Talent.com
Sr. Cyber Risk Assurance Analyst
Sr. Cyber Risk Assurance AnalystMcKesson • Remote, GA, USA
Sr. Cyber Risk Assurance Analyst

Sr. Cyber Risk Assurance Analyst

McKesson • Remote, GA, USA
12 days ago
Job type
  • Full-time
  • Remote
Job description

Position Summary

McKesson is hiring for a Sr. Cyber Risk Assurance Analyst who will be responsible for collaborating across legal, compliance, and technical teams to ensure alignment with regulatory frameworks such as HIPAA, NIST 800-53, FIPS-140, and CMS ARS.

This role requires a strong technical background and deepexpertisein compliance, privacy, and risk management.

The ideal candidate will translate complex government regulatory guidance (e.g.,NIST CVE, CMS ARS) into actionable business and technical requirements,driving toward secure and compliant designs that are compliant with relevant reference architecture frameworks.

Key Responsibilities

  • Conduct cybersecurity risk assessments for internal systems and third-party applications within theregulatedenvironment.
  • Drivevulnerability managementplanbased onstrictrisk-based classificationsacrossmultiple platforms, engaging all asset owners.
  • Contribute to theformulationof cybersecurity strategies byadvisingrisk reduction priorities related to vulnerability trends.
  • Ensure compliance withall applicable regulatory frameworks and requirements
  • Translate technical frameworks and regulatory guidance (e.g.,NIST CVE,Zero Trust,FIPS-140) into actionable requirements for technical and business teams.
  • Collaborate with legal, compliance, and engineeringbusiness partnersto integrate requirements into contracts and system designs.
  • Supportcontinuousaudit readiness, evidence collection, and remediation planning
  • Develop andmaintainpolicies and procedures to support regulatory compliance and risk management.
  • Partner with multiplebusiness units to ensure success in third-partyaudits
  • Provide risk insights and recommendations to leadership to improve organizational risk posture.
  • Foster a culture of accountability and awareness across thebusiness unit.

Minimum Requirements :

  • Degree or equivalent and typically requires 7+ years of relevant experience
  • Critical Skills

  • Bachelor’s degree in Cybersecurity, Information Systems, or relatedfield.
  • 4+ years of experience in cybersecurity risk management or assurance, preferably inaHHSor federally regulated environment.
  • Strong technical background with the ability to interpret and apply complex regulatory frameworks.
  • Knowledge of IP network infrastructure, security defense in deptharchitecture(e.g.,firewalls, intrusion detection / prevention, end-point protection),identifyandaccessmanagement, data encryption
  • Experience with HIPAA, NIST 800-53, FISMA,FEDRAMP,and FIPS-140
  • Strong knowledge of risk frameworks,standards, and authoritativeriskcategorizationsources (e.g., NIST, ISO,FedRAMP,KVE,CVSS, CVE)
  • Proficiencywith enterprise compliance platforms such asOneTrust, RSA Archer, or ServiceNow GRC.
  • Excellent analytical, documentation, and communication skills
  • Additional Skills   and Certifications

  • Certifications such as CISM, CRISC, or CISSP.
  • Experience conducting vendor risk assessments and contract reviews.
  • We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please

    Our Base Pay Range for this position

    $99,800 - $166,300

    Create a job alert for this search

    Sr Risk Analyst • Remote, GA, USA

    Related jobs
    Principal IAM Security Engineer & Architect

    Principal IAM Security Engineer & Architect

    WPS Health Solutions • Atlanta, GA, United States
    Full-time
    Principal Identity and Access Management (IAM) Security Engineer & Architect.WPS assets and works with key business partners, developers, vendors, and security engineers to align our IAM Program wi...Show more
    Last updated: 12 hours ago • Promoted • New!
    Senior Application Security Engineer

    Senior Application Security Engineer

    ImagineX Consulting • Atlanta, GA, United States
    Full-time
    ImagineX is a tech company that deploys AI-assisted teams to build and secure mission-critical enterprise solutions with our clients – spanning software, cybersecurity, data, and AI.Structured like...Show more
    Last updated: 1 day ago • Promoted
    MTA - Sr. Application Security Engineer

    MTA - Sr. Application Security Engineer

    McKesson • Alpharetta, GA, United States
    Full-time
    McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare.We are known for delivering insights, products, and services that make quality care more accessibl...Show more
    Last updated: 1 day ago • Promoted
    Cyber Defense Architect

    Cyber Defense Architect

    VirtualVocations • Decatur, Georgia, United States
    Full-time
    A company is looking for a Principal Architect - Cyber Defense.Key Responsibilities Analyze trends in the threat and compliance environment, advising management on risk mitigation and compliance ...Show more
    Last updated: 6 days ago • Promoted
    Senior Application Security Engineer

