We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

SECURITY RISK ANALYST

Montefiore Medical Center
United States, New York, Yonkers
Sep 15, 2025

City/State:

Yonkers, New York

Grant Funded:

No

Department:

MIT - Information Security Governance

Work Shift:

Day

Work Days:

MON-FRI

Scheduled Hours:

8:30 AM-5 PM

Scheduled Daily Hours:

7.5 HOURS

Pay Range:

$107,280.00-$134,100.00

The Security Risk Management Analyst will be responsible for ensuring the organization's data remainssecure and all risks, vulnerabilities and defects are managed, tracked and remediated according to policyand/or best practices. The Information Security Risk Management Analyst must have experience withrisk management concepts and processes. The Information Security Risk Management Analyst will beresponsible for ensuring the organization remains secure and that all identified gaps are managed.

Responsibilities include:

  • Coordinate and facilitate the risk management program within specified policy, standardand procedures.
  • Communicate with auditors and regulators during compliance and regulatory reviews
  • Participate in information security audits ensuring technical compliance with security relatedregulatory requirements (HIPAA, PCI, etc.)
  • Collaboratively work with peers to ensure operational excellence
  • Contribute to risk assessments
  • Identify and prioritize risk based on impact and likelihood
  • Work directly with key business leaders to facilitate information risk analysis and riskmanagement processes, identify acceptable levels of risk, and establish roles and responsibilitieswith regards to information risk management
  • Execute the organization's risk procedures
  • Evaluate the results of the vendor assessment
  • Maintain risk registries
  • Maintain and monitor Information Security Risk Exception process to ensure identification ofareas of non-compliance

Requirements include:

  • Experience in creating and maintaining cybersecurity policies tailored to organizational needs.
  • Experience in identifying and assessing potential risks, developing risk mitigation strategies, and analyzing risk trends.
  • Experience conducting IT Risk Security Assessments.
  • Familiarity with industry regulations and standards: NIST, HIPAA, PCI.
  • Understanding of cybersecurity laws, regulations, and the implementation of security controls.
  • Experience managing risks associated with third-part vendors.

#SF-DICE

#SF-LI-SC

Montefiore Health System, Inc. is an equal employment opportunity employer. Montefiore Health System, Inc. will recruit, hire, train, transfer, promote, layoff and discharge associates in all job classifications without regard to their race, color, religion, creed, national origin, alienage or citizenship status, age, gender, actual or presumed disability, history of disability, sexual orientation, gender identity, gender expression, genetic predisposition or carrier status, pregnancy, military status, marital status, or partnership status, or any other characteristic protected by law.
Applied = 0

(web-759df7d4f5-mz8pj)