Talent.com
Highmark Health
Senior Information Risk ConsultantHighmark Health • WI, Working at Home, Wisconsin
Senior Information Risk Consultant

Senior Information Risk Consultant

Highmark Health • WI, Working at Home, Wisconsin
30+ days ago
Job type
  • Full-time
Job description

Description

:

JOB SUMMARY

Candidates residing within a 50-mile radius of Highmark offices in Camp Hill, Buffalo, or Pittsburgh will be required to work a hybrid schedule, with in-office attendance on Tuesdays, Wednesdays, and Thursdays at one of these locations. Candidates whose primary residence is outside this 50-mile radius will also follow a hybrid work model.

***CANDIDATE MUST BE US Citizen (due to contractual/access requirements)***

The Senior Information Risk Consultant serves as the strategic lead for M&A cybersecurity integration, driving governance and assurance across multiple concurrent acquisitions. This role establishes and manages the Cybersecurity Integration Management Office (C‑IMO), ensuring seamless alignment of security requirements during pre- and post-acquisition phases. Beyond M&A, the position provides expert leadership in policy stewardship, control assurance, and information security program maturity, guiding initiatives that strengthen compliance with HIPAA, NIST CSF 2.0, PCI DSS, and SOC frameworks. Acting as a trusted advisor, the analyst interprets complex regulatory and contractual obligations, mentors team members, and partners with cross-functional stakeholders to deliver governance excellence and executive-ready reporting.

ESSENTIAL RESPONSIBILITIES

  • Lead in conducting information risk assessments as assigned to the team. Request and analyze documentation necessary to perform appropriate assessment and conduct necessary interviews in order to collect and review relevant materials necessary to produce results of the assessment.
  • Clearly and concisely document and communicate risk assessment results with requester, security architects and management, as appropriate.
  • Conduct and formulate appropriate risk scoring, as it relates to threat, vulnerability, likelihood, impact, security controls/countermeasures, etc.
  • Understand and contribute to inventory of risk register tracking, scoring and associated risk statements.
  • Perform follow up activities related to exceptions, risk acceptance, corrective action plans and additional mitigation activities.
  • Communicate risk treatment methodology, risk avoidance, risk acceptance, risk transference and risk mitigation to appropriate groups.
  • Take lead role in partnering with multiple projects and initiatives to apply security architecture requirements, develop architecture solutions, integrate security into solution designs, access risks of security gaps, and develop architecture remediation.
  • Take lead role with HM Health Solutions teams in developing and maintaining appropriate procedural documentation which meets relevant compliance standards, such as Payment Card Industry - Data Security Standards (PCI-DSS), Health Information Trust Alliance (HITRUST), and International Organization for Standardization (ISO) 27001.
  • Prepare and present solution decks to different levels of management and varying technical experience.
  • Lead in assuring compliance to required standards, procedures, guidelines and processes.
  • Other duties as assigned or requested.

REQUIRED EDUCATION

Bachelor’s Degree - Information Security, Information Systems, Information Assurance, Computer Science or related field

At least 10 years' experience in Information Security, Governance, Risk and/or Compliance

PREFERRED EDUCATION

Master’s Degree – Computer Science, Information Security or related field

EXPERIENCE

  • 7 - 10 years' experience in Information Security and/or Information Risk Management and/or Information Technology
  • 5 - 7 years' experience within Information Security Governance, Risk and/or Compliance functions and activities
  • 7 - 10 years’ experience developing, communicating and presenting Information Security and Risk Management concepts to varying audiences
  • Familiarity with technologies such as intrusion Prevention Systems (IPS), firewalls, endpoint protection, web/email filtering, Data Loss Prevention (DLP), digital rights management, encryption, Security Event and Incident Management (SEIM), and virtualization platforms
  • 10 - 15 years' experience in Information Security and/or Information Risk Management including:

  • Proven leadership in cybersecurity governance for mergers and acquisitions, including development and execution of integration playbooks and governance frameworks.
  • Demonstrated ability to drive policy lifecycle management, ensuring timely updates and alignment with HIPAA, NIST CSF 2.0 and other authoritative source requirements.
  • Experience leading control assurance and maturity improvement initiatives, with a focus on remediating gaps and strengthening the cyber security posture.
  • Strong background in interpreting and applying security policies, standards, and regulatory requirements within complex business and technical environments.
  • Expertise in coordinating cross-functional governance forums and producing executive-ready dashboards and narratives for leadership decision-making.
  • Familiarity with governance tools and platforms such as RSA Archer (GRC), Icertis CLM, and policy management systems.
  • Ability to mentor team members and contribute to the strategic direction of cybersecurity governance programs.

