
location_onPlanifyr
The Information Security GRC Analyst III serves as a technical expert dedicated to managing day-to-day, short-term, and long-term information security risks. This role ensures that all activities remain within established risk tolerance levels and strictly adhere to approved risk management policies, procedures, and limits. You will act as a bridge between the Enterprise Risk Management office and operational teams, ensuring alignment across the organization.
In this position, you will engage with staff and vendors to develop robust risk mitigation plans, monitor their timely execution, and report on exceptions to management. The role requires a proactive approach to assessing vendor and third-party risks, fostering a collaborative environment where employees are aware of their accountabilities regarding information security. You will also contribute to the development of operational department goals and recommend technical advancements to enhance customer and partner experiences.
CareSource is an Equal Opportunity Employer dedicated to fostering an environment of belonging that welcomes and supports individuals of all backgrounds. We are highly invested in every employee's total well-being and offer a substantial and comprehensive total rewards package. Our organization values a collaborative workplace culture, partnerships, and personal excellence.
This role is based in a general office environment. Depending on project needs, you may be required to sit or stand for extended periods of time.
CareSource reserves the right to amend this job description at any time. Interested candidates should review the full requirements and submit their application through the official career portal.
Work model: On-site
Planifyr
LaunchTech • Colorado Springs, Colorado
Synchrony • Alpharetta, Georgia
General Dynamics Information Technology • On-site
Skills: It Audit, Application Security, Server Security, Network Security, Security Events Monitoring, Incident Response, Sarbanes-Oxley Compliance, Microsoft Office, Access Management, Authentication.
Education: Bachelor Degree or equivalent years of relevant work experience required.
Certified in Risk and Information System Control (CRISC) or System Security Certified Practitioner (SSCP)