Senior Security Risk Management Consultant
Posted 2ds ago
Employment Information
Report this job
Job expired or something wrong with this job?
Job Description
Senior Security Risk Management Consultant driving enterprise-wide security risk management strategies. Partnering with stakeholders and senior leadership to assess and mitigate cybersecurity risks at Trinity Health.
Responsibilities:
- Serve as a strategic advisor, liaison, and subject matter expert in security risk management strategies.
- Partner with senior leadership and ensure alignment with organizational priorities and regulatory requirements.
- Lead complex risk assessments and guide risk treatment strategies.
- Strengthen overall risk posture through governance, metrics, and continuous improvement.
- Collaborate with stakeholders to ensure initiatives align with mission and values.
- Prepare and deliver required evidence for regulatory audits and investigations.
- Provide guidance and support in third-party and integrated risk management.
- Coordinate team participation in regulatory audits and investigations.
Requirements:
- Bachelor’s degree or an equivalent combination of education and experience.
- One or more security certifications: Certified Information Systems Security Professional (CISSP), International Social Security Association (ISSA), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC) Certified in Governance, Risk and Compliance (GRCP) or equivalent.
- Minimum of seven (7) years of progressive experience in information services including three (3) years working in cybersecurity governance, risk, and compliance (GRC).
- Minimum of three (3) years of progressively responsible experience in healthcare and/or other regulated industries.
- Strong knowledge of the HIPAA Security Rule and applicable industry security regulations.
- Proven knowledge of enterprise security principles and practices.
- Working knowledge of one or more information security regulations and/or frameworks - HIPAA, ISO 27001/2, FISMA, FIPS, HITRUST and NIST security.
- Experience with GRC platforms (e.g., ServiceNow GRC, RSA Archer, OneTrust, or similar) supporting risk and compliance programs.
- Excellent oral and written communication skills.
Benefits:
- Competitive salary
- Remote work options
- Professional development opportunities
- Health insurance
- Retirement plans


















