Risk and Compliance Analyst
Core
Support the Security, Risk and Compliance department by managing documentation, responding to client inquiries and audits, and performing internal risk assessments for applications and infrastructure.
Role type
Risk and Compliance Analyst
Builds
Compliance documentation, risk assessment reports, and responses to client Request for Proposals (RFPs)
Domain
Healthcare / Information Technology Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Risk assessment, compliance documentation, policy management, stakeholder collaboration, technical information analysis, project management, root cause analysis
Preferred skills
Cybersecurity documentation, Internal Audit, Technology Governance, COSO/COBIT frameworks, HIPAA program knowledge
Technologies
Excel, Word, PowerPoint, flowcharting tools
Responsibilities
Lead department responses to prospective client Request for Proposals (RFPs) and control assessments; Perform internal risk assessments in conjunction with the HIPAA program; Draft and manage review of compliance documents and procedural policies; Collaborate with Subject Matter Experts to understand technical requirements and documentation needs; Identify root causes of risk, security, and compliance incidents and direct resources to resolve them
Seniority
Mid-level, hands-on IC