Security Risk Analyst
Role details
Job location
Tech stack
Job description
ZOLL is a leading medical device manufacturer dedicated to innovating healthcare solutions and ensuring the highest standards of patient safety and product security. As we expand our cybersecurity and risk management capabilities, we are seeking a skilled Security Risk Analyst to join our team. The ideal candidate will have a strong background in risk management, excellent communication skills, and a proven track record of execution. This role will involve conducting comprehensive risk assessments, developing mitigation strategies, and ensuring the effective use of our GRC platform, AuditBoard., * Refine and execute risk management strategies
-
Conduct detailed risk assessments and analyses, often with limited information
-
Create comprehensive analysis documents and reports leveraging your direct work, assessment data provided by team members, industry best practices, and new research.
-
Collaborate with internal stakeholders, including IT, development teams, and senior management, to communicate risk findings, provide actionable insights, and develop mitigation recommendations based on risk prioritization and understanding of business drivers.
-
Proactively suggest and implement process improvements within the risk management process.
-
Provide training and guidance to stakeholders on risk management and cybersecurity best practices.
-
Support management in tracking and reporting through monitoring and reporting.
-
Utilize AuditBoard and other risk management tools to streamline risk assessment and monitoring processes., The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.
-
Standing - Occasionally
-
Walking - Occasionally
-
Sitting - Constantly
-
Talking - Occasionally
-
Hearing - Occasionally
-
Repetitive Motions - Frequently
Ability and willingness to work a fixed swing shift is required for this position.
Requirements
- 5+ years experience in information security risk management, with a preference for candidates with healthcare industry experience
- Experience in managing third party risk assessments or internal assessment processes
Knowledge, Skills And Abilities
- Strong understanding of regulatory requirements for medical devices.
- Strong knowledge of cybersecurity technologies, including on premise and cloud services
- Proficiency in using risk management and GRC tools
- Excellent communication skills, with the ability to convey complex risk concepts to diverse audiences.
- Excellent analytical and organizational skills, including the ability to independently project manage assessments.
- Proven ability to drive results and implement effective risk mitigation strategies.
- Familiarity with integrated risk management (IRM) approaches.