HITRUST Risk & Controls Analyst IT - Remote

Overview

Remote
On Site
USD 68,700.00 - 102,700.00 per year
Full Time

Skills

Information security governance
Policies and procedures
System security
Risk assessment
Technical drafting
Request for proposal
Testing
Auditing
Computer science
Finance
Science
Information security
IT risk
Analytical skill
Critical thinking
Multitasking
Management
Governance
Regulatory Compliance
Payment card industry
HIPAA
System on a chip
Metrics
Writing
Presentations
Health care
System integration testing
FOCUS
Reporting
Leadership
Information Technology
Law

Job Details

Our work matters. We help people get the medicine they need to feel better and live well. We do not lose sight of that. It fuels our passion and drives every decision we make.

Job Posting Title

HITRUST Risk & Controls Analyst IT - Remote
Job Description

The Risk & Controls Analyst is responsible for executing processes that ensure IT's compliance with regulatory, industry and client security requirements. This role is responsible for working with cross-functional teams on the day to day operational activities needed to support the Security Governance Risk and Compliance program.

Responsibilities
  • Update and publish organization wide security standards, policies and procedures
  • Test and collect evidence that controls are designed and operating effectively, including evidence needed to verify compliance to security requirements to HITRUST, SOC 2, HIPAA, and client contracts
  • Collect metrics to monitor risk and compliance status, assist in vendor and system security risk assessments, including drafting responses to client RFP and assessment requests
  • Work with IT to coordinate audit testing and track audit remediation
  • Other duties as assigned


Minimum Qualifications
  • Bachelor's degree in an analytical discipline such as Computer Science, Finance, or Sciences or related area of study, or equivalent combination of education and/or related work experience; HS diploma or GED is required
  • 2 years of experience in Information Security, Information Technology, Risk Management
  • Must be eligible to work in the United States without need for work visa or residency sponsorship


Additional Qualifications
  • Ability to conduct meetings and give presentations
  • Good analytical and critical thinking skills
  • Ability to multi-task and manage multiple priorities
  • Knowledge of Governance, Risk and Compliance area topics
  • Basic understanding of regulatory and/or compliance requirements and frameworks (PCI, HIPAA, SOC1, SOC2, HITRUST, NIST, etc.)
  • Basic working knowledge of security solutions and controls


Preferred Qualifications
  • Experience producing metrics reporting, writing and presenting communications
  • Experience in a regulated industry, health care preferred


Minimum Physical Job Requirements
  • Ability to travel up to 5% of the time
  • Constantly required to sit, use hands to handle or feel, talk and hear
  • Frequently required to reach with hands and arms
  • Occasionally required to stand, walk and stoop, kneel, and crouch
  • Occasionally required to lift and/or move up to 10 pounds and occasionally lift and/or move up to 25 pounds
  • Specific vision abilities required by this job include close vision, distance vision, color vision, peripheral vision, depth perception and ability to adjust focus


Reporting Structure
  • Reports to a Lead or Manager in the Information Technology department


Potential pay for this position ranges from $68,700.00 - $102,700.00 based on experience and skills. Pay range may vary by 8% depending on applicant location.

To review our Benefits, Incentives and Additional Compensation, visit our Benefits Page and click on the "Benefits at a glance" button for more detail.

Prime Therapeutics LLC is an Equal Opportunity Employer. We encourage diverse candidates to apply and all qualified applicants will receive consideration for employment without regard to race, color, religion, sex (including pregnancy), sexual orientation, gender identity or expression, genetic information, marital status, family status, national origin, age, disability, veteran status, or any other legally protected class under federal, state, or local law.

Positions will be posted for a minimum of five consecutive workdays.
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.