Talent.com
IS Security GRC Platform Engineer - Remote
IS Security GRC Platform Engineer - RemoteOchsner Health • United States
IS Security GRC Platform Engineer - Remote

IS Security GRC Platform Engineer - Remote

Ochsner Health • United States
8 days ago
Job type
  • Full-time
  • Remote
Job description

We've made a lot of progress since opening the doors in 1942, but one thing has never changed - our commitment to serve, heal, lead, educate, and innovate. We believe that every award earned, every record broken and every patient helped is because of the dedicated employees who fill our hallways.

At Ochsner, whether you work with patients every day or support those who do, you are making a difference and that matters. Come make a difference at Ochsner Health and discover your future today!

The IS Security GRC Platform Engineer is responsible for managing and enhancing the Governance, Risk, and Compliance (GRC) application and associated frameworks within the Information Security (IS) department. This role ensures compliance with HIPAA and other federal regulatory requirements, supports vendor and application risk assessments, contributes to mergers and acquisitions (M&A) due diligence, and drives continuous improvement across the GRC platform. The engineer works closely with cross-functional teams to maintain platform integrity and support enterprise risk management.

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily. The requirements listed below are representative of the knowledge, skill, and / or ability required. Reasonable accommodations may be made to enable qualified individuals with disabilities to perform the essential duties.

This job description is a summary of the primary duties and responsibilities of the job and position. It is not intended to be a comprehensive or all-inclusive listing of duties and responsibilities. Contents are subject to change at the company's discretion.

Education

Required - High school diploma or equivalent.

Work Experience

Required - 2 years information technology experience with master’s degree;

OR

4 years information technology experience with bachelor’s degree;

OR

6 years information technology experience with associate’s degree;

OR

8 years of information technology experience.

Knowledge Skills and Abilities (KSAs)

Strong communication skills (verbal, written, diagrammatic and visual) with the ability to collaborate across technical and business teams

Deep understanding of identity and access management (IAM), regulatory frameworks (e.g., HIPAA, and PCI), and other federal compliance standards

Experience in risk scoring methodologies and applying mitigation strategies based on business and threat drivers

Expertise in GRC frameworks (e.g., NIST, ISO 27001, HITRUST) and best practices

Hands-on experience with ServiceNow GRC or similar ITSM / GRC platforms

Ability to support vendor and application vetting processes, including risk assessments, documentation, and approval workflows

Familiarity with M&A activities from a security and compliance perspective

Strong analytical and critical thinking skills; ability to make sound decisions based on data and risk analysis

Ability to interpret business, technology, and threat drivers, and develop quantitative risk measures, enumerate, and communicate risk scoring, and apply standard security practices for risk mitigation or acceptance.

Strong knowledge of governance, risk, and compliance frameworks, standards, and best practices.

Working knowledge of GRC platforms (e.g., ServiceNow, Archer, OnSpring) to maintain governance, risk and compliance with frameworks like NIST or ISO 27001.and / or other ITSM / GRC integrated platforms.

Ability to work a flexible schedule (e.g. 24 / 7, weekend, holiday, on call availability).

Job Duties

Maintain and enhance the GRC platform, ensuring alignment with organizational standards and continuous service improvement (CSI) practices

Ensure compliance with HIPAA and other applicable federal and industry regulations across IS operations

Conduct vendor and application vetting, including risk assessments, documentation, and approval workflows

Participate in M&A due diligence activities, focusing on cybersecurity risk and compliance posture of target entities

Implement and manage tools and processes for monitoring and reporting on regulatory compliance and internal governance requirements

Assess, document, and escalate cybersecurity risks, including risk scoring and acceptance workflows to executive leadership

Ensure security controls and attestations are accurately represented and compliant with applicable laws and regulations

Collaborate with internal teams and vendors to onboard new processes and ensure platform adoption and adherence

Develop, implement, and maintain cybersecurity policies, standards, and procedures to support organizational security objectives and regulatory compliance

The above statements describe the general nature and level of work only. They are not an exhaustive list of all required responsibilities, duties, and skills. Other duties may be added, or this description amended at any time.

