Responsible for examining and analyzing the information system operations to identify opportunities for risk reduction.
Ensure the appropriate level of information security is utilized based on industry standards, best practices, HIPAA, HITECH, and other regulations by developing repeatable processes to identify, evaluate, and measure IT security risk.
Evaluate risk and perform due diligence and periodic security reviews on IT vendors.
Partner with other stakeholders to develop and maintain disaster recovery procedures and periodically test those procedures for effectiveness.
Help develop and maintain security policies.
Partner with Audit, Compliance, and Legal to manage security risk and compliance.
Asset in the development, maintenance, and presentation of security awareness training and testing.
Models appropriate behavior as exemplified in MLH Mission, Vision and Values.
Requirements
Associate's Degree Information Technology
Preferred: Bachelor's Degree in Business Administration/Management
Preferred: Bachelor's Degree in Computer Sciences
Preferred: Bachelor's Degree in Healthcare Administration
Must have at least two (2) years of experience in Information Security, working with risk management, audit, and compliance
Substitution: Five (5) years of applicable Information Security experience, working with risk management, audit, and compliance in lieu of education requirements
Credentialed in one or more of the following: Certified in Risk and Information Systems Control (CRISC)
Certified Information Systems Auditor (CISA)
Certified Information Systems Security Professional - International Information System Security Certification Consortium CPFA
Benefits
Health insurance
401(k) retirement plan
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Certified in Risk and Information Systems Control (CRISC)Certified Information Systems Auditor (CISA)Certified Information Systems Security Professional (CISSP)