Start Date
Immediate
Expiry Date
12 Oct, 25
Salary
137400.0
Posted On
13 Jul, 25
Experience
0 year(s) or above
Remote Job
Yes
Telecommute
Yes
Sponsor Visa
No
Skills
Cross Functional Relationships, Clinical Operations, Risk Registers, It, Collaboration, Auditing, Information Security, Regulatory Compliance, Interpersonal Skills, Assessment Methodologies, Cisa, Information Technology, Business Operations, Hipaa, Computer Science
Industry
Financial Services
Job Description:
Join a world-class academic healthcare system, UChicago Medicine, as an Information Security Risk Analyst – Intermediate in our Information Security and Privacy GRC department. This position will be primarily a work-from-home opportunity with the requirement to come onsite as needed. You will need to be based in the greater Chicagoland area.
The Information Security Risk Analyst – Intermediate plays a critical role within the Governance, Risk and Compliance (GRC) team in executing and enhancing the organization’s information security risk management program. The analyst will independently conduct risk analysis on information systems, platforms, and processes in accordance with established regulatory requirements, organizational policies, and industry standards. The analyst will lead and contribute to the identification, assessment, documentation, mitigation, and communication of information security risks across the organization.
This position supports risk-driven decision-making by collaborating with stakeholders, managing risk treatment plans, and ensuring compliance with HIPAA, NIST, and other applicable healthcare cybersecurity regulations and frameworks. The analyst is expected to operate with moderate independence, assist in maturing risk workflows, and contribute to strategic improvements in governance, risk, and compliance activities.
The ideal candidate will have a strong understanding of security frameworks, risk assessment methodologies, risk assessments, risk registers, and the management of audit and penetration testing findings. The ideal candidate should be adept at monitoring regulatory developments while promoting a culture of risk awareness across the organization.
REQUIRED QUALIFICATIONS
Please refer the Job description for details