Sr IT/IS GRC Consultant - Information Security Policy Mgt. -

HCSC, L.P.
Richardson, TX, United States
6 days ago
Apply on dejobs.org
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
5 years minimum
Compensation
$112,200.0 - $202,600.0
Working hours
Regular working hours
Job source

Tech stack

Control Objectives for Information and Related Technology (COBIT) Cyber Security Information Systems Database Design Systems Analysis Information Technology Audit Software Engineering Information Technology

Job description

This position is responsible for serving as a thought leader in the governance, risk and compliance space; planning, designing, enforcing and auditing information technology and information security policies, standards and procedures which safeguard the integrity of and access to enterprise systems, files and data elements; analyzing, tracking and acting on information technology or information security policy exceptions, audits and assessments; maintaining knowledge of changing technologies, and provides recommendations for adaptation of new technologies, processes or policies; recognizing and identifying potential areas where existing information technology or information security policies, standards and procedures require change, or where new ones need to be developed, especially as a result of future business expansion and technology advances; providing management with analysis via risk assessments and briefings / reports to advise them of critical information technology / information security issues that may affect the company’s business objective and / or compliance; collaborating with and feeds it risk information into the enterprise risk management program; evaluating and recommending information technology and information security products, services and/or processes to reduce risk and maintain compliance with applicable policies, mandates, laws and regulations; implementing the activities associated with the information technology and information security awareness programs and provides education and training on information technology and information security policies, standards and practices; performing control assessments and works with appropriate subject matter experts (SME’s) to document remediation plans; serving as a project lead and mentor to junior GRC team members.

Requirements

  • Bachelor Degree and 5 years of IT / IS work experience with a broad range of exposure to systems analysis, application development, database design and administration.
  • Understanding of IT / IS concepts and how to artciulate those in terms of risk.Can recommend and develop strategic responses to issues and risks.
  • Interpret internal or external business issues and concepts and and can translate those into IT concepts that must be addressed via policy.
  • Understanding of key IT / IS laws and regulations, such as the Health Insurance Portability and Accountability Act, as well as governance and compliance frameworks (e.g. NIST, COBIT, ITIL, HITRUST).
  • Understanding of and experience with audit and compliance controls. This could include previous IT auditing experience and / or technical controls implementation, as well as the ability to respond apprpriately to audit and assessment findings.
  • Initiate and invoke creativity to solve complex problems; takes an “outside -in”perspective to identify innovative solutions.
  • Collaborate well with individuals across the business and IT, as well as at all levels of the organization.
  • Verbal and written communication skills, including the ability to articulate complex concepts to various technical and non-technical audience.
  • Experience with and understanding of overall GRC concepts.
  • Work independently, with guidance in only the most complex situations.
  • May lead functional teams and / or projects.

Preferred Job Qualifications:

  • Bachelor Degree in Computer Science, Information Systems, or other related field.
  • Experience with a GRC solution would be preferred.

Benefits & conditions

At Health Care Service Corporation, you will be part of an organization committed to offering meaningful benefits to our employees to support their life outside of work. From health and wellness benefits, 401(k) savings plan, pension plan, paid time off, paid parental leave, disability insurance, supplemental life insurance, employee assistance program, paid holidays, tuition reimbursement, plus other incentives, we offer a robust total rewards package for employees. Learn more about our benefit offerings by visiting https://careers.hcsc.com/totalrewards .

The compensation offered will vary depending on your job-related skills, education, knowledge, and experience. This role aligns with an annual incentive bonus plan subject to the terms and the conditions of the plan.

HCSC Employment Statement:

We are an Equal Opportunity Employment employer dedicated to providing a welcoming environment where the unique differences of our employees are respected and valued. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, protected veteran status, or any other legally protected characteristics.

Base Pay Range

$112,200.00 - $202,600.00

Exact compensation may vary based on skills, experience, and location.

Join our talent community and receive the latest HCSC news, content, and be first in line for new job opportunities.

Join our Talent Community. (https://hcsc.recsolu.com/app/collect/form/pmPA8v_eHgqFiDb2AuRTqQ)

For more than 80 years, HCSC has been dedicated to expanding access to high-quality, cost-effective health care and equipping our members with information and tools to make the best health care decisions for themselves and their families. As an industry leader, HCSC also has been helping to make the health care system work better for all Americans. To remain a leader, we offer compelling careers that encourage resourcefulness, strategic thought and empower you to make a difference in the lives of our members and their communities.

Today, with the industry at an important crossroad, HCSC is reimagining health care and looking for original thinkers who aren’t afraid to make innovative contributions. We are an Equal Opportunity Employment employer dedicated to workforce diversity and a drug-free and smoke-free workplace. Learn more about HCSC, our commitment to our members and the opportunity you’ll have to improve health care delivery in an open, collaborative environment.

HCSC is committed to diversity in the workplace and to providing equal opportunity to employees and applicants.

If you are an individual with a disability or a disabled veteran and need an accommodation or assistance in either using the Careers website or completing the application process, you can call us at 1-866-977-7378 to request reasonable accommodations.

Please note that only requests for accommodations in the application process will be returned. All applications, including resumes, must be submitted through HCSC’s Career website on-line application process. If you have general questions regarding the status of an existing application, navigate to “candidate home” to view your job submissions.

Blue Cross and Blue Shield of Illinois, Blue Cross and Blue Shield of Montana, Blue Cross and Blue Shield of New Mexico, Blue Cross and Blue Shield of Oklahoma, and Blue Cross and Blue Shield of Texas,

Divisions of Health Care Service Corporation, a Mutual Legal Reserve Company, and Independent Licensee of the Blue Cross and Blue Shield Association

About the company

Are you being referred to one of our roles? If so, ask your connection at HCSC about our Employee Referral process!

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on dejobs.org
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:17 min

Governing enterprise IT as a global automotive CIO

Katrin Lehmann Katrin Lehmann +1 · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:03 min

Design principles for optimizing distributed application structures

Wei Hu Wei Hu · World Congress 2025

3:06 min

System thinking and the necessity of architectural synthesis

Mourjo Sen Mourjo Sen · World Congress 2026 Europe

3:24 min

Evaluating remote software roles and compensation structures

Nacho Iacovino · World Congress 2021

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all