Governance, Risk, and Compliance (GRC) Specialist
Get alerts for roles like this
More Governance, Risk, and Compliance (GRC) Specialist roles in Remote — straight to your inbox. No account needed.
Applying to this role? Tailor your résumé to this job description in one click, then download it clean — no watermark, no subscription.
Job Description
The Governance, Risk, and Compliance (GRC) Specialist is a strategic role within DeepHealth ’s Quality, Regulatory, and Compliance department, responsible for assisting in the development, implementation, and maintenance of comprehensive information security compliance strategies.
This position is critical in protecting organizational data, ensuring regulatory adherence, and mitigating potential security risks in the complex digital health landscape.
Requirements
Duties and Responsibilities As the Governance, Risk, and Compliance Specialist, this position will work with Information Security, IT Operations, Sec Operations and the broader Compliance team to: A successful GRC Specialist will: · Develop and implement holistic security compliance programs · Use Vanta to manage existing security certifications and requirements · Manage comprehensive risk management frameworks · Design and maintain security policies, procedures, and guidelines · Continuously assess and update security strategies · Ensure alignment with organizational objectives and regulatory requirements Regulatory Compliance: · Ensure compliance with complex regulatory standards and certifications including, but not limited to: HIPAA SOC 2 ISO 27001 C5 DSP Toolkit Cyber Essentials HITRUST · Conduct thorough risk assessments and vulnerability evaluations · Prepare detailed compliance reports and documentation · Support external and internal audit processes · Track and implement regulatory changes Technical Security: · Perform comprehensive security vulnerability assessment · Develop and implement security control frameworks · Monitor and analyze security incidents and breaches · Design and conduct security awareness training programs · Manage access control and identity management systems · Evaluate and recommend security technologies and solutions Incident Response and Management: · Develop and maintain incident response plans · Coordinate rapid and effective responses to security incidents · Conduct pos
Required Skills
Prepare to Win This Role
Everything you need to ace the interview and negotiate top-of-band compensation.