GRC Security Analyst

🕒 August 18

🇺🇸 United States – Remote

💵 $130k / year

⏰ Full Time

🟢 Junior

🟡 Mid-level

🔐 Security Analyst

👻 Ghost score 23%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Curana Health

Curana Health

1001 - 5000 employees

🏥 Healthcare

🤝 B2B

⚕️ Healthcare Insurance

Healthcare • B2B • Healthcare Insurance

Curana Health is a healthcare provider focused on senior primary care and on-site clinical services in skilled nursing and senior living communities. The company partners with operators, payors, and Medicare Advantage plans to implement value-based care models, offering physician-led care teams, medical director services, care coordination (including RPM and APCM), behavioral health, and palliative care. Curana emphasizes reducing hospital readmissions, falls, and polypharmacy while improving resident satisfaction through integrated, community-based care supported by technology and payor partnerships.

📋 Description

• Conduct security risk assessments and document risks, control gaps, and recommended next steps • Support improvements to Curana Health’s Governance, Risk, and Compliance program • Maintain security policies, standards, procedures, and guidelines • Coordinate audits and assessments, including evidence collection, control validation, documentation, and remediation tracking • Map security controls to HIPAA, SOC 2, NIST, CIS, CMS, and URAC frameworks • Support compliance monitoring and regulatory readiness initiatives • Maintain risk registers, issue logs, corrective action plans, compliance metrics, and governance documentation • Partner with technology teams to address security vulnerabilities, control deficiencies, and compliance gaps • Participate in risk intake, assessment, prioritization, escalation, and ongoing monitoring • Support third-party risk management and vendor security reviews • Collaborate with IT, Security, Privacy, Compliance, Legal, and business teams to identify risks and implement practical solutions

🎯 Requirements

• Bachelor’s degree in Information Security, Cybersecurity, Information Technology, Computer Science, Healthcare Informatics, or a related field; equivalent experience will also be considered • 2–5 years of experience in GRC, information security, risk management, audit, compliance, cybersecurity, or a related function • Experience supporting risk assessments, compliance reviews, audits, control testing, or governance activities • Experience working in a regulated industry or compliance-driven environment • Knowledge of the HIPAA Security Rule • Understanding of information security governance, risk management, and compliance concepts • Strong analytical, organizational, and problem-solving skills • Excellent written and verbal communication skills • Ability to manage multiple priorities and deadlines in a fast-paced environment • Healthcare industry experience preferred • Knowledge of the HIPAA Privacy Rule preferred • Experience with HIPAA, SOC 2, NIST Cybersecurity Framework, CIS Controls, CMS, URAC, HITRUST, or ISO 27001 preferred • Experience with third-party risk management programs preferred • Experience with GRC platforms such as ServiceNow GRC, Archer, OneTrust, AuditBoard, LogicGate, or similar solutions preferred • Experience supporting AI governance, emerging technology risk reviews, or security governance initiatives preferred • Must be able to work in the United States; the company is unable to provide visa sponsorship

🏖️ Benefits

• Health insurance • Paid time off • Paid holidays • 401(k) retirement savings plan • Wellness and support programs

Apply Now

Similar Jobs

🕒 August 11

SEC4U Cybersecurity

51 - 200

💼 Consulting

🏥 Healthcare

🛡️ Insurance

Analista de Segurança da Informação implementando SailPoint para clientes da SEC4U, empresa especializada em Identity Security. Administrando identidades, acessos, integrações e automações em projetos de Professional Services.

🗣️🇧🇷🇵🇹 Portuguese Required

🕒 August 7

Horizon Connect @ Wall BCBSNJ

2 - 10

⚕️ Healthcare Insurance

🏥 Healthcare

Cybersecurity Threat & Vulnerability Analyst managing vulnerability assessments, remediation, and threat intelligence. Supporting cybersecurity risk reduction for New Jersey’s leading health insurer.

🕒 August 7

Digit7

201 - 500

🛒 Retail

Security Analyst validating AI-driven investigations for 7AI’s agentic cybersecurity platform. Hunting threats, triaging incidents, and helping customers secure their environments.

🇺🇸 United States – Remote

💵 $120k - $140k / year

⏰ Full Time

🟢 Junior

🟡 Mid-level

🔐 Security Analyst

🚫👨‍🎓 No degree required

🕒 August 6

Ntiva, Inc.

501 - 1000

💼 Consulting

🏥 Healthcare

📦 Logistics

Security Analyst I monitoring alerts and responding to cyber threats for Ntiva, a managed services provider. Investigating incidents, securing accounts, documenting resolutions, and escalating complex cases.

🇺🇸 United States – Remote

💵 $49k - $70k / year

💰 Private equity on 2016-11

⏰ Full Time

🟢 Junior

🔐 Security Analyst

🚫👨‍🎓 No degree required

🕒 August 5

The Citation Group

1001 - 5000

📋 Compliance

☁️ SaaS

👥 HR Tech

Security Analyst delivering Cyber Essentials assessments and vulnerability scans for Citation Group, a compliance, HR, and health and safety services provider. Advising clients on remediation, patch management, and cyber resilience.