Rightway · 4 hours ago
Senior Security Analyst
Rightway Healthcare is looking for a Senior Security GRC Analyst ready to take their experience to the next level. The role involves owning key deliverables that support security and compliance programs, customer assurance, vendor risk reviews, and governance activities, particularly in emerging areas of AI risk and governance.
HealthcareHealth CareMedical
Responsibilities
Coordinate and execute recurring GRC tasks such as quarterly access reviews, audit evidence collection, and risk register reconciliation
Document and track completion of control activities and escalate issues where needed
Assist with internal and external audits, ensuring timely and complete evidence collection and review
Collaborate with Sales, Legal, and Product teams to lead responses for customer security questionnaires and RFPs, progressively owning more complex requests as your experience deepens
Maintain and continuously improve a centralized repository of commonly requested security documentation and artifacts (e.g., SOC 2, SIG, CAIQ)
Work closely with a broad array of business leaders to conduct initial and periodic vendor risk assessments, ensuring that third parties meet Rightway's security and compliance standards
Track and follow up on remediation plans and risk treatment for vendors posing unacceptable risk
Enable and support automation and optimization of the vendor risk assessment lifecycle using both AI and traditional tooling
Support the implementation and operationalization of AI risk and governance controls in alignment with ISO/IEC 42001 (AI Management System) and emerging regulatory guidance e.g., CAIA (Colorado AI Act)
Monitor AI systems for compliance with ethical and legal standards
Qualification
Required
3-5 years of experience in information security, GRC, or related disciplines
Familiarity with security compliance frameworks and regulation (e.g., SOC 2, ISO 27001, NIST, HIPAA)
Experience responding to security questionnaires and customer due diligence requests
Experience performing vendor security reviews and risk assessments
Strong organizational skills and the ability to manage multiple tasks and deadlines simultaneously
Passionate advocate for governance, risk, and compliance, believing that these are not merely check box activities, but vital tools that significantly improve security posture and protect the organization
Interest in emerging technologies and willingness to develop subject matter expertise in AI risk and compliance
Company
Rightway
Rightway is a health technology company that is simplifying the healthcare experience for clients and members.
H1B Sponsorship
Rightway has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (2)
2024 (3)
2022 (1)
2021 (2)
Funding
Current Stage
Late StageTotal Funding
$238.75MKey Investors
Khosla VenturesThrive CapitalTiger Global Management
2024-03-29Series Unknown· $108.75M
2021-03-30Series C· $100M
2019-11-21Series B· $20M
Recent News
2025-12-11
Company data provided by crunchbase