Post a job

Senior IT Risk Management Analyst - Healthcare

P

Location
United States
Base Salary
63k-165k USD
Providence

Job Description

This position is remote and can sit in the footprint of Providence in the states of AK, WA, OR, CA, TX and MT

.Taking care of patients includes securing their data and the devices used to deliver their care. By protecting patients’ data, we help ensure Providence maintains their trust while providing high-quality care. Committed to the highest cybersecurity standards, Providence Cybersecurity strives to deliver industry-leading protection of Providence’s data, information, and systems, so we can all safely and effectively improve the health and quality of life in our communities.

This position is an individual contributor on the Strategic Security Risk Management team, supporting enterprise and regional requirements. The Senior IT Risk Management Analyst works under minimal supervision and is expected to understand the organization's Cyber security strategy and substantially contribute to the development, maintenance and implementation of the overall system-wide Cyber security program needed for the protection of Providence St. Joseph Health. This includes managing significant bodies of work within the scope of the overall Cyber Security program. They demonstrate advanced project management security guidance and are able to track identified risks; establish a mitigation plan, work with risk owners through successful resolution.

Providence caregivers are not simply valued – they’re invaluable. Join our team at Enterprise Information Services and thrive in our culture of patient-focused, whole-person care built on understanding, commitment, and mutual respect. Your voice matters here, because we know that to inspire and retain the best people, we must empower them.

Required qualifications:

  • Bachelor's Degree in CS, MIS, Information Security, EE, Business or related field Or equivalent educ/experience
  • Upon hire: Certified Information Systems Security Professional, Certified Information Systems Auditor, or one of the following - Certified Information Security Manager (CISM), Certified Business Continuity Professional (CBCP), Master Business Continuity Professional (MBCP), PCI-ISA designation (Payment Card Industry-Internal Security Assessor), or PCIP (Payment Card Industry Professional)
  • 7 years Information Security, Healthcare preferred.
  • Demonstrated experience working independently and in collaboration with cross-functional teams.
  • Demonstrated experience providing in-depth analysis of complex issues which are then presented to cross-functional teams.
  • Demonstrated experience in service delivery, process definition, and basic system development.
  • Hands-on experience with security risk management practices.

Preferred qualifications:

  • Master's Degree in CS, MIS, Information Security, EE, Business or related field.
  • Able to clearly communicate complex cybersecurity risks to both technical and non-technical audiences, both verbally and in written cybersecurity risk assessments.
  • Demonstrated experience using an enterprise GRC technology like RSA Archer, ServiceNow GRC/IRM, or other similar technology.
  • Healthcare Cybersecurity expertise: The senior information security analyst should possess healthcare cybersecurity expertise, with a breadth and depth of knowledge across security risk management and related domains.
  • Leadership skills: They must be a proven leader and have the ability to lead significant aspects of the system-wide information security program.
  • Thought leadership: The analyst should provide thought leadership in areas such as information security frameworks, business continuity management, reporting and metrics, security risk management, and more.
  • Tactical planning: They should be able to translate strategy into tactical plans and coordinate the work of a cross-functional team in a lead role.
  • Collaboration: The analyst needs to work collaboratively with various stakeholders, including project sponsors, regional information security officers, IT site directors, and project managers to assess, analyze, and develop information security-related business needs and requirements for potential projects/initiatives.
  • Experience in conducting risk assessments on applications, services and business processes.

The salary range listed for this position MIN: $51.16 to MAX: $82.36 per hour is based upon the primary work location Beaverton, OR. This position is remote. Salary range and offers are determined by internal pay equity and geographic cost of living differences. Salary range will vary from State and region. Salary max is limited to 75% range to continue to offer internal pay growth. We welcome open and transparent discussions on salary at Providence.

Salary Range by location:

NorCal (Napa, Sonoma) Min: $59.84, Max: $96.32

Southern California, NorCal (Humboldt) Alaska (Kodiak, Seward, Valdez) Min: $53.33, Max: $85.85

WA Puget Sound Oregon (Portland) Alaska (Anchorage) Min: $51.16, Max: $82.36

Oregon (Hood River, Medford, Seaside) Min: $47.70, Max: $76.78

Eastern Washington (Richland, Spokane, Walla Walla) Min: $45.53, Max: $73.29

Montana Min: $41.19, Max: $66.31

Texas Min: $39.02, Max: $62.82

Alaska Min: $51.16, Max $82.36

Why Join Providence?

Our best-in-class benefits are uniquely designed to support you and your family in staying well, growing professionally, and achieving financial security. We take care of you, so you can focus on delivering our Mission of caring for everyone, especially the most vulnerable in our communities.

Accepting a new position at another facility that is part of the Providence family of organizations may change your current benefits. Changes in benefits, including paid time-off, happen for various reasons. These reasons can include changes of Legal Employer, FTE, Union, location, time-off plan policies, availability of health and welfare benefit plan offerings, and other various reasons.

At Providence, our strength lies in Our Promise of “Know me, care for me, ease my way.” Working at our family of organizations means that regardless of your role, we’ll walk alongside you in your career, supporting you so you can support others. We provide best-in-class benefits and we foster an inclusive workplace where diversity is valued, and everyone is essential, heard and respected. Together, our 120,000 caregivers (all employees) serve in over 50 hospitals, over 1,000 clinics and a full range of health and social services across Alaska, California, Montana, New Mexico, Oregon, Texas and Washington. As a comprehensive health care organization, we are serving more people, advancing best practices and continuing our more than 100-year tradition of serving the poor and vulnerable.

The amounts listed are the base pay range; additional compensation may be available for this role, such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities.

Check out our benefits page for more information about our Benefits and Rewards.

Advice from our career coach

As a Senior IT Risk Management Analyst at Providence, you will be responsible for contributing to the development, maintenance, and implementation of the organization's cybersecurity program. Here are some tips to help you stand out as an applicant:

  • Ensure you have a Bachelor's Degree in a related field or equivalent experience, along with relevant certifications like CISSP, CISA, CISM, CBCP, or PCIP.
  • Highlight your 7 years of Information Security experience, especially in healthcare.
  • Showcase your ability to work independently and collaborate with cross-functional teams.
  • Demonstrate your expertise in security risk management practices and in-depth analysis of complex issues.
  • Emphasize your hands-on experience with enterprise GRC technology like RSA Archer or ServiceNow GRC/IRM.
  • If you have a Master's Degree in a related field, make sure to mention it in your application.
  • Showcase your ability to clearly communicate cybersecurity risks to both technical and non-technical audiences.
  • Highlight any leadership experience you have, as well as your thought leadership in information security frameworks and risk management.
  • Be prepared to discuss your experience in conducting risk assessments on applications, services, and business processes.

Apply for this job

Expired?

Please let Providence know you found this job with RemoteJobs.org. This helps us grow!

RemoteJobs.org mascot