yandex
Страна
США
Зарплата
120 000 $ – 145 000 $
+500% приглашений

Откликайтесь
на вакансии с ИИ

Ускорим процесс поиска работы
SeniorУдалённоПолная занятость

Senior Security Analyst

Оценка ИИ

Привлекательная позиция в стабильном стартапе с хорошим финансированием и актуальным фокусом на AI Governance. Конкурентная зарплата и удаленный формат работы делают вакансию очень сильной.


Вакансия из Quick Offer Global, списка международных компаний
Пожаловаться

Сложность вакансии

ЛегкоСложно
Оценка ИИ

Роль требует не только глубоких знаний традиционных фреймворков (SOC 2, HIPAA), но и готовности осваивать новые стандарты управления рисками ИИ (ISO 42001). Высокая ответственность за взаимодействие с клиентами и вендорами добавляет сложности.

Анализ зарплаты

Медиана135 000 $
Рынок115 000 $ – 160 000 $
Оценка ИИ

Предлагаемая зарплата ($120k - $145k) полностью соответствует рыночным ожиданиям для Senior GRC ролей в США, особенно в секторе HealthTech. Верхняя граница диапазона является конкурентной для удаленной работы.

Сопроводительное письмо

I am writing to express my strong interest in the Senior Security Analyst position at Rightway Healthcare. With over four years of experience in GRC and a deep understanding of frameworks like SOC 2, HIPAA, and ISO 27001, I am confident in my ability to strengthen your security posture while supporting your mission to harmonize healthcare. My background in managing vendor risk and responding to complex customer security inquiries aligns perfectly with the core responsibilities of this role.

What particularly excites me about Rightway is your proactive approach to AI governance. I have been closely following the development of ISO/IEC 42001 and the Colorado AI Act, and I am eager to apply my analytical skills to help operationalize these emerging standards within your platform. I am a firm believer that GRC is a strategic enabler rather than a checkbox exercise, and I look forward to bringing this mindset to your collaborative and mission-driven team.

+250% к просмотрам

Составьте идеальное письмо к вакансии с ИИ-агентом

Составьте идеальное письмо к вакансии с ИИ-агентом

Откликнитесь в rightwayhealthcare уже сейчас

Присоединяйтесь к Rightway и станьте экспертом в области безопасности ИИ в инновационной среде здравоохранения!

Описание вакансии

ABOUT THE ROLE:

Rightway Healthcare is looking for a Senior Security GRC Analyst ready to take their experience to the next level. If you’ve worked on GRC programs in a fast-paced or startup environment, this is your chance to apply that agility and execution focus in a growing healthcare organization. You’ll also have the opportunity to contribute to emerging areas of AI risk and governance as Rightway integrates advanced technologies into its platform.

Reporting to the Security GRC Manager, you’ll own key deliverables that keep our security and compliance programs running smoothly, supporting customer assurance, vendor risk reviews, and recurring governance activities. This role is ideal for someone who enjoys hands-on GRC work and wants to grow as a senior individual contributor within a collaborative, mission-driven healthcare company transforming pharmacy benefit management and care navigation.

WHAT YOU’LL DO:

Core GRC Operations

  • Coordinate and execute recurring GRC tasks such as quarterly access reviews, audit evidence collection, and risk register reconciliation.
  • Document and track completion of control activities and escalate issues where needed.
  • Assist with internal and external audits, ensuring timely and complete evidence collection and review.

Customer Assurance

  • Collaborate with Sales, Legal, and Product teams to lead responses for customer security questionnaires and RFPs, progressively owning more complex requests as your experience deepens.
  • Maintain and continuously improve a centralized repository of commonly requested security documentation and artifacts (e.g., SOC 2, SIG, CAIQ).

Vendor Risk Management

  • Work closely with a broad array of business leaders to conduct initial and periodic vendor risk assessments, ensuring that third parties meet Rightway's security and compliance standards.
  • Track and follow up on remediation plans and risk treatment for vendors posing unacceptable risk.
  • Enable and support automation and optimization of the vendor risk assessment lifecycle using both AI and traditional tooling

AI Governance

  • Support the implementation and operationalization of AI risk and governance controls in alignment with ISO/IEC 42001 (AI Management System) and emerging regulatory guidance e.g., CAIA (Colorado AI Act).
  • Monitor AI systems for compliance with ethical and legal standards.

WHO YOU ARE:

  • 3-5 years of experience in information security, GRC, or related disciplines.
  • Familiarity with security compliance frameworks and regulation (e.g., SOC 2, ISO 27001, NIST, HIPAA).
  • Experience responding to security questionnaires and customer due diligence requests.
  • Experience performing vendor security reviews and risk assessments.
  • Strong organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
  • Passionate advocate for governance, risk, and compliance, believing that these are not merely check box activities, but vital tools that significantly improve security posture and protect the organization.
  • Interest in emerging technologies and willingness to develop subject matter expertise in AI risk and compliance.

SALARY (BEFORE BONUS POTENTIAL):  $120,000 - $145,000

Offer amounts for both remote and in office roles are influenced by geographic location.

CYBERSECURITY AWARENESS NOTICE

In response to ongoing and industry-wide fraudulent recruitment activities (i.e., job scams), Rightway wants to inform potential candidates that we will only contact them from the @rightwayhealthcare.com email domain. We will never ask for bank details or deposits of any kind as a condition of employment.

ABOUT RIGHTWAY:

Rightway is on a mission to harmonize healthcare for everyone, everywhere. Our products guide patients to the best care and medications by inserting clinicians and pharmacists into a patient’s care journey through a modern, mobile app. Rightway is a front door to healthcare, giving patients the tools they need along with on-demand access to Rightway health guides, human experts that answer their questions and manage the frustrating parts of healthcare for them.

