
InfoSec GRC Analyst
Posted 11 hours ago

Posted 11 hours ago
This is a fully remote position, open to applicants in United States.
• Evaluate, implement, oversee, and document security measures that support the information security strategy and compliance obligations of ExamWorks and its subsidiaries.
• Promote a robust security program that encompasses system-wide security assessments, intrusion and vulnerability detection, standards and testing, risk assessment, awareness and training, along with the development of policies, standards, and procedures.
• Coordinate HITRUST and SOC2 audit engagements, including data and artifact collection, exception remediation, and ongoing monitoring.
• Address client assessments and respond to RFPs.
• Perform vendor risk assessments and conduct follow-up assessments.
• Engage in or lead cross-training sessions with the IT Security team regarding the management and configuration of security tools and technical controls.
• Bachelor’s Degree in Computer Science or a related field.
• Five years of experience in IT security, risk management, compliance, and auditing.
• Expert knowledge and experience with compliance and security framework standards, including SOX, PCI, SOC, NIST, ISO 27001, HITRUST, HIPAA, and HITECH.
• Proven experience in coordinating compliance audit processes and IT security risk assessment programs.
• Ability to clearly articulate general IT security policies, processes, and technical controls.
• Capability to provide insights into controls design, implementation, and remediation of deficiencies.
• Strong written and verbal communication skills.
• Availability to work a standard schedule of Monday to Friday during business hours.
• Willingness to travel up to 10% of the time.
• Medical insurance.
• Vision insurance.
• Dental insurance.
• Paid time off.
• 401k plan.
• Competitive benefits package.
• Option to work from home.
AAA
Muon Space
Nestle
Get handpicked remote jobs straight to your inbox weekly.