KNOWLEDGE, SKILLS & ABILITIES

  • Knowledge of HITRUST CSF, NIST 800-83 cyber security framework, PCI, HIPAA, HITECH, COBIT, ISO 27001/2, and ITIL 3
  • Knowledge of NIST Risk Assessment methodology
  • Familiarity with secure SDLC best practices
  • Knowledge of OCTAVE or OCTAVE Allegro risk methodology
  • Ability to work within high performance, multi-discipline teams
  • Strong teamwork and inter-personal skills

REQUIRED LICENSURE

None

PREFERRED LICENSURE

Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), SANS or similar industry certifications

TRAVEL REQUIREMENT:
0% - 25%

LANGUAGE REQUIREMENT ()?
0% - 25%

PHYSICAL, MENTAL DEMANDS AND WORKING CONDITIONS
(

Office-Based

An employee in this position works in an office environment. The position frequently requires the employee to communicate effectively with others both inside and outside the workplace (e.g., in person, via telephone, via email). The employee must be able to understand, interpret and analyze data, solve problems, concentrate, and research, use available technological resources and systems (e.g., computers and computer programs), multi-task, prioritize, and meet multiple deadlines to complete essential tasks. The employee generally works in a fast-paced and frequently stressful environment, must attend work on a regular and reliable basis as well as adhere to all workplace policies, and may be called upon to work outside regular business hours.

Teaches/Trains others regularly

Frequently

Travels regularly from the office to various work sites or from site-to-site

Rarely

Works primarily out-of-the office selling products/services (Sales employees)

Does Not Apply

Physical Work Site Required

Yes

An employee in this position may work in a home or company office environment but is also frequently driving to and from various locations to perform the work off-site. The position frequently requires the employee to communicate effectively with others both inside and outside the workplace (e.g., in person, via telephone, via email). The employee must be able to understand, interpret and analyze data, solve problems, concentrate, and research, use available technological resources and systems (e.g., computers and computer programs), multi-task, prioritize, and meet multiple deadlines to complete essential tasks. The employee generally works in a fast-paced and frequently stressful environment, must attend work on a regular and reliable basis as well as adhere to all workplace policies, and may be called upon to work outside regular business hours.

An employee in this position is frequently required to move throughout the workplace, sit, stand and walk, use hands and fingers to hold objects, tools or controls, possess fine motor skills (e.g., to write and operate a computer or to steer transportation equipment), possess gross motor skills (e.g., to carry items), reach with hands and arms, climb stairs and ladders, balance, stoop, kneel crouch and crawl, communicate effectively, and talk and hear. Specific vision abilities required by the job include close vision, distance vision, color vision, peripheral vision, depth perception, and the ability to adjust focus. The employee must be able to work in a busy environment where decisions often must be made quickly, must attend work on a regular and reliable basis, must adhere to all workplace policies, and may be called upon to work outside regular business hours. This work occurs in a [example: warehouse, hospital or provider’s office or mailroom].

Lifting: up to 10 pounds

Does Not Apply

Lifting: 10 to 25 pounds

Does Not Apply

Lifting: 25 to 50 pounds

Does Not Apply

ADDITIONAL INFORMATION

Changes Approved By:

Kathleen Thompson

As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy. Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.

Pay Range Minimum:

$78,900.00

Pay Range Maximum:

$147,500.00

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.

For accommodation requests, please contact HR Services Online at

Create a job alert for this search

Senior Information Risk Consultant • WI, Working at Home, Wisconsin

Similar jobs

Senior Appian Solutions Architect & Delivery Leader

GroundswellWI, United States
Full-time

A premier technology integrator is looking for a Principal Appian Consultant to lead implementation teams through complex solutions.Candidates must have 5+ years of Appian experience, a Bachelor's ... Show more

 • Promoted

Malware Analyst

DataAnnotationWI, United States
Full-time +1

We are looking for experienced cybersecurity professionals to join our team to help train AI models.In this role, you will evaluate AI-generated security content, solve technical cybersecurity prob... Show more

 • Promoted

Remote Malware Analyst: Train AI for Cyber Defense

DataAnnotationWI, United States
Remote
Full-time

A cybersecurity firm is looking for experienced professionals to evaluate AI-generated security content and solve technical problems.The role is flexible, allowing you to work from anywhere in the ... Show more

 • Promoted

Senior Employment Counsel & Compliance Strategist

Amcor Flexibles, LLCOshkosh, WI, United States
Full-time

A leading global packaging company is seeking a Legal Counsel to provide expert legal guidance on employment matters in Oshkosh, WI.The role focuses on advising HR and management on compliance, lit... Show more

 • Promoted

Compliance Specialist - Affordable Housing

ACC Management Group, IncOshkosh, WI, United States
Full-time +1

Affordable Housing Compliance Specialist.Join our team as an Affordable Housing Compliance Specialist, ensuring compliance across programs like LIHTC, HUD, Section 8, HOME, and Rural Development.Yo... Show more

