Sr Security Risk Analyst

RWJBarnabas Health
West Orange, NJ, United States
2 days ago
Apply on www.careerjet.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Expert
Experience required
2 years minimum
Compensation
$100,619.0 - $142,124.0
Working hours
Regular working hours

Tech stack

Software Documentation CompTIA Security+ Cyber Security

Job description

The RWJBarnabas Health Senior Security Risk Analyst will primarily be responsible for evaluating and governing facility, system and third-party risk for the organization. In addition, this individual will provide mentoring and give assistance to other analysts.This individual will work closely with business units and vendors to assess the security posture of new or existing systems/projects, make recommendations related to security, issue requirements required for security approval and perform follow up on identified risks. This individual will be working in an Enterprise environment consisting of multiple acute care facilities, physician practices, ambulatory locations and corporate facilities.The ideal candidate will have worked in a healthcare setting in a security role, have a strong understanding of technical concepts, and experience in evaluating HIPAA Privacy and Security risk. As a Senior Security Risk Analyst, a typical day might include:

  • Execute security risk assessments in alignment with established methodologies.
  • Independently perform risk assessments using defined frameworks, ensuring consistent application of scope, evaluation criteria, and documentation standards.
  • Evaluate assessment responses using risk-based judgment.
  • Analyze submitted responses and evidence to identify control gaps, inconsistencies, and risks based on impact and likelihood.
  • Facilitate end-to-end assessment lifecycle activities.
  • Coordinate stakeholders, manage documentation, and ensure timely completion and communication of assessment results.
  • Partner to develop risk-based remediation recommendations.
  • Collaborate with IT and business teams to define practical, prioritized corrective actions aligned to organizational risk tolerance.
  • Conduct specialized assessments (e,g,, biomedical/clinical technologies).
  • Perform targeted evaluations of high-risk or specialized systems using appropriate tools, frameworks, and domain considerations.
  • Provide mentorship and technical guidance to junior analysts.
  • Support development of junior staff by reviewing work, sharing best practices, and reinforcing consistent assessment execution.
  • Conduct facility-level security risk assessments.
  • Assess facilities across the organization, ensuring alignment to enterprise security standards and tracking remediation of identified risks.
  • Provide support for security incidents and organizational issues.
  • Contribute subject matter expertise to incident analysis, containment, and remediation efforts as needed.
  • Support Security Operations with service requests and tickets.
  • Assist with complex or high-risk requests by providing risk evaluation and guidance aligned to security policies.
  • Maintain awareness of emerging risks and program improvements.
  • Stay current on threats and best practices to identify opportunities to strengthen assessment processes and controls.
  • Perform additional responsibilities as assigned by leadership.
  • Support priority initiatives and provide expertise for security, risk, and compliance efforts as needed.

To be considered for this opportunity, you must currently have experience as a Senior Security Risk Analyst

Requirements

  • Preferred: Bachelor’s degree in IT preferred (years of experience may be substituted for degree)
  • Minimum: Technology certification and/or currently enrolled in BA or MA

Work Experience:

  • 2 or more years’ experience in Security, Networking or Field Services in a healthcare setting.

Licenses and Certifications:

  • Required: CompTIA Security+, Network+ or similar technical certification.
  • Preferred: CISSP/CRISC or similar technical certification.

Benefits & conditions

At RWJBarnabas Health, our people are at the center of everything we do. Through our Total Wellbeing promise, we offer a wide range of benefits and resources to support your physical, emotional, financial, and professional wellbeing. Highlights include:

  • Generous Paid Time Off (Vacation, Holidays, Sick Time)

  • Medical, Dental & Vision Insurance

  • Prescription Drug Coverage

  • Retirement Plans

  • Paid Parental Leave

  • Tuition Reimbursement

  • Student Loan Planning Support

  • Life and Disability Insurance

  • Wellness Programs and Flexible Spending Accounts

  • Voluntary Benefits (like Pet Insurance)

  • Discounts with local partners (e.g., NJ Devils, NJPAC, Verizon)

  • Community involvement and volunteer opportunities …and more!

Why RWJBarnabas Health: RWJBarnabas Health is New Jersey’s largest and most comprehensive academic health system, committed to delivering exceptional care and creating healthier communities. We’re proud to offer a workplace that values compassion, equity, and innovation-where every team member plays a vital role. When you join us, you’re not just building a career-you’re helping to shape the future of healthcare, one person and one community at a time.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.careerjet.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

4:11 min

Introduction to cloud-native application developer security

Micah Silverman · World Congress 2022

1:58 min

Measuring productivity gains from agent-assisted code refactoring

Dr. Alexander Wachtel Dr. Alexander Wachtel +1 · World Congress 2025

5:30 min

Identifying non-coding software vulnerabilities and organizational risks

Tino Sokic · World Congress 2023

1:45 min

Transitioning from software development to security roles

Stefania Chaplin · World Congress 2022

3:44 min

Current industry adoption and future security initiatives

Alexander Allmendinger · LIVE

Videos

See all

Related articles

See all