IT Governance Analyst

Blue Cross and Blue Shield of North Carolina
$81,068 - $129,708Hybrid

About The Position

Assists in the development, maintenance, and ongoing improvement of the IT risk management, IT controls framework, training, and associated processes, including documentation. Assists the audit process within IT and the process for tracking open audit findings, test exceptions, and systemic issues. Supports internal and/or external audit as needed during audit engagements.

Requirements

  • Bachelor's degree or advanced degree (where required)
  • 3+ years of experience in related field
  • In lieu of degree, 5+ years of experience in related field

Nice To Haves

  • Experience conducting IT audits and supporting SOX (Sarbanes-Oxley) compliance audits
  • Professional certifications such as HITRUST, NIST, SOC 2, and ISO standards preferred
  • Industry-recognized certifications in IT audit, risk management, governance, or compliance, including CISA, CRISC, and CRMA, are a plus

Responsibilities

  • Assists with the identification and assessment of risks associated with third-party vendors, suppliers, business partners, and outsourced service providers, with a strong focus on technology, cybersecurity, data privacy, and regulatory risks
  • Provides support to business owners and project teams to increase awareness and understanding of risks and controls and assist in the development, assessment and monitoring of mitigation plans for IT-related risks, to ensure they are managed to an acceptable level.
  • Identifies, evaluates and escalates issues that conflict with BCBSNC’s risk tolerance
  • Consults on projects and other initiatives to ensure third party risks are considered and addressed appropriately
  • Assess the effectiveness of vendor control environments through review of audit reports, certifications, questionnaires, security assessments, and other risk artifacts.
  • Recommend improvements to strengthen risk management practices and reduce exposure.
  • Develop metrics, dashboards, and reporting materials that provide management and executive leadership with visibility into third-party risk exposure, emerging risks, remediation activities, and program effectiveness.
  • Deliver training, awareness sessions, and stakeholder guidance to promote a strong culture of third-party risk management and ensure consistent application of TPRM requirements across the organization

Benefits

  • Medical, dental, and vision coverage along with numerous health and wellness programs
  • Parental leave and support plus adoption and surrogacy assistance
  • Career development programs and tuition reimbursement for continued education
  • 401k match including an annual company contribution
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service