The employer is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, or disability status.

Physical and Environmental Demands

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Light Work - Exerting up to 20 pounds of force occasionally, and / or up to 10 pounds of force frequently, and / or a negligible amount of force constantly (Constantly : activity or condition exists 2 / 3 or more of the time) to move objects. Physical demand requirements are in excess of those for Sedentary Work. Even though the weight lifted may be only a negligible amount, a job should be rated.

Light Work : (1) when it requires walking or standing to a significant degree; or (2) when it requires sitting most of the time but entails pushing and / or pulling of arm or leg controls; and / or (3) when the job requires working at a production rate pace entailing the constant pushing and / or pulling of materials even though the weight of those materials is negligible.

NOTE : The constant stress and strain of maintaining a production rate pace, especially in an industrial setting, can be and is physically demanding of a worker even though the amount of force exerted is negligible.

Are you ready to make a difference? Apply Today!

Ochsner Health does not consider an individual an applicant until they have formally applied to the open position on this careers website.

Please refer to the job description to determine whether the position you are interested in is remote or on-site. Individuals who reside in and will work from the following areas are not eligible for remote work position : Colorado, California, Hawaii, Illinois, Maryland,Massachusetts, Minnesota, New Jersey, New York, Vermont, Washington, and Washington D.C.

Ochsner Health endeavors to make our site accessible to all users. If you would like to contact us regarding the accessibility of our website, or if you need an accommodation to complete the application process, please contact our HR Employee Solution Center at 504-842-4748 (select option 1) or careers@ochsner.org . This contact information is for accommodation requests only and cannot be used to inquire about the status of applications.

Ochsner is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to any legally protected class, including protected veterans and individuals with disabilities.

Create a job alert for this search

Security Engineer Security • United States

Related jobs
Azure Security Engineer - Architect

Azure Security Engineer - Architect

Cloud Security Services • US
Full-time
Quick Apply
Cloud Security Services is currently looking for an experienced Azure Security Consultant for our client.Our client requires an experienced consultant with experience in Azure Security with excelle...Show more
Last updated: 30+ days ago
IT Security Architect 4

IT Security Architect 4

Quantaleap • US
Full-time
Quick Apply
This role is hybrid candidate should be go onsite for initial days and should be in Virginia) Hi, Greetings from Quantaleap Inc. This side Reetu kalra from Quantaleap Inc, We have an excellent job o...Show more
Last updated: 30+ days ago
Associate, Senior Technology Security Consultant (Remote)

Associate, Senior Technology Security Consultant (Remote)

Tylin • United States
Remote
Full-time
Driven to unlock the potential in every system.Across five countries are 1,100 engineers, designers, and consultants collaborating to elevate the human experience, create more resilient communities...Show more
Last updated: 30+ days ago • Promoted
Senior Architect, Artificial Intelligence Security - Databricks / Azure - Remote

Senior Architect, Artificial Intelligence Security - Databricks / Azure - Remote

Molina Healthcare • United States
Remote
Full-time
We are seeking an experienced and forward-thinking Senior AI Security Architect to join our newly formed AI Security Architecture team. In this critical role, you will be responsible for designing a...Show more
Last updated: 21 days ago • Promoted
Virtual Infrastructure Engineer Advanced Cyber Training Environments

Virtual Infrastructure Engineer Advanced Cyber Training Environments

Ids International • Remote, Remote, United States
Remote
Full-time
SITE 525 is at the forefront of delivering cutting-edge training solutions for information maneuver specialists.Our mission is to empower the warfighter with realistic, high-fidelity training envir...Show more
Last updated: 9 days ago • Promoted
IAM Jr. Engineer

IAM Jr. Engineer

VDart Inc • United States
Temporary
Quick Apply
MsoNoSpacing"> Job Title : IAM Jr.Engineer Location : 100% remote Show more
Last updated: 8 days ago
Cloud Security Architect SME

