Product Security Analyst establishing risk management across CHG Healthcare's multi-brand portfolio. Leading data classification initiatives and reporting on security risks.
Responsibilities
Lead data classification initiatives across CHG's systems, ensuring proper handling of sensitive healthcare data
Establish and manage formal risk acceptance processes with business teams, facilitating informed security decisions
Develop and deliver monthly executive security risk reports with metrics and trending analysis
Leverage AI tools to analyze security data, identify patterns, and generate actionable insights at scale
Support roadmap deliverables focused on building risk management and governance capabilities
Requirements
Strong understanding of information security principles, risk assessment methodologies, and data classification
Experience developing and presenting security metrics and reports to executive audiences
Excellent analytical skills to synthesize complex information into clear recommendations
Ability to creatively use AI tools to enhance analysis, reporting, and communication workflows
Strong stakeholder management and communication skills across technical and business teams
3+ years of experience in security analysis, risk management, or GRC (Governance, Risk, and Compliance) roles
Bachelor's degree in Information Security, Risk Management, Business Administration, or related field, or equivalent work experience
Preferred: Experience in healthcare or highly regulated industries
Security or risk management certifications such as CISSP, CISM, CRISC, or CGRC
Knowledge of HIPAA, SOC 2, ISO 27001, and other compliance frameworks
Experience with GRC platforms (ServiceNow GRC, Archer, LogicManager, etc.)
Benefits
401(k) retirement plan with company match
Traditional healthcare benefits such as medical and dental coverage, and some unique benefits like onsite health centers, corporate wellness programs, and free behavioral health appointments.
Flexible work schedules - including work-from-home options available
Recognition programs with rewards including trips, cash, and paid time off
Family-friendly benefits including paid parental leave, fertility coverage, adoption assistance, and marriage counseling
Tailored training resources including free LinkedIn learning courses
Volunteer time off and employee-driven matching grants
Senior Threat Intelligence Analyst working with Bupa's cybersecurity team. Focused on threat management and defensive strategies to enhance cyber security posture.
Senior Information Security Analyst at Field Nation leading SOC 2 and ISO 27001 compliance programs. Collaborating with teams to embed security and leverage AI in GRC workflows.
Analista de Ciberseguridad en CRG Solutions responsable de monitorear amenazas y gestionar vulnerabilidades en la organización. Identificación de riesgos y mejora continua de la postura de seguridad.
Compliance & Information Security Analyst at beqom managing GRC and TPRM functions. Overseeing client governance, risk, and compliance requests, and vendor due diligence at a SaaS company.
Senior Technical Expert in Cyber Defense Center at ZEISS analyzing global cyber threats. Collaborating with SOC, CIRT, and ensuring proactive defense strategies.
Information Security Analyst focusing on vulnerability research and data analysis at Flexera. Involves analyzing, verifying vulnerabilities, and maintaining high - quality content standards.
Oversee the testing lifecycle and provide cyber security solutions at Xcel Energy. Engage in various testing techniques and collaborate with teams to enhance quality practices.
Security Analyst II role at Deepwatch focusing on incident handling and cybersecurity analysis. Working with a team to improve security posture and customer experience in a hybrid environment.
Information Security Analyst II at West Bend handling security projects and collaboration with IT teams. Supporting security incidents and enhancing organizational information security policies.