Security Audit and Compliance Lead @ Datavant | Jobright.ai
JOBSarrow
RecommendedLiked
0
Applied
0
External
0
Security Audit and Compliance Lead jobs in Remote, United States
43 applicants
company-logo

Datavant · 3 days ago

Security Audit and Compliance Lead

ftfMaximize your interview chances
BiopharmaClinical Trials
badNo H1Bnote

Insider Connection @Datavant

Discover valuable connections within the company who might provide insights and potential referrals.
Get 3x more responses when you reach out via email instead of LinkedIn.

Responsibilities

Lead and manage enterprise-level GRC audits and assessments from initiation to completion, ensuring timely delivery and adherence to project objectives, timelines and budgets.
Facilitate audit procedures and evidence gathering with external auditors and internal partners
Manage customer assessment and assurance activities
Communicate effectively and regularly with internal teams, external auditors, and customers
Perform technical assessments and documentation around key controls and security processes, as well as auditing IT processes, including working knowledge of key controls across a number of industry best practices
Liaise with customers and auditors, articulating control implementation, and describing considerations for applying security and compliance concepts to a technical environment.
Field and address requests for team support in collaboration with internal and external stakeholders.
Simplify security compliance requirements into clear technical control specifications and policies.
Continuously build and refine Datavant’s internal control framework and related documentation (e.g., policies, procedures, control narratives), and contribute to ongoing controls development and improvement
Actively identify and communicate control gaps; help the company develop and confirm remediation efforts
Stay apprised on industry standards and regulations for security and compliance

Qualification

Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.

GRC auditsSecurity complianceRisk assessmentsSOC 2ISO 27001HIPAAPCIHITRUSTNIST 800-53FedRAMPTechnical assessmentsProject managementCISACISMCISSPCCSPAWSHandle ambiguity

Required

4+ years experience in security, audits, customer assurance, control assessments, or risk assessments based on security and privacy frameworks, such as SOC 2, ISO 27001, HIPAA, PCI, HITRUST, NIST 800-53, FedRAMP, etc.
Experience in performing technical assessments and documentation around key controls and security processes, as well as auditing IT processes, including working knowledge of key controls across a number of industry best practices
Excellent analytical, problem-solving, and project management skills
Strong communication and interpersonal skills, with the ability to work effectively with cross-functional teams, stakeholders, and customers
Detail-oriented and able to handle multiple priorities in a fast-paced environment
Ability to operate effectively in ambiguity

Preferred

One or more industry-recognized security, cloud, or audit professional certifications (e.g., CISA, CISM, CISSP, CCSP, etc.)
IT security and audit experience in the healthcare industry
Knowledge of, or experience working with, cloud-services environment (e.g. AWS) and cloud security controls

Company

Datavant

company-logo
Datavant protects, connects, and delivers the world’s health data to power better decisions and advance human health.

Funding

Current Stage
Late Stage
Total Funding
$80.5M
Key Investors
Transformation Capital
2020-10-08Series B· $40M
2018-04-30Series Unknown· $40.5M

Leadership Team

leader-logo
Alejandro Zamorano
Head of Life Science, Partnerships and Business Development
linkedin
leader-logo
Bob Borek
President and GM, Life Sciences, Ecosystem and Public Sector
linkedin
Company data provided by crunchbase
logo

Orion

Your AI Copilot