Cloud Security Architect SME

LS Technologies, LLC • USA
Full-time +1
Quick Apply
LS Technologies, a Tetra Tech Company is seeking a highly skilled Cloud Security Architect.This role will provide advanced technical leadership in the design, implementation, and oversight of secur...Show more
Last updated: 30+ days ago
Security Automation Engineer - 100% Remote

Security Automation Engineer - 100% Remote

The Dignify Solutions LLC • United States
Remote
Full-time
Linux / Unix tools and architecture.Continuous learning mindset to stay current with the tools and the rapidly evolving cyber threat landscape. Motivated with a positive attitude and a strong bias tow...Show more
Last updated: 15 days ago • Promoted
Splunk Ingest Engineer| Remote| 1+ year contract

Splunk Ingest Engineer| Remote| 1+ year contract

Two95 International Inc. • US
Remote
Full-time
Quick Apply
Bachelor's degree in Computer Science, Information Security, or related field or equivalent professional experience.Effective communication and collaboration skills. Problem-solving skills and the a...Show more
Last updated: 30+ days ago
DevOps Engineer

DevOps Engineer

The Language Doctors, Inc. • United States, United States, United States
Remote
Full-time
Doctors, we deliver high-quality linguistic services with an expanding global presence.This role bridges software development, IT operations, and application security, ensuring our systems are scal...Show more
Last updated: 30+ days ago • Promoted
Consulting Director, Cloud Security, Proactive Services (Unit 42) - Remote

Consulting Director, Cloud Security, Proactive Services (Unit 42) - Remote

Palo Alto Networks • United States
Remote
Full-time
At Palo Alto Networks® everything starts and ends with our mission : .Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and m...Show more
Last updated: 17 days ago • Promoted
Security CIAM Okta Universal Directory Engineer

Security CIAM Okta Universal Directory Engineer

Cloud Security Services • US
Full-time
Quick Apply
Cloud Security Services is currently looking for a Security Customer Identity and Access Management (CIAM) Okta Universal Directory Engineer for our client. Our client requires a Security Custo...Show more
Last updated: 30+ days ago
Senior Product Security Offensive Engineer

Senior Product Security Offensive Engineer

iManage • (Multiple States), US
Full-time
Quick Apply
This is a remote role within a global team that utilizes cutting-edge technology to stay connected with colleagues worldwide. Occasional travel to a local office may be required for in-person collab...Show more
Last updated: 30+ days ago
Senior Manager Product Security

Senior Manager Product Security

Two95 International Inc. • US
Remote
Full-time
Quick Apply
Title : Senior Manager Product Security.Testing and reviewing web applications / services written in Java, C / C++, and mobile languages. Securing AWS and GCP environments using IaC.Engage in and improve...Show more
Last updated: 30+ days ago
Senior IT Security Engineer

Senior IT Security Engineer

Foley • US
Remote
Full-time
Quick Apply
Foley is seeking a highly skilled and proactive Senior IT Security Engineer to lead and evolve our enterprise security program. This role is instrumental in strengthening our security posture as we ...Show more
Last updated: 30+ days ago
Systems Engineer II - Infrastructure Engineer

Systems Engineer II - Infrastructure Engineer

Raytheon • US
Full-time
Find out more about this role by reading the information below, then apply to be considered.TX233 : Richardson 1737 CityLine 1737 East CityLine Drive Building C37, Richardson, TX, 75082 USA.Person, ...Show more
Last updated: 1 day ago • Promoted
Sr. Network Security Engineer | Remote, USA

Sr. Network Security Engineer | Remote, USA

Optiv • United States
Remote
Full-time
This position will be fully remote and can be hired anywhere in the continental U.Additionally this position requires a CJIS Background Check and Fingerprinting as part of the onboarding process.Ne...Show more
Last updated: 1 day ago • Promoted
Attack Surface Management Security Architect Remote

Attack Surface Management Security Architect Remote

Cisco • United States
Remote
Full-time +1
The application window is expected to close on : November 21, 2025.Job posting may be removed earlier if the position is filled or if a sufficient number of applications are received.The successful ...Show more
Last updated: 19 days ago • Promoted