Since its founding in 2017, Rightway has raised over $205mm from investors including Khosla Ventures, Thrive Capital, and Tiger Global. We’re headquartered in New York City, with satellite offices in Denver and Dallas. Our clients rely on us to transform the healthcare experience, improve outcomes for their teams, and decrease their healthcare costs.

HOW WE LIVE OUR VALUES TO OUR TEAMMATES:

We’re seeking those with passion for healthcare and relentless devotion to our goal. We need team members that embody our following core values:

1) We are human, firstOur humanity binds us together. We bring the same empathetic approach to every individual we engage with, whether it be our members, our clients, or each other. We are all worthy of respect and understanding and we engage in our interactions with care and intention. We honor our stories. We listen to—and hear—each other, we celebrate our differences and similarities, we are present for each other, and we strive for mutual understanding.

2) We redefine what is possibleWe always look beyond the obstacles in front of us to imagine new solutions. We approach our work with inspiration from other industries, other leaders, and other challenges. We use ingenuity and resourcefulness when faced with tough problems.

3) We debate then commitWe believe that a spirit of open discourse is part of a healthy culture. We understand and appreciate different perspectives and we challenge our assumptions. When working toward a decision or a new solution, we actively listen to one another, approach it with a “yes, and” mentality, and assume positive intent. Once a decision is made, we align and champion it as one team.

4) We cultivate gritChanging healthcare doesn’t happen overnight. We reflect and learn from challenges and approach the future with a determination to strive for better. In the face of daunting situations, we value persistence. We embrace failure as a stepping stone to future success. On this journey, we seek to act with guts, resilience, initiative, and tenacity.

5) We seek to delightHealthcare is complicated and personal. We work tirelessly to meet the goals of our clients while also delivering the best experience to our members. We recognize that no matter the role or team, we each play a crucial part in our members’ care and take that responsibility seriously. When faced with an obstacle, we are kind, respectful, and solution-oriented in our approach. We hold ourselves accountable to our clients and our members’ success.

Rightway is Proudly an Equal Opportunity Employer that believes in strength in the diversity of thought processes, beliefs, background and education and fosters an inclusive culture where differences are celebrated to drive the best business decisions possible. We do not discriminate on any basis covered by appropriate law. All employment is decided on the consideration of merit, qualifications, need and performance.

+400% к собеседованиям

Создайте идеальное резюме с помощью ИИ-агента

Создайте идеальное резюме с помощью ИИ-агента

Навыки

  • Audit
  • SOC 2
  • ISO 27001
  • NIST
  • HIPAA
  • Risk Assessment
  • GRC
  • ISO 42001
  • Vendor Risk Management

Возможные вопросы на собеседовании

Проверка практического опыта работы с ключевым для компании стандартом.

Опишите ваш опыт подготовки к аудиту SOC 2: с какими основными трудностями вы сталкивались при сборе доказательств?

Оценка способности кандидата работать с новыми технологиями, упомянутыми в вакансии.

Как бы вы подошли к оценке рисков безопасности при внедрении новой модели ИИ в продукт компании?

Проверка навыков управления сторонними рисками.

Каков ваш алгоритм действий, если критически важный вендор не соответствует стандартам безопасности Rightway?

Оценка коммуникативных навыков и умения работать с отделом продаж.

Как вы приоритизируете запросы от отдела продаж на заполнение анкет безопасности при сжатых сроках?

Проверка понимания специфики отрасли.

В чем заключаются основные особенности обеспечения комплаенса по HIPAA в облачной среде?

Похожие вакансии

Atom group
4 000 $ – 5 000 $

Senior Information Security (ИБ)

SeniorУдалённоБеларусь
Information Security · DevSecOps · SDLC · Risk Management · Security Policy · DevOps
+6 навыков
SDOdev
380 000 ₽ – 500 000 ₽

Senior Android Security / Reverse Engineer (HTTPS Traffic, Google Services)

SeniorУдалённоРоссия
Android · iOS · TCP/IP · HTTPS · Cryptography · MITM · Frida · Objection · Apktool · Jadx · Hopper · Smali · Hermes · Swift · Dart · Objective-C · C++ · Reverse Engineering · Cybersecurity
+19 навыков
Innostaff
Не указана

Сеньор AppSecOps-инженер

SeniorУдалённоБеларусь
AppSecOps · DevSecOps · SAST · DAST · SCA · CI/CD · Cybersecurity · Kubernetes · Docker
+9 навыков
MTS Web Services
250 000 ₽ – 300 000 ₽

Старший эксперт SIEM

SeniorВ офисеРоссия
SIEM · SoC · Linux · Windows · macOS · CCNA · LPIC-1 · Cybersecurity · Incident Response · Network Security
+10 навыков
Инфосистемы Джет
Не указана

Старший инженер внедрения SIEM

SeniorВ офисеРоссия
SIEM · SOAR · SGRC · ArcSight · MaxPatrol SIEM · FortiSIEM · QRadar · Splunk · Linux · Windows Server · Information Security
+11 навыков
Крипта
Не указана

Senior Security Auditor

SeniorУдалённо
Solidity · DeFi · EVM · Slither · Echidna · Foundry · Hardhat · Rust · Python · Go · Vyper · C++
+12 навыков
более 1000 офферов получено
4.9

1000+ офферов получено

Устали искать работу? Мы найдём её за вас

Quick Offer улучшит ваше резюме, подберёт лучшие вакансии и откликнется за вас. Результат — в 3 раза больше приглашений на собеседования и никакой рутины!

Страна
США
Зарплата
120 000 $ – 145 000 $