Job Details

ID #41100503
State California
City Oakland
Job type Permanent
Salary USD TBD TBD
Source Blue Shield Of California
Showed