Avatar for Flatiron Health
Flatiron Health
Actively Hiring
Accelerating cancer research and improving patient care
  • B2B
  • Scale Stage
    Rapidly increasing operations
  • Top Investors
    This company has received a significant amount of investment from top investors
  • +1

GRC Senior Analyst (Risk Management)

Posted: 3 months ago
Visa Sponsorship

Not Available

RelocationAllowed
Hiring contact

Lily Li

About the job

Reimagine the infrastructure of cancer care within a community that values integrity, inspires growth, and is uniquely positioned to create a more modern, connected oncology ecosystem.

We’re looking for a Security GRC Senior Analyst to help us accomplish our mission to improve and extend lives by learning from the experience of every person with cancer. Are you ready to be the next changemaker in cancer care?

What You'll Do

As a member of the Governance, Risk and Compliance (GRC) team, you will develop solutions and processes that further the goals of the organization while ensuring the protection of our patients’ information. In addition, you'll also:

  • Provide oversight to the Security Risk Management function and help create / drive it's strategic roadmap
  • Create and deliver security metrics and risk indicators to our external stakeholders to help inform the business areas of their risk posture and enable the business to make informed risk decisions
  • Assist in maturing the security risk management strategy throughout the enterprise.
  • Maintain processes and playbooks related to security metrics reporting
  • Provide oversight for Security’s Plan of Action (POAM) and Exception process.
  • Perform risk based analysis on proposed projects, vendors, and issue resolution implementations
  • Lead Security related implementations and projects by coordinating with technical and non-technical teams to ensure success
  • Proactively identify and develop solutions to data security issues by working with multiple teams including Privacy, Legal, HR, Procurement and vendors
  • Effectively communicate security needs and business requirements to stakeholders
  • Serve as an advisor and internal consultant on identified issues, project plans or any other initiative that may have security implications
  • Test implemented controls and perform risk assessments based on established frameworks and Flatiron internal policies
  • Respond to client security risk assessment questionnaires by gathering information from across the organization as necessary
  • Promote security education and awareness across Flatiron

Who You Are

You're someone who takes pride in managing security risks within a dynamic enterprise; you’re passionate about identifying issues and working with the appropriate stakeholders to solve them. You're excited by the prospect of rolling up your sleeves to tackle meaningful problems each and every day. You’re a kind, passionate and collaborative problem-solver who seeks and gives candid feedback, and values the chance to make an important impact.

  • 6+ years relevant experience working in Security Risk Management, Security Metrics & Reporting, Third party risk assessment, SOC2/ISO/NIST 800-53 audit oversight, and Interpretation & Maintenance of Security Policies / Standards
  • Experience with reporting on key risk indicators and metrics to stakeholders
  • Experience working with security frameworks (HIPAA, PCI, NIST, ISO etc)
  • Proven ability to manage risk and projects in a face paced environment
  • Ability to communicate risk effectively to stakeholders within the organization.
  • Superior organizational skills and attention to detail
  • Excellent interpersonal, writing and communication skills
  • Ability to constantly prioritize and change or adapt to ambiguous situations
  • Passionate about healthcare and the fight against cancer

Extra Credit

  • You have HIPAA experience

Where you’ll work

In this hybrid role, you’ll have a defined work location that includes work from home and 3 office days set by you and your team. For more information on our approach to hybrid work, please visit the how we work website.

About the company

Flatiron Health company logo

Flatiron Health

Actively Hiring
Accelerating cancer research and improving patient care501-1000 Employees
  • B2B
  • Scale Stage
    Rapidly increasing operations
  • Top Investors
    This company has received a significant amount of investment from top investors
  • Valuation $1B+
    This company has a valuation of $1B or more
Learn more about Flatiron Health image

Funding

AMOUNT RAISED
$328M
FUNDED OVER
3 rounds
Rounds
C
$190,000,000
Series C - Feb 2016+2

Perks

Parental Leave
Generous parental leave (16 weeks for either parent). Child and caregiver travel benefits for new parents, plus back-up child care options. Transition back to work program following parental leave
Wellness
Weekly massages and manicures available onsite (employee funded). Weekly meditation sessions
Wellness
Flatiron-sponsored fitness classes
Flexible hours
Work/life autonomy via flexible work hours and flexible paid time off

Founders

Nat Turner
Co-Founder, CEO • 3 years • 12 years
New York City
image
Zach Weinberg
Co-Founder • 3 years • 12 years
New York City
image
View the team image

Similar Jobs

Pendo company logo
Pendo
Pendo is on a mission to improve the world’s experiences with software
Tanium company logo
Tanium
See, control and protect every endpoint, everywhere, with Converged Endpoint Management
Veeva Systems company logo
Veeva Systems
Enterprise cloud software for life sciences
MongoDB company logo
MongoDB
The most popular database for modern apps
Pendo company logo
Pendo
Pendo is on a mission to improve the world’s experiences with software
Pendo company logo
Pendo
Pendo is on a mission to improve the world’s experiences with software
Tanium company logo
Tanium
See, control and protect every endpoint, everywhere, with Converged Endpoint Management
Collibra company logo
Collibra
Self-service access to data assets for cross-functional collaborations & new opportunities