Security Analyst, GRC Job at Northwestern Memorial Healthcare, Chicago, IL

NzlkUkJXTHV5NDA0K3dCR20zWTlET3AxVEE9PQ==
  • Northwestern Memorial Healthcare
  • Chicago, IL

Job Description



At Northwestern Medicine, every patient interaction makes a difference in cultivating a positive workplace. This patient-first approach is what sets us apart as a leader in the healthcare industry. As an integral part of our team, you'll have the opportunity to join our quest for better healthcare, no matter where you work within the Northwestern Medicine system. At Northwestern Medicine, we pride ourselves on providing competitive benefits: from tuition reimbursement and loan forgiveness to 401(k) matching and lifecycle benefits, we take care of our employees. Ready to join our quest for better?

Job Description



The Security Analyst reflects the mission, vision, and values of NM, adheres to the organizations Code of Ethics and Corporate Compliance Program, and complies with all relevant policies, procedures, guidelines and all other regulatory and accreditation standards.

Responsibilities:

Perform third party risk management including cybersecurity risk assessments to ensure third party partners meet NM requirements.

· Collaborate with third party partners and internal departments to ensure NM security requirements are being adhered to.

· Examine third party contracts to ensure the accuracy of cybersecurity language and provisions.

· Perform annual third party partner cybersecurity assessments and create accompanying reports and audits.

· Participate in HIPAA, PCI and security assessments.

· Analyze archectual diagrams and recommend security measures to safeguard valuable information assets including third party solution diagrams.

· Perform risk assessments on cloud services, applications, servers, mobile devices, medical devices and IT resources.

· Perform annul security policy reviews to keep policies up to date with the changing technologoies and services.

· Follow up with IS teams to ensure risk assessments are updated in the GRC tracking tool.

· Perform daily operational tasks required for the department to protect NM’s assets. Tasks range from (but are not limited to):

o Respond to daily security tickets / requests

o On call rotation

· AA/EOE.

 

COMPETENCIES / PERFORMANCE EXPECTATIONS

Third party risk management proficiency

·Famaliarity of HIPAA Security and Privacy Rules

·Understanding of cybersecurity contract language

·Security operations experience

 PCI

QUA

Qualifications



Required:

  • Bachelors degree or equivalent work experience
  • Two or more years of professional IT experience, including Cyber Security
  • Working knowledge of the following subjects:
    • Network (protocols, topologies)
    • Security controls (proxies, IPS, IDS, Firewall and packet analyzers)
    • Systems (Windows, Linux/UNIX)
    • Software development (development / scripting langages)
    • Incident Response
    • Threat and Vulnerability Management
  • Experience and knowledge of at least two of the major security vendors relevant to the position.
  • Working knowledge of Security Standards/Controls specified under various IT governance and compliance models (NIST, HIPAA, PCI, ISO 27001&27002, ITIL).
  • Excellent problem solving skills
  • Demonstrated timely task completion involving solid organizational skills, task tracking, follow-up, and productive peer interaction.
  • Excellent verbal and written communication skills.

Preferred:

  • Certification or courses: Associate of (ISC)/CISSP, GSEC, GCWN, GCED or CEH a plus

Additional Information



Northwestern Medicine is an affirmative action/equal opportunity employer and does not discriminate in hiring or employment on the basis of age, sex, race, color, religion, national origin, gender identity, veteran status, disability, sexual orientation or any other protected status.

Job Tags

Full time, Contract work, Work experience placement,

Similar Jobs

System One

Software Engineer Sr - Contractor Job at System One

 ...Visa: USC/GC Position Tittle: Sr. Software Engineer (152968-1) Duration: Contract to Hire Primary Location: Pittsburgh, PA (Hybrid) Years of Experience: 10+ years applicable experience required ***For immediate consideration, you can email... 

Next Door & Window - Burr Ridge

Costco Brand Promoter Job at Next Door & Window - Burr Ridge

Costco Brand Promoter Looking for High Earning Potential and an Opportunity for Growth and Advancement? Join the NEXT Door & Window Costco Team and Earn a $250 Signing Bonus!About NEXT Door & WindowNEXT Door & Window has been serving Chicagoland homeowners for... 

Vanguard-IP

Electrical and/or Computer Engineering Associate VIP-19122 Job at Vanguard-IP

 ...Best Place to Work" in DC Business Journal. Collaborative work culture. REQUIREMENTS - Masters or PhD preferred in electrical engineering and/or computer engineering. - Stellar academic credentials. - Demonstrated technical chops in a needed area of expertise:... 

Carolina Therapy Services

Speech Language Pathologist- Ped-Full Time Job at Carolina Therapy Services

 ...Outpatient Pediatric Clinic - Speech Therapist (SLP) /Operation Manager CF's Welcome!! Student Loan Reimbursement Flexible Schedule - No Weekends Career Advancement Opportunities For more information, please call (***) ***-**** or email your... 

Personnel (of Mansfield Enterprises International),LLC

Full Desk Recruiter Job at Personnel (of Mansfield Enterprises International),LLC

This is an entry level Full Desk Recruiter role. No experience is necessary, just be coachable, eager to learn, and, most importantly, money...  ...at least four days out of the week. It is possible to take a remote day. Office is located in White Plains, NY. We're looking for...