We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results

Senior Security Analyst- Governance, Risk and Compliance

Medica
401(k)
United States, Minnesota, Minnetonka
401 Carlson Parkway (Show on map)
Mar 12, 2025
Description

Security is accountable for assisting in designing, building, testing and implementing security systems and solutions within Medica.

The Sr. Security Analyst serves as a member of the Security Governance, Risk, and Compliance team to maintain the confidentiality, integrity and availability of sensitive company information. Responsibilities include subject areas such as: HIPAA, HITRUST SOC2, PCI, risk management, third party risk management and annual awareness training. This role is expected to design and develop programs to improve security standards, processes, procedures and solutions.

Key Accountabilities:



  • Third Party Risk Assessments

    • Assess Third Party Security Programs
    • Develop Monthly Reporting
    • Enhance existing Processes


  • Audit and Compliance Lead

    • Lead coordination, of HITRUST, SOC2, SOC1, Audits
    • Lead responses to Customer Audit Requests


  • Policy

    • Facilitate update of Security Policies and Standards
    • Ensure adherence with HIPAA and HITRUST


  • Awareness Training

    • Facilitate Annual Security Awareness Training
    • Execute updates to end user training




Minimum Qualifications:



  • Bachelors degree and 5 years experience; or equivalent combination of education and experience
  • Experience with HITRUST, SOC2, and or other Industry frameworks such as NIST
  • Experience with Third Party Assessments
  • Experience working with auditors, vendors, and third party partners
  • Experience in Policy development


This position is a Hub role, which requires an employee to occasionally come onsite to the designated office - Minnetonka, MN - for applicable heads-up work. Frequency is determined by business need as decided by leadership.

The full salary range for this position is $100,200 - $171,700. Annual salary range placement will depend on a variety of factors including, but not limited to, education, work experience, applicable certifications and/or licensure, the position's scope and responsibility, internal pay equity and external market salary data. In addition to base compensation, this position may be eligible for incentive plan compensation in addition to base salary. Medica offers a generous total rewards package that includes competitive medical, dental, vision, PTO, Holidays, paid volunteer time off, 401K contributions, caregiver services and many other benefits to support our employees.

The compensation and benefits information is provided as of the date of this posting. Medica's compensation and benefits are subject to change at any time, with or without notice, subject to applicable law.

Medica's commitment to diversity, equity and inclusion (DEI) includes unifying our workforce through learning and development, recruitment and retention. We consistently communicate the importance of DEI, celebrate achievements, and seek out community partnerships and diverse suppliers that are representative of everyone in our community. We are developing sustainable programs and investing time, talent and resources to ensure that we are living our values. We are an Equal Opportunity/Affirmative Action employer, where all qualified candidates receive consideration for employment indiscriminate of race, religion, ethnicity, national origin, citizenship, gender, gender identity, sexual orientation, age, veteran status, disability, genetic information, or any other protected characteristic.

Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
The contractor will not discharge or in any other manner discriminate against employees or applicants because they have inquired about, discussed, or disclosed their own pay or the pay of another employee or applicant. However, employees who have access to the compensation information of other employees or applicants as a part of their essential job functions cannot disclose the pay of other employees or applicants to individuals who do not otherwise have access to compensation information, unless the disclosure is (a) in response to a formal complaint or charge, (b) in furtherance of an investigation, proceeding, hearing, or action, including an investigation conducted by the employer, or (c) consistent with the contractor's legal duty to furnish information. 41 CFR 60-1.35(c)
Applied = 0

(web-b798c7cf6-l9rr9)