Senior It Risk Analyst
Current- Executes third-party security assessments by coordinating with internal and external stakeholders, evaluating security, and developing a security assessment plan.
- Design continuous controls monitoring program utilizing GRC solution, dashboards, analytics, automation, and other supporting tools.
- Monitors existing risk and controls framework for emerging risks including evaluating applicability to the company and providing control recommendations to align with the company’s risk tolerance level.
- Identifies improvement opportunities and provides recommendations to further mature existing IT processes and controls to align with best practices including the use of automation and optimization.
- Supports coordination of internal and external audits with IT process owners and other key stakeholders including facilitating evidence collection and other requests from audit teams related to HIPAA, HITRUST, PCI, SOC.
- Prepares ongoing reports with specified metrics/key performance indicators related to compliance activities, audit results, remediation plans, and other compliance efforts and presents them to IT and executive.