor risk assessments, maintain vendor tiering, and review third party contracts for security requirements

  • ServiceNow Platform Ownership - Maintain workflows and control monitoring in ServiceNow IRM and provide metrics and reporting over remediation efforts

  • Maintain control mappings across NIST CSF 2.0, HITRUST, HIPPA, and other security frameworks


QUALIFICATIONS

  • Required Associate's Degree IT-related discipline (e.g. Computer Science, MIS, Information Security) or equivalent experience

  • Preferred Bachelor's Degree IT-related discipline (e.g. Computer Science, MIS, Information Security)

  • Preferred Certificate CISSP, SANS GIAC or other industry-recognized or vendor certification

  • 8 years Information security Required

  • 5 years Healthcare, audit or GRC Preferred

TRAVEL IS REQUIRED:

Never or Rarely

JOB RANGE:

IT Governance Risk Compliance Analyst Lead $96,731.58-$133,005.92

INCENTIVE:

EQUAL OPPORTUNITY EMPLOYER

It is the policy of Franciscan Alliance to provide equal employment to its employees and qualified applicants for employment as otherwise required by an applicable local, state or Federal law.

Franciscan Alliance reserves a Right of Conscience objection in the event local, state or Federal ordinances that violate its values and the free exercise of its religious rights.

Franciscan Alliance is committed to equal employment opportunity.

Franciscan provides eligible employees with comprehensive benefit offerings. Find an overview on the benefit section of our career site, jobs.franciscanhealth.org

Similar Jobs

See all Remote Legal jobs →

Personalize your Remote Job Search in 3 Easy Steps!

Discover remote opportunities in Compliance Analyst

Answer easy questions

Answer easy questions

200,000+ jobs across 15+ categories

Get your best job matches

Get your best job matches

Only hand-screened, legit jobs

Find a remote job faster

Find a remote job faster

No ads, scams, or junk

I was the first applicant for a remote marketing position that got listed on the company website the same day I applied. Had an interview within 48 hours!

Sarah J. — Sarah J. · Marketing Manager ★★★★★ Verified