Jobs · Finance · Michigan

Senior Security Risk Management Consultant (REMOTE)

IHA · Livonia, MI · 4 wk ago
FinanceFull-time

About the role

The Senior Security Risk Management Consultant serves as a strategic advisor, liaison, and subject matter expert, driving enterprise-wide security risk management strategies that support Trinity Health’s mission and operational excellence. This role partners with senior leadership, security, IT, and business stakeholders to identify, assess, and mitigate cybersecurity risks while ensuring alignment with organizational priorities and regulatory requirements.

Responsibilities

  • Leading complex risk assessments
  • Guiding risk treatment strategies
  • Influencing enterprise decision-making
  • Strengthening overall risk posture through governance, metrics, and continuous improvement

Requirements

  • Bachelor’s degree or equivalent experience
  • One or more security certifications: CISSP, ISSA, CISA, CISM, CRISC, GRCP
  • Seven (7) years of progressive experience in information services, including three (3) years in cybersecurity governance, risk, and compliance (GRC)
  • Three (3) years of progressively responsible experience in healthcare and/or other regulated industries
  • Strong knowledge of HIPAA Security Rule and applicable industry security regulations
  • Experience with GRC platforms supporting risk and compliance programs
  • Demonstrated ability to leverage tooling to improve process efficiency, enable reporting, and support scalable risk management practices

Qualifications

  • Minimum of seven (7) years of progressive experience in information services including three (3) years working in cybersecurity governance, risk, and compliance (GRC)
  • Minimum of three (3) years of progressively responsible experience in healthcare and/or other regulated industries
  • Strong knowledge of the HIPAA Security Rule and applicable industry security regulations, with the ability to rapidly build and sustain expertise; working understanding of broader HIPAA requirements, including Privacy and Breach Notification Rules
  • Hands-on experience or demonstrated capability in implementing, integrating, and managing security solutions across enterprise environments
  • Working knowledge of one or more information security regulations and/or frameworks - HIPAA, ISO 27001/2, FISMA, FIPS, HITRUST and NIST security
  • Demonstrated ability to leverage tooling to improve process efficiency, enable reporting, and support scalable risk management practices

Skills

  • Strong knowledge of enterprise security principles and practices
  • Experience with GRC platforms supporting risk and compliance programs
  • Ability to serve as a leadership representative of the Manager and/or Director
  • Excellent oral and written communication skills
  • Ability to communicate with non-technical leaders and business owners
  • Proven ability to apply appropriate project management methods

Benefits

N/A

Pay

N/A

Schedule

N/A

Similar jobs