ironquill.tech/board

$ cat jobs/grc-analyst-remote-us-anesthesia-partners-1a6ac35528e4.json

GRC Analyst - Remote

us anesthesia partners·US·United States·mid
Apply on himalayas → Get AI match score →
Overview The GRC Analyst will play a critical role in strengthening the security posture of our growing organization by designing, implementing, and managing control and risk workflows, as well as performing third-party risk assessments. This position is pivotal in ensuring compliance with industry standards and regulations, identifying and mitigating risks, and supporting USAP’s overall security governance framework. At this time, US Anesthesia Partners does not hire candidates residing in California, Hawaii, or Alaska. The base pay estimate for this role is $80,900 - $137,600 annually. The final offer will depend on the skills, experience, and qualifications of the selected candidate. This range is for base pay only and does not include bonuses or other compensation. This position is eligible for an annual bonus. Bonuses are not guaranteed and are awarded based on company and individual performance. Job Highlights ESSENTIAL DUTIES AND RESPONSIBILITIES : ( The ideal candidate must be able to complete all physical requirements of the job with or without a reasonable accommodation) Leads the design, configuration, and governance of control frameworks and risk workflows within the GRC platform, ensuring alignment with organizational objectives and compliance requirements. Establishes and maintains control procedures, ensuring alignment with relevant frameworks (internal policy, HIPAA, HITRUST, PCI, SOC 2, NIST, and other applicable frameworks). Oversees the development and maintenance of control libraries, including control narratives, ownership assignments, testing frequency, and evidence requirements. Monitors and updates risk registers, ensuring accurate tracking, scoring, and prioritization of risks within the platform. Drives automation workflows to streamline control testing, evidence collection, attestations, and remediation processes. Tracks policy review cycles and ensures documentation remains current with regulatory and business changes. Leads and maintains