Job Details

ID #52398577
Estado Michigan
Ciudad Livonia
Full-time
Salario USD TBD TBD
Fuente Trinity Health
Showed 2024-08-27
Fecha 2024-08-28
Fecha tope 2024-10-27
Categoría Etcétera
Crear un currículum vítae

Security Risk Analyst (REMOTE)

Michigan, Livonia, 48150 Livonia USA

Vacancy caducado!

Employment Type:Full timeShift:Day ShiftDescription:Provides information security risk knowledge and serves as a specialist to identify, prioritize, and collaboratively mitigate cyber risk enterprise-wide. Candidate maintains the ability to be an analytical thinker, collaborative team player, an effective, dynamic communicator, and able to bridge the gap between business demands and cybersecurity requirements. Responsible for the following:

Plan, coordinate and conduct security risk assessments for information systems and third parties

Compose reports, assessments, and other documents to provide decision support on information security risks and controls for executives, system owners and management

Assess the likelihood and impact of adverse events and recommend effective controls and mitigations to management

Research, analyze and report on the cybersecurity risk of doing business with third parties

Facilitate the response and mitigation of third party security incidents

Support the continuous improvement and implementation of Information Security Policies, Standards, Processes, and Procedures

Contribute to the enhancement and implementation of the information security risks & controls library

Perform control assessments to determine if cybersecurity controls are effective and in compliance with applicable requirements

Establish and implement effective security awareness practices across the System, including training, phishing, and communications.

Keep pace with emerging technology, cyber threats, and industry trends around cybersecurity.

Assists and supports the Planning and Integration as well as Enterprise Information Security (EIS) Managers, Directors ensuring all projects and services meet Trinity Health Information Security and regulatory standards while delivering business requirements.

ESSENTIAL FUNCTIONS

Knows, understands, incorporates and demonstrates the Trinity Health (TH) Mission, Vision and Values in behaviors, practices and decisions.

Provides technical consultation and assistance in identifying, evaluating and documenting use of systems and other related services to ensure compliance with EIS policies.

Reviews various system and technical documents and applies security templates. Defines security configuration and operational standards for security systems and applications.

Interacts with vendors to ensure a cohesive client-vendor relationship that maintains and upholds services in the best interest of Trinity Health.

Contributes to the creation of department procedures, standards and documentation for all information security services. Utilizes excellent verbal and written communication skills.

Represents the EIS Director, when applicable, on EIS matters as well as serve as EIS liaison with RHM Security and Privacy Officials.

Participates in the development and promotion of Information Security information for general awareness.

Participates in site-specific meetings. Participates in the creation of the development and implementation of annual objectives and tactical plans to achieve strategic planning initiatives. Monitors or enforces security policies, procedures and standards to ensure conformance with TIS objectives.

Maintains a working knowledge of applicable Federal, State and local laws/regulations; the Trinity Health Integrity and Compliance Program and Code of Conduct; as well as other policies and procedures in order to ensure adherence in a manner that reflects honest, ethical and professional behavior.

MINIMUM QUALIFICATIONS

Bachelor’s degree or an equivalent combination of education and experience.

Minimum of three (3) years of progressive experience in Information Services including one (1) year in information security, including experience in compliance with federal and state security regulations

Certified Information Systems Security Professional (CISSP), International Social Security Association (ISSA), Certified Information Systems Auditor (CISA) or equivalent preferred.

Must possess a general understanding of enterprise security best practices relating to implementing and managing enterprise security solutions.

Working knowledge of one or more information security regulations and/or frameworks; i.e. HIPAA, ISO 27001/2, FISMA, FIPS, and NIST security.

Experience with administrative and technical assessments as well as enforcing organizational compliance.

Must be team oriented, supportive, and committed to excellence and possess high level of initiative and self-motivation with demonstrated work ethic.

Must be committed to continual personal and professional growth, possess a pro-active approach with a willingness to “go the extra mile” every time for the customer.

Ability to work under general direction, manage multiple priorities and to effectively adapt to rapidly changing technology and business needs with demonstrated ability to prioritize projects and work load.

A personal presence which is characterized by a sense of honesty, integrity and caring with the ability to inspire and motivate others to promote the philosophy, mission, vision, goals and values of Trinity Health.

PREFERRED SKILLS: Information security risk knowledge and serves as a specialist to identify, prioritize, and collaboratively mitigate cyber risk enterprise-wide. Candidate maintains the ability to be an analytical thinker, collaborative team player, an effective, dynamic communicator, and able to bridge the gap between business demands and cybersecurity requirements. Responsible for the following:

Plan, coordinate and conduct security risk assessments for information systems and third parties

Compose reports, assessments, and other documents to provide decision support on information security risks and controls for executives, system owners and management

Assess the likelihood and impact of adverse events and recommend effective controls and mitigations to management

Research, analyze and report on the cybersecurity risk of doing business with third parties

Facilitate the response and mitigation of third party security incidents

Support the continuous improvement and implementation of Information Security Policies, Standards, Processes, and Procedures

Contribute to the enhancement and implementation of the information security risks & controls library

Perform control assessments to determine if cybersecurity controls are effective and in compliance with applicable requirements

Establish and implement effective security awareness practices across the System, including training, phishing, and communications.

Keep pace with emerging technology, cyber threats, and industry trends around cybersecurity.

Assists and supports the Planning and Integration as well as Enterprise Information Security (EIS) Managers, Directors ensuring all projects and services meet Trinity Health Information Security and regulatory standards while delivering business requirements.

PHYSICAL AND MENTAL REQUIREMENTS AND WORKING CONDITIONS

Must be able to adapt to frequently changing work priorities, and be able to prioritize and balance the requirements of working with multiple members of the Enterprise Information Security team.

Must be able to communicate frequently, in person and over the phone, with people in a number of different locations on technical issues.

Manual dexterity is needed in order to operate a keyboard. Hearing is needed for extensive telephone and in person communication.

Our Commitment to Diversity and InclusionTrinity Health is one of the largest not-for-profit, Catholic healthcare systems in the nation. Built on the foundation of our Mission and Core Values, we integrate diversity, equity, and inclusion in all that we do. Our colleagues have different lived experiences, customs, abilities, and talents. Together, we become our best selves. A diverse and inclusive workforce provides the most accessible and equitable care for those we serve. Trinity Health is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or any other status protected by law.Our Commitment to Diversity and InclusionTrinity Health is a family of 115,000 colleagues and nearly 26,000 physicians and clinicians across 25 states. Because we serve diverse populations, our colleagues are trained to recognize the cultural beliefs, values, traditions, language preferences, and health practices of the communities that we serve and to apply that knowledge to produce positive health outcomes. We also recognize that each of us has a different way of thinking and perceiving our world and that these differences often lead to innovative solutions.Our dedication to diversity includes a unified workforce (through training and education, recruitment, retention, and development), commitment and accountability, communication, community partnerships, and supplier diversity.EOE including disability/veteran

Vacancy caducado!

Suscribir Reportar trabajo

Puestos de trabajo relacionados