All roles

Sr. Information Security Risk Analyst [HIPAA & HITRUST & NIST SP 800-30, NIST SP 800-53

Remote · USA Full-time New today

Sr. Information Security Risk Analyst [Must Have HIPAA & HITRUST & NIST SP 800-30, NIST SP 800-53] 221 E Lane Street, Raleigh, NC/REMOTE 12 Months Description: The North Carolina Health Information Exchange Authority is seeking a skilled Information Security Risk Analyst on a contract basis to lead the execution of its annual enterprise security risk assessment.

  • This engagement ensures compliance with industry-standard frameworks, supports proactive risk mitigation, & positions NC HIEA for future HITRUST certification.Plan and conduct NC HIEA's annual enterprise security risk assessment using NIST SP 800-30, ISO 27005, or FAIR methodologies.
  • Ensure full alignment with NIST SP 800-53 Revision 5, including: RA (Risk Assessment), AC (Access Control), SC (System Communications Protection), IR (Incident Response), and more.
  • Incorporate NIST Privacy Framework and NIST SP 800-53 Rev. 5 privacy control families (AP, AR, DI, DM, IP, SE, TR, UL).
  • Build and maintain a comprehensive risk register, with treatment plans for mitigation, transfer, acceptance, or avoidance.
  • Map risks and mitigation efforts to HITRUST CSF control domains to support future certification
  • Develop and deliver documentation, dashboards, and executive summaries.
  • Collaborate with internal stakeholders to validate findings and support security governance efforts.

Apply tot his job Apply To this Job

Related roles

: SAP Security Analyst / Lead – GRC, S/4HANA & BTP (Experience: 10+ Years)

Remote · USA Full-time

Threat Intelligence Analyst

Remote · USA Full-time

Cloud Security Analyst

Remote · USA Full-time

Associate Security Analyst, Mandiant Threat Defense

Remote · USA Full-time

Advisor Security Analyst I

Remote · USA Full-time

Personnel Security Analyst

Remote · USA Full-time

Epic User Security Analyst I (Hybrid)

Remote · USA Full-time

Security Analyst

Remote · USA Full-time

AI & Emerging Tech Security Analyst

Remote · USA Full-time

IT Cloud Security Analyst III

Remote · USA Full-time

14 & 15 year olds needed | Deptford

Remote · USA Full-time

1st Party Casualty Adjuster

Remote · USA Full-time

Experienced Customer Service Specialist – Delivering Exceptional Experiences for arenaflex Customers

Remote · USA Full-time

Vice President, Delivery

Remote · USA Full-time

Experienced Bilingual Customer Service Representative – Spanish Language Support

Remote · USA Full-time

Production Artist

Remote · USA Full-time

Experienced Full Stack Customer Support Associate – Overnight Remote Support

Remote · USA Full-time

Experienced Customer Support Representative (Nights and Weekends) – Digital Support for arenaflex's Innovative Healthcare Solutions

Remote · USA Full-time

Experienced Data Entry Specialist – Remote Work Opportunity at arenaflex

Remote · USA Full-time

Experienced Online Chat Support Specialist – Enhancing arenaflex's Call Center Operations and HR Processes

Remote · USA Full-time