    Senior Application Security Engineer

    Cox Automotive • East Point, GA, United States
    Full-time
    Join our dynamic team as a Senior Application Security Engineer, where you'll play a pivotal role in partnering with Security Engineering Enablement and Security Architecture to design and deliver ...Show more
    Last updated: 12 hours ago • Promoted • New!
    Lead Cybersecurity Intergrated Architect

    Lead Cybersecurity Intergrated Architect

    Cox Automotive • Fair Oaks, GA, United States
    Full-time
    A Lead of Integrated Cybersecurity Architecture is responsible for evangelizing the agreed upon cybersecurity architectural principles, standards, and design patterns, and advising engineering team...Show more
    Last updated: 30+ days ago • Promoted
    Senior Lead Cloud Security Architect

    Senior Lead Cloud Security Architect

    Cox Automotive • Vinings, GA, United States
    Full-time
    The Senior Lead Cybersecurity Architect is responsible for defining the principles, standards, and design patterns to build secure products and enterprise tools for all of Cox Automotive's multi-cl...Show more
    Last updated: 1 day ago • Promoted
    Lead Application Security Engineer - 19562

    Lead Application Security Engineer - 19562

    Cox Automotive • Pine Lake, GA, US
    Full-time
    The Lead Application Security Engineer will partner with Security Engineering Enablement and Security Architecture to design and ship secure software : secure code reviews and help define requiremen...Show more
    Last updated: 4 hours ago • Promoted • New!
    Principal Application Security Architect

    Principal Application Security Architect

    ADP • Alpharetta, GA, United States
    Full-time
    ADP is hiring an experienced Principal Application Security Architect.We are seeking a highly skilled and experienced Application Security Architect to join our team. You will join the Product Secur...Show more
    Last updated: 1 day ago • Promoted
    Senior Cybersecurity Architect

    Senior Cybersecurity Architect

    VirtualVocations • Marietta, Georgia, United States
    Full-time
    A company is looking for a Senior Cybersecurity Architect - Remote.Key Responsibilities Design and develop enterprise-wide cyber systems and networks Integrate new architectural features and pro...Show more
    Last updated: 18 days ago • Promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    U.S. Navy • Duluth, GA, US
    Full-time +1
    To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.As a Cryptologic Technician, you are one of the worlds greatest problem-solvers. Were looking for people with sha...Show more
    Last updated: 1 day ago • Promoted
    FedNow Senior Cyber Security Architect

    FedNow Senior Cyber Security Architect

    Federal Reserve Bank of Boston • Atlanta,, GA, United States
    Full-time +1
    Federal Reserve Bank of Boston.Federal Reserve Financial Services (FRFS) delivers a suite of payments services to financial institutions via FedLine Solutions, FedNowSM, Fedwire, National Settlemen...Show more
    Last updated: 15 hours ago • Promoted • New!
    Architect, Information Security, IAM

    Architect, Information Security, IAM

    Edwards Lifesciences • Atlanta, GA, United States
    Full-time
    Innovation starts from the heart.At Edwards Lifesciences, we're dedicated to developing ground-breaking technologies with a genuine impact on patients' lives. At the core of this commitment is our i...Show more
    Last updated: 1 day ago • Promoted
    Lead Application Security Engineer

    Lead Application Security Engineer

    Cox • Mableton, GA, United States
    Full-time
    The Lead Application Security Engineer will partner with Security Engineering Enablement and Security Architecture to design and ship secure software : secure code reviews and help define requiremen...Show more
    Last updated: 1 day ago • Promoted
    Vulnerability Analyst - Mid (REMOTE)

    Vulnerability Analyst - Mid (REMOTE)

    Armavel, LLC • Atlanta, GA, US
    Remote
    Full-time
    Armavel, LLC is offering an opportunity to be a part of a growing, forward-thinking cybersecurity team in an engaging, fast-paced environment. As a Vulnerability Analyst, you will collaborate with a...Show more
    Last updated: 19 days ago • Promoted
    Senior Security Solutions Architect

    Senior Security Solutions Architect

    VirtualVocations • Marietta, Georgia, United States
    Full-time
    A company is looking for a Senior Security Solutions Engineer specializing in Zero Trust and Cloud Security.Key Responsibilities Partner with sales teams to drive pipeline and close deals for Zsc...Show more
    Last updated: 5 days ago • Promoted
    DevSecOps Security Architect

    DevSecOps Security Architect

    VirtualVocations • Alpharetta, Georgia, United States
    Full-time
    A company is looking for a DevSecOps Senior Lead Security Architect.Key Responsibilities Lead security risk assessments and provide recommendations for risk mitigation across enterprise and produ...Show more
    Last updated: 4 days ago • Promoted
    Senior Cybersecurity Engineer

    Senior Cybersecurity Engineer

    VirtualVocations • Alpharetta, Georgia, United States
    Full-time
    A company is looking for a Senior Cybersecurity Engineer I.Key Responsibilities Evaluate, test, and recommend security solutions to protect networks and systems Implement security controls and c...Show more
    Last updated: 30+ days ago • Promoted