NOTE: We currently have two openings for this role across the enterprise – one with an affiliate company, CDPHP (Capital District Physicians Health Plan) and one with Excellus BCBS/Univera Healthcare (depending on candidate’s geographic location). The selected candidate will be hired into one of the entities based on experience & business needs Opening 1: Reporting to Jeff Ewing on the Cyber Security Office Opening 2: Rep orting to Scott Wiggins on the Third Party & Risk Platform Management Team Summary: The Information Risk & Compliance Analyst is responsible for delivering Enterprise-wide Information Risk & Compliance disciplines. The role is responsible for supporting all elements of the Information Risk and Compliance program including, information security policies and procedures, risk assessments, training and awareness, external/internal IT audit support, management, and facilitation of control issues to ensure remediation, regulatory compliance, management reporting, and communication of risk. An Information Risk & Compliance Analyst contribute to the development, maintenance, and/or refinement of Cyber, Risk, policies, and standards, collaborate with others to create and manage security and related control documentation. The role will work with process owners and business partners to identify control gaps and appropriate remediation plans, as well as monitor and report on progress of remediation efforts. This role will also drive quality review for all Cyber Risk & Information related audit artifacts. This position collaborates with various throughout the business, as well as maintains knowledge with best practices for managing cyber-risk and access controls in alignment with corporate policies, standards, guidelines, and regulations.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Entry Level
Education Level
Associate degree