 • Promoted

Remote Senior VP, Data-Driven Policy & Reimbursement

Spano PrattWI, United States
Remote
Full-time

A leading organization in senior advocacy is seeking a Senior Vice President of Data & Financial Policy to oversee data-driven payment policy strategies.This position requires strong expertise in r... Show more

 • Promoted

Senior Travel Technology Architect (Remote)

Fox World TravelOshkosh, WI, United States
Remote
Full-time

A leading travel technology company is looking for a Travel Technology Architect to design and lead large-scale technology initiatives.This remote position requires deep expertise in Global Distrib... Show more

 • Promoted

Remote Investment Analyst - AI Trainer ($50-$60 per hour)

Data AnnotationWatertown, Wisconsin
$50.00 hourly
Remote
Full-time +1

DataAnnotation is committed to creating high-quality AI.Join our team to help train the next generation of AI while enjoying the flexibility of remote work and the freedom to set your own&nbsp... Show more

 • Promoted

Medical Director/Associate Medical Director -Green Bay, WI

US PhysiatryNone, WI, US
Full-time

Sign On & $400,000+Annual Earnings.Physiatry: A National Group of Physiatrists.Committed to excellence in rehabilitation .Experienced physical medicine physician leadership team .Flexible, diverse,... Show more

 • Promoted

Data Entry Product Support - No Experience

GLOCPAWatertown, Wisconsin
$15.00 hourly
Part-time +1

Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies.We guarantee 15-25 hours per week with an hourly pay of bet... Show more

 • Promoted

Neurology Opportunity in Wisconsin on the Shores of Lake Michigan

Skyline Physician SolutionsNone, WI, US
Full-time

R6Vx5W_threadScrollVars scroll-mb-[calc(var(--scroll-root-safe-area-inset-bottom,0px)+var(--thread-response-height))] scroll-mt-[calc(var(--header-height)+min(200px,max(70px,20svh)))]" dir="auto" d... Show more

 • Promoted

Director, IT Finance

ZendeskWI, United States
Full-time

Zendesk is seeking a dynamic and experienced Director of IT Finance to lead and develop a high-performing team dedicated to supporting critical financial processes, specifically focusing on Record ... Show more

 • Promoted

Medical Director Physician

VitalCore Health StrategiesJuneau, WI, US
Full-time

Join the VitalCore Team in Wisconsin! We're people who are fueled by passion, not by profit.VitalCore Health Strategies (VCHS), an industry leader in Correctional Healthcare has an opening for a.PR... Show more

 • Promoted

Experienced Insurance Agent

HealthMarketsOshkosh, WI, US
Full-time

If you’re looking for an exciting opportunity where you can change people’s lives and achieve financial success as an independent insurance agent, you’ve come to the right place.Becoming an indepen... Show more

 • Promoted

Internal Medicine Position in Oshkosh, Wisconsin

Advocate HealthOshkosh, WI, US
Full-time

Join a well-respected and established group of internists with Aurora Health Care in Oshkosh, Wisconsin, a safe, family friendly community that offers limitless recreational activities.At Advocate ... Show more

 • Promoted

IT Director

Drexel Building Supply, Inc.WI, United States
Full-time

Headquarters (Campbellsport, Wisconsin) |.ERP Administrator, Data Team, Service Team.We are seeking a Director of Information Technology to serve as the chief architect of our digital future.With 8... Show more

 • Promoted

Medical Director of Medical Informatics (.5FTE) - Aspirus Health

Aspirus HealthNone, WI, US
Full-time

Medical Director of Medical Informatics (.This physician will serve as an advisor and provide physician and APC perspective in decisions about strategic direction for clinical systems and improving... Show more

 • Promoted

Remote Senior Financial Analyst - AI Trainer ($50-$60 per hour)

Data AnnotationWatertown, Wisconsin
$50.00 hourly
Remote
Full-time +1

DataAnnotation is committed to creating high-quality AI.Join our team to help train the next generation of AI while enjoying the flexibility of remote work and the freedom to set your own&nbsp... Show more

 • Promoted

Remote Financial Planning & Analysis Manager - AI Trainer ($50-$60 per hour)

Data AnnotationWatertown, Wisconsin
$50.00 hourly
Remote
Full-time +1

DataAnnotation is committed to creating high-quality AI.Join our team to help train the next generation of AI while enjoying the flexibility of remote work and the freedom to set your own&nbsp... Show more

 • Promoted

Travel MRI Tech - $2,477 per week in Wisconsin

AlliedTravelCareersAll Cities, WI, US
$2,477.00 weekly
Full-time

KPG Healthcare is currently seeking MRI Techs to fill Travel and Local Contract opportunities throughout our network of hospitals.Certifications: ARRT(MR), State License (if applicable), BLS.Shift:... Show more