Job Description
• Conduct and document third-party risk assessments, reviewing security questionnaires, attestation/certification reports, BAAs, and technical diagrams
• Assist with risk quantification by gathering scenario inputs, impact drivers, and control maturity data.
• Support AI governance intake reviews and documentation for new use cases
• Track remediation and corrective actions related to findings, risks, and audit outcomes
• Assist in maintaining and updating risk registers and compliance documentation
• Assist in incident response documentation, root cause analysis, and identifying control improvements
• Support internal audits, e-discoveries, and evidence collection for regulatory and certification requirements
• Monitor and track remediation of identified risks and compliance gaps
• Help develop, document, and enforce security policies, standards, and procedures
• Collaborate with IT and business teams to ensure adherence to standards
• Prepare reports and dashboards for management on risk and compliance status
• Stay current on emerging regulations and security best practices
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
• Bachelor’s degree in Information Security, Computer Science, Risk Management, or related field
• 1+ year experience in IT, cybersecurity, or healthcare
• Ability to assess and evaluate technical documentation (data flow and network architecture diagrams) and attestations/certifications (SOC 2, ISO)
• Familiarity with the HIPAA Security Rule, NIST CSF 2.0, and PCI-DSS
• Strong analytical, documentation, and problem-solving skills
• Excellent written and verbal communication skills for both technical and non-technical stakeholders
• Ability to manage multiple projects, collaborate across IT and business teams, and drive remediation efforts
• Proficiency in Microsoft Office Suite (Excel, Word, PowerPoint)
Nice to Have Skills & Experience
• Exposure to ServiceNow and Safe Security
• Exposure to Factor Analysis of Information Risk (FAIR) for quantitative risk analysis
• Basic understanding of first and third-party risk management concepts and practices
• Familiarity with AI security concepts and emerging frameworks (NIST AI RMF, OWASP COMPASS)
• Industry certifications such as CompTIA Security+, CRISC, or CISA
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.