CarepathRx · 6 hours ago
Information Security Compliance Analyst
Maximize your interview chances
DeliveryHealth Care
No H1B
Insider Connection @CarepathRx
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Support and maintain compliance initiatives for frameworks such as NIST CSF, HITRUST, and other relevant standards.
Assist in the development, implementation, and refinement of policies, procedures, and controls to meet regulatory and business requirements.
Prepare and facilitate audits, certifications, and assessments, serving as a liaison between internal teams and external auditors.
Conduct risk assessments to identify, analyze, and mitigate information security risks across the organization.
Monitor and manage risks associated with third-party vendors, ensuring alignment with organizational policies and security standards.
Maintain and update risk management documentation, including risk registers and mitigation plans.
Assist in developing and maintaining incident response and disaster recovery plans.
Participate in testing and evaluation of incident response and disaster recovery exercises, ensuring lessons learned are documented and addressed.
Partner with business units, IT teams, and legal to ensure compliance with applicable laws, regulations, and contractual obligations.
Educate and train employees on security policies, standards, and best practices.
Create and present reports to leadership on compliance and risk management activities.
Monitor changes in regulatory and compliance landscapes to ensure the organization stays ahead of emerging requirements.
Identify areas of improvement within existing security and compliance processes and propose innovative solutions.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Bachelor’s degree in Information Security, Computer Science, or a related field, or equivalent experience.
3+ years of experience in information security, compliance, or risk management roles.
Knowledge of compliance frameworks, including NIST CSF, HITRUST, or similar standards.
Familiarity with risk assessment methodologies and tools.
Experience supporting audits, assessments, and certification efforts.
Relevant certifications such as CISSP, CISA, CRISC, HITRUST CCSFP, or ISO 27001.
Excellent analytical, organizational, and problem-solving skills.
Strong written and verbal communication skills, with the ability to convey technical concepts to diverse audiences.
Company
CarepathRx
CarepathRx is transforming pharmacy care delivery for health systems and hospitals.
Funding
Current Stage
Late StageTotal Funding
unknownKey Investors
EvernorthUPMC
2023-06-01Corporate Round
2020-12-01Corporate Round
Recent News
EIN Presswire
2024-12-03
2023-07-21
2023-06-06
Company data provided by crunchbase