stellar-health - Senior Manager - Information Security, Governance, Risk, Compliance
Requirements
• 8-10 years of security program experience, with 4-5 years of direct experience building and implementing GRC tooling and processes • Familiarity and experience helping design controls in AWS cloud environments and infrastructure that meet regulatory commitments • Demonstrated experience with security monitoring tools including: • AWS native security tooling (Inspector, Config, SecurityHub) • Experience leading audits of security frameworks (e.g. SOC 2 Type 2, ISO 27001, HITRUST). Preference given to those with HITRUST experience.
Responsibilities
• Support our interim HITRUST assessment with a focus on open items that could require remediation • Review the current GRC tooling environment and produced a plan for enhancements • Prioritize a list of improvements to the third party vendor management program • Implement improvements to current evidence collection processes and/or automations • Facilitated the interim HITRUST assessment with the external auditing firm • Implemented 1-2 improvements to the GRC tooling environment • Refresh our customer facing trust center • Create a remediation plan for HITRUST gaps, if any, including timelines and commitments from business owners • Establish a process to review high risk applications and systems with System Owners to ensure they align to any applicable security standards/controls and other security recommendations
Benefits
• Compensation is based on candidate's experience and skillset. $170K – $185K • Offers Equity • Offers Bonus • Where a new hire falls within this range will be based on their individual skills and experience, and how these competencies compare across other employees in the same role. Stellar's bands are designed to allow for individual compensation growth within the role. As such, new hires typically start at the lower end of the range. Stellar rewards performance and outcomes - should you join the company, you will have the opportunity to grow your salary over time. • Upload your resume here to autofill key application fields. • Drop your resume here! • Parsing your resume. Autofilling key fields... • or drag and drop here • To help cut down on the number of fraudulent applications, we require LinkedIn profiles. • How do you prefer to organize your artifacts and documents for annual audits? • Decline to self-identify • Hispanic or Latino - A person of Cuban, Mexican, Puerto Rican, South or Central American, or other Spanish culture or origin regardless of race. • Hispanic or Latino • White (Not Hispanic or Latino) - A person having origins in any of the original peoples of Europe, the Middle East, or North Africa. • White • Black or African American (Not Hispanic or Latino) - A person having origins in any of the black racial groups of Africa. • Black or African American • Native Hawaiian or Other Pacific Islander (Not Hispanic or Latino) - A person having origins in any of the peoples of Hawaii, Guam, Samoa, or other Pacific Islands. • Native Hawaiian or Other Pacific Islander • Asian (Not Hispanic or Latino) - A person having origins in any of the original peoples of the Far East, Southeast Asia, or the Indian Subcontinent, including, for example, Cambodia, China, India, Japan, Korea, Malaysia, Pakistan, the Philippine Islands, Thailand, and Vietnam. • Asian • American Indian or Alaska Native (Not Hispanic or Latino) - A person having origins in any of the original peoples of North and South America (including Central America), and who maintain tribal affiliation or community attachment. • American Indian or Alaska Native • Two or More Races (Not Hispanic or Latino) - All persons who identify with more than one of the above five races. • Two or More Races • Hispanic or Latino • White (Not Hispanic or Latino) • Black or African American (Not Hispanic or Latino) • Native Hawaiian or Other Pacific Islander (Not Hispanic or Latino) • Asian (Not Hispanic or Latino) • American Indian or Alaska Native (Not Hispanic or Latino) • Two or More Races (Not Hispanic or Latino) • I identify as one or more of the classifications of protected veteran listed above • I am not a protected veteran
Apply in one click
Upload My Resume
Drop here or click to browse · Tap to choose · PDF, DOCX, DOC, RTF, TXT