Security Risk and Compliance Analyst

Abarca Health
Aventura, FL, United States
Full-time
We are sorry. The job offer you are looking for is no longer available.

What you'll do

In a few words...

Abarca is igniting a revolution in healthcare with a Cloud First approach and a modern systems mentality. We built our company on the belief that smarter technology can redefine pharmacy benefits, but this journey continues with a focus on sustainability and expansion of our operations.

Our Infrastructure Operations team plays a crucial role in the success of Abarca Health by modernizing and optimizing our cloud infrastructure.

This team manages our system's architecture, ensuring efficient data processing and system stability. The Information Security team monitors, detects, investigates, and responds to potential threats while working towards IT Risk and Governance maturity and implementing preventative security measures and controls on a consistent basis.

As a Security Risk and Compliance Analyst, your role is essential in maintaining the security and compliance of our cloud-centric, modern systems.

You will support Risk, Audit, Legal, and Compliance activities related to Information Systems and Security. Additionally, you will contribute to planning for HITRUST maturity, promote sustainable practices, and support the expansion of our operations. What you'll do :

The fundamentals for the job...

  • Support the modernization and optimization of Security-related policies and procedures, aligning with corporate Risks, Audit, Legal, and Compliance needs.
  • Assist in the development and enhancement of security GRC processes.
  • Participate in vulnerability assessment efforts, adopting a Cloud First approach and adhering to the latest security standards for cloud environments.
  • Help with HITRUST certifications and support maturity in security and compliance endeavors.
  • Contribute to the management of the third-party risk program, ensuring vendor alignment with our principles.
  • Help audit access rights, prioritizing a Cloud First approach and modern systems.
  • Contribute to developing security requirements for new company initiatives, with an emphasis on sustainability and operation expansion.
  • Support the creation and review of all Security-related policies and procedures, integrating corporate Risks, Audit, Legal, and Compliance requirements into the Information Security Program.
  • Serve as a supportive liaison for the Compliance, Security, and Risk Management (CSRM) Committee.

What we expect of you :

The bold requirements...

  • Bachelor's Degree in Information Technology, Computer Science, or a related field (relevant work experience may be considered in lieu of a degree).
  • 3+ years of experience in Information Security roles.
  • Experience within Healthcare Compliance.
  • Familiarity with Internal Controls, Security Policies and Procedures, Action Planning, and Execution.
  • Understanding of the selection, implementation, and maintenance of security and compliance tools such as SIEM, vulnerability scanning, or identity management solutions.
  • Knowledge of qualitative and quantitative risk management approaches and processes.
  • Awareness of security practices and controls to address security risks, applying frameworks such as NIST, COBIT, and ISO.
  • Understanding of IT Compliance and Security principles.
  • Familiarity with Compliance and Local Regulations as well as Federal Regulations relevant to the Healthcare Industry.
  • Strong oral and written communication skills.
  • Flexible hybrid work model with certain on-site workdays (Puerto Rico location).

Nice to haves...

  • Professional security certifications (e.g., CISSP, CRISC, CISA, etc.).
  • Experience in Healthcare, Pharmacy, and Pharmacy Benefit Management industries, including knowledge of Medicare Part D and CMS regulations.
  • Understanding of regulatory compliance and IT service management frameworks such as ITIL, ISO 20000.
  • Experience with GRC products (e.g., RSA-Archer, Riskonnect, Metric Stream, ServiceNow GRC, etc.).

Physical requirements...

  • Must be able to access and navigate each department at the organization's facilities.
  • Sedentary work that primarily involves sitting / standing.

The above description is not intended to limit the scope of the job or to exclude other duties not mentioned. It is not a final set of specifications for the position.

It's simply meant to give readers an idea of what the role entails.

Abarca Health LLC is an equal employment opportunity employer and participates in E-Verify. "Applicant must be a United States' citizen.

Abarca Health LLC does not sponsor employment visas at this time"

All qualified applicants will receive consideration for employment and will not be discriminated against on the basis of gender, race / ethnicity, gender identity, sexual orientation, protected veteran status, disability, or other protected group status.

LI-AMBT1 #LI-REMOTE

7 days ago
Related jobs
Promoted
SEI
Miami, Florida

Knowledge of and/or application of compliance and security frameworks and standards such as COSO, NIST, ISO. Management or participation in Cybersecurity, Information Security, Risk, Compliance and/or Data Privacy Programs or Projects. Risk, Compliance or Information Security risk reporting and moni...

Promoted
Mindlance
FL, United States

Strong relationship management skills with ability to deepen relationships and build partnerships across the HR Businesses and key support areas like Audit, Compliance, Control, Independent Risk, and Legal to ensure franchise and other key risks and needs are considered. Strong familiarity with over...

Promoted
Carnival Cruise Line
Miami, Florida

Maintain data repository and BI reporting that provides Brand Leadership and Maritime Auditors insights into maritime health, environmental, safety and security findings, root causes, actions and risk coverage. Our portfolio of leading cruise brands includes Carnival Cruise Line, Holland America Lin...

Promoted
Audit & Risk Recruitment
Miami, Florida

Oversee the development and execution of GISCSs annual and on-going PCI-DSS continuous compliance program, SOX ITGC testing, and GDPR compliance assessments plans to ensure the integrity, effectiveness, and efficiency of the compliance framework. Ownership of a formal Compliance Governance process w...

Promoted
Carnival Cruise Line
Miami, Florida

The Analyst will also help to capture and report on metrics in a meaningful and engaging manner that drives an understanding of corporate monitoring and risk assessment activities. Our portfolio of leading cruise brands includes Carnival Cruise Line, Holland America Line, Princess Cruises and Seabou...

iboss
Florida

Develop and oversee IT compliance and IT Risk strategies, ensuring alignment with regulatory requirements and industry standards. Design and enforce IT controls to mitigate risks and ensure data security and regulatory compliance. The IT Governance, Risk, and Compliance Specialist will play a key ro...

Royal Caribbean Group
Miramar, Florida

Performs random reviews of general Casino operations from surveillance recording media to include: management's presence on the Casino floor, times of Casino opening/closing, supervisors' vigilance in gaming pits, soft counts (both table and slot), gaming procedures, game pace, guest service levels ...

Carnival Corporation and plc
Miami, Florida

The Analyst will also help to capture and report on metrics in a meaningful and engaging manner that drives an understanding of corporate monitoring and risk assessment activities. Our portfolio of leading cruise brands includes Carnival Cruise Line, Holland America Line, Princess Cruises and Seabou...

Sierra Nevada Corporation
Remote FL, FL_FLR
Remote

In addition to coordination and oversight of technical tasks during any development phase of the S2P project, the Sr Supply Chain Compliance Systems Analyst will be responsible for gathering and documenting compliance and regulatory requirements by interviewing and understanding procurement system a...

Carnival Corporation and plc
Miami, Florida

Ability to plan, coordinate, and execute complex IT security and compliance assignments; design and applies tools, techniques, and procedures to maintain highest standards of IT Security and Compliance. The Analyst, IT Compliance is an individual contributor role with accountability for ensuring the...