Information Security Governance Analyst

Fresenius Medical CareWaltham, MA

About The Position

The Governance, Risk, and Compliance Analyst will play a key role in facilitating the development and maintenance of the organization's global governance, risk management, and compliance programs. This position will support a broad range of activities across the organization.

Requirements

  • 2+ years' related experience in cybersecurity governance, risk, compliance, information security, and/or other related roles.
  • Advanced knowledge of internal control structure, data, and technology
  • Advanced knowledge of NIST CSF, NIST SP 800-series, HIPAA, FIPS, and ISO 27001:2022, and other industry best standards and requirements.
  • Excellent verbal and written communication skills.
  • Excellent organizational skills.

Nice To Haves

  • CISSP, CRISC, CISA, CISM, or other related certifications are preferred.
  • Demonstrated experience with ServiceNow IRM or a similar tool is preferred.

Responsibilities

  • Facilitates the development, implementation, and maintenance of an information security framework aligned with industry best practices.
  • Facilitates the design and documentation of technical, administrative, and physical controls to ensure the business demonstrates compliance with its regulatory and compliance obligations.
  • Provides advice & counsel as directed within IT and information security initiatives to ensure the delivery of compliant and risk-appropriate solutions following existing department policies, standards, and procedures.
  • Facilitate examinations by security assessors and auditors for compliance obligations, such as HIPAA and ISO 27001.
  • Facilitates security risk assessments and recommends controls to mitigate identified security risks.
  • Communicates risk findings and recommendations to business stakeholders.
  • Facilitates the development and deployment of workforce security training and awareness.
  • Facilitates the development and implementation of global cybersecurity policies, standards, and procedures aligned with industry best practices, including NIST CSF and 800-series publications.
  • Facilitates the lifecycle management of information security policies.
  • Additional responsibilities may include focus on one or more departments or locations. See applicable addendum for department or location specific functions.

Benefits

  • medical, dental, and vision insurance
  • a 401(k) with company match
  • paid time off
  • parental leave
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service