Datavant · 3 days ago
Security Audit and Compliance Lead
Maximize your interview chances
BiopharmaClinical Trials
No H1B
Insider Connection @Datavant
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Lead and manage enterprise-level GRC audits and assessments from initiation to completion, ensuring timely delivery and adherence to project objectives, timelines and budgets.
Facilitate audit procedures and evidence gathering with external auditors and internal partners
Manage customer assessment and assurance activities
Communicate effectively and regularly with internal teams, external auditors, and customers
Perform technical assessments and documentation around key controls and security processes, as well as auditing IT processes, including working knowledge of key controls across a number of industry best practices
Liaise with customers and auditors, articulating control implementation, and describing considerations for applying security and compliance concepts to a technical environment.
Field and address requests for team support in collaboration with internal and external stakeholders.
Simplify security compliance requirements into clear technical control specifications and policies.
Continuously build and refine Datavant’s internal control framework and related documentation (e.g., policies, procedures, control narratives), and contribute to ongoing controls development and improvement
Actively identify and communicate control gaps; help the company develop and confirm remediation efforts
Stay apprised on industry standards and regulations for security and compliance
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
4+ years experience in security, audits, customer assurance, control assessments, or risk assessments based on security and privacy frameworks, such as SOC 2, ISO 27001, HIPAA, PCI, HITRUST, NIST 800-53, FedRAMP, etc.
Experience in performing technical assessments and documentation around key controls and security processes, as well as auditing IT processes, including working knowledge of key controls across a number of industry best practices
Excellent analytical, problem-solving, and project management skills
Strong communication and interpersonal skills, with the ability to work effectively with cross-functional teams, stakeholders, and customers
Detail-oriented and able to handle multiple priorities in a fast-paced environment
Ability to operate effectively in ambiguity
Preferred
One or more industry-recognized security, cloud, or audit professional certifications (e.g., CISA, CISM, CISSP, CCSP, etc.)
IT security and audit experience in the healthcare industry
Knowledge of, or experience working with, cloud-services environment (e.g. AWS) and cloud security controls
Company
Datavant
Datavant protects, connects, and delivers the world’s health data to power better decisions and advance human health.
Funding
Current Stage
Late StageTotal Funding
$80.5MKey Investors
Transformation Capital
2020-10-08Series B· $40M
2018-04-30Series Unknown· $40.5M
Leadership Team
Recent News
2024-04-15
Business Insider
2024-04-05
Company data provided by crunchbase