Help Protect the Technology That Supports Patient Care
We are seeking a skilled
Cybersecurity Risk Analyst to join our Information Security team. In this role, you will help identify, evaluate, monitor, and reduce cybersecurity risks across the organization while supporting the security of the systems and technologies that enable patient care.
You will work closely with IT, Security, and business stakeholders to assess threats, analyze vulnerabilities, strengthen security controls, and support compliance efforts. Your expertise will help guide risk-based decisions, improve security posture, and ensure the organization remains resilient against evolving cybersecurity threats.
This is an excellent opportunity for a cybersecurity professional who enjoys problem-solving, risk analysis, collaboration, and making a meaningful impact in a healthcare environment.
What You'll Do
- Conduct cybersecurity risk assessments for systems, applications, infrastructure, and business processes
- Identify, evaluate, and monitor security risks across the organization
- Assess third-party vendor risks and recommend appropriate mitigation strategies
- Analyze security incidents, vulnerabilities, and emerging threats to determine potential business impact
- Maintain risk registers, dashboards, and other risk management documentation
- Develop reports and communicate risk findings, trends, and recommendations to stakeholders and leadership
- Support compliance with regulatory requirements, industry frameworks, and organizational security standards
- Assist with internal and external audits by providing documentation and evidence of security controls
- Contribute to the development and maintenance of cybersecurity policies, standards, and procedures
- Recommend and help implement security controls that reduce organizational risk
- Partner with IT, Security, and operational teams to support risk management initiatives
- Provide guidance to stakeholders on secure practices and cybersecurity risk reduction
What We're Looking For
- Bachelor's degree in Cybersecurity, Information Technology, or a related field
- Four or more years of experience in cybersecurity, governance, risk and compliance (GRC), or a related field
- Experience conducting risk assessments and evaluating cybersecurity risks
- Knowledge of cybersecurity frameworks and regulatory standards, such as NIST, HIPAA, and PCI-DSS
- Understanding of vulnerability management, threat analysis, and security control implementation
- Familiarity with SIEM platforms, risk management tools, and cybersecurity monitoring solutions
- Knowledge of network security, cloud security, and data protection principles
- Strong analytical, problem-solving, and critical-thinking skills
- Excellent communication skills with the ability to explain technical risks to non-technical stakeholders
- Ability to manage multiple priorities and work effectively across departments
Preferred:
- Professional certifications such as CISM, CISA, CRISC, or similar cybersecurity credentials
- Experience supporting cybersecurity compliance, audit, and governance initiatives
- Experience working within a healthcare or highly regulated environment
What We Offer
- An opportunity to help protect the systems and technologies that support patient care and business operations
- Meaningful work that combines cybersecurity, risk management, compliance, and strategic problem-solving
- Exposure to enterprise technology environments, security programs, and emerging cybersecurity challenges
- Opportunities to lead and contribute to security improvement initiatives across the organization
- Collaboration with Information Security, IT, operational, and leadership teams
- Professional growth through ongoing learning, certifications, and hands-on cybersecurity experience
- A supportive environment that values innovation, continuous improvement, and knowledge sharing
- A stable organization where your expertise directly contributes to organizational resilience and security
- A culture built on teamwork, accountability, and protecting what matters most
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.