Senior Engineer, Governance, Risk & Compliance

Job not on LinkedIn

🔥 1 minute ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of NextGen Healthcare

NextGen Healthcare

1001 - 5000 employees

Founded 1998

🏥 Healthcare

💼 Consulting

⚕️ Healthcare Insurance

💰 Venture Round on 2015-02

Healthcare • Consulting • Healthcare Insurance

NextGen Healthcare is a company that provides integrated health IT solutions to ambulatory practices. Their services include electronic health records (EHR), practice management, interoperability, patient engagement, and telehealth solutions. They aim to enhance the patient and provider experience through innovative technologies such as AI-driven workflows and mobile solutions. NextGen Healthcare also offers tailored solutions for various specialties and focuses on improving clinical and financial outcomes for their clients. They support practices of all sizes, from small offices to large enterprises, and emphasize the importance of interoperability and data exchange to enhance healthcare delivery.

📋 Description

• Develop solutions using GRC platforms, security technologies, and automation to support Information Security and GRC initiatives • Administer enterprise GRC platforms and supporting technologies, including TPRM, Risk Register, Privacy Management, Security Awareness, Identity Governance, Business Continuity, and AI Governance • Configure and maintain workflows, forms, questionnaires, dashboards, control libraries, evidence management, and reporting capabilities • Perform platform administration, upgrades, testing, user provisioning, troubleshooting, release validation, and technical support • Support TPRM platform configuration, user support, workflow enhancements, issue resolution, testing, and release validation • Configure and administer Identity Governance workflows, access certification campaigns, access reviews, remediation tracking, and governance reporting • Administer phishing tools and security awareness technologies, including simulations, training campaigns, completion tracking, and awareness reporting • Collect and automate operational metrics and develop CISO dashboards, executive reporting, KPI/KRI metrics, and recurring reports • Configure workflow automation to streamline processes and reduce manual effort • Integrate GRC platforms with ServiceNow, IAM, CMDB, ITSM, HR systems, vulnerability management, security tools, and APIs • Support audit and compliance platforms through configuration, workflow enhancements, reporting, issue resolution, testing, and release validation • Configure and administer PIA, DPIA, privacy workflows, dashboards, and reporting • Configure and support Business Continuity and Disaster Recovery technologies, including BIA workflows, testing schedules, resilience dashboards, remediation tracking, and evidence management • Configure and support AI Governance technologies, including AI risk assessment workflows, dashboards, automation, and platform enhancements • Collaborate with Information Security, Enterprise Applications, Engineering, Infrastructure, Privacy, Internal Audit, Enterprise Risk, Compliance, and business stakeholders • Support customer security assessments and HITRUST, SOC 2, ISO 27001, HIPAA, PCI DSS, and other compliance initiatives • Create and maintain technical documentation, SOPs, platform configuration guides, and knowledge articles • Identify opportunities to optimize GRC technologies, enhance automation, improve platform utilization, and recommend operational improvements • Stay current with GRC technologies, cybersecurity regulations, industry frameworks, and emerging best practices, including AI governance

🎯 Requirements

• Bachelor's Degree in Computer Science or related discipline or advanced degree, or equivalent combination of education and experience • 4–6 years of relevant experience or advanced degree • Experience administering, configuring, and supporting GRC platforms, security technologies, and workflow automation solutions • Experience with phishing campaigns, Identity Governance, IAM, PAM, MFA, RBAC, SSO, TPRM, Risk Register, Privacy Management, workflow automation, dashboards, reporting, vulnerability management, and related GRC technologies • Experience with one or more frameworks such as COSO, NIST CSF, RMF, ISO, COBIT, HITRUST, or similar • Experience with HIPAA, SOX, HITRUST, PCI, SOC 2, or GRC programs • Experience working with IT partners and familiarity with software engineering, enterprise applications, infrastructure, networking, service desk, desktop support, IAM, security operations, and enterprise technology tools • Information security or cybersecurity certification such as CISA, CISSP, CISM, or CRISC, or ability to acquire certification within 18 months • HITRUST Framework and CSF certification knowledge • Knowledge of GRC, information security, cybersecurity principles, phishing campaigns, security awareness, risk assessments, security frameworks, controls, regulations, data protection, TPRM, audit and compliance, privacy management, business continuity, AI governance, workflow automation, and enterprise GRC platforms • Knowledge of IAM, PAM, MFA, RBAC, SSO, DLP, ServiceNow, CMDB, ITSM, vulnerability management, DR/BCP, backups, tabletop exercises, encryption, networking, infrastructure, Azure, AWS, Google Cloud, Active Directory, platform integrations, and enterprise AI platforms • Skill in GRC platform administration, workflow automation, platform configuration, dashboard and reporting development, technical documentation, and basic scripting or automation • Ability to troubleshoot platform issues, automate manual processes, prioritize workload, multitask, and meet deadlines

🏖️ Benefits

• Equal opportunity employer • Inclusive environment committed to diversity

Apply Now

Similar Jobs

🕒 4 days ago

Akamai Technologies

5001 - 10000

🔒 Cybersecurity

Manager SOX Compliance improving ITGC compliance programs at Akamai. Collaborating with finance, auditors, and application owners to secure financial reporting integrity.

🇮🇳 India – Remote

💰 Post-IPO Equity on 2001-07

⏰ Full Time

🟡 Mid-level

🟠 Senior

🚔 Compliance

🕒 5 days ago

Syneos Health

10,000+ employees

🏥 Healthcare

💼 Consulting

📦 Logistics

Senior Regulatory Associate preparing and submitting IND applications in EU, APAC, and Gulf countries. Collaborating with cross-functional teams and ensuring regulatory compliance.

🕒 6 days ago

Convatec

5001 - 10000

🏥 Healthcare

💼 Consulting

🍽️ Food & Beverage

Solution Owner managing the lifecycle of Quality Management Systems for Convatec. Collaborating with QA and IT to ensure system integrity and regulatory compliance.

🕒 July 27

PST.AG

51 - 200

🔌 API

📋 Compliance

🤝 B2B

Regulation Manager responsible for overseeing international laws and trade regulations at PST.AG. Collaborating with teams to ensure compliance and effective data management.

🕒 July 24

Parexel

10,000+ employees

💼 Consulting

🏥 Healthcare

📦 Logistics

Senior Manager in Regulatory Affairs at Parexel leading teams and providing regulatory guidance for clinical trials. Extensive experience in EU Clinical Trials Regulation (EU CTR) and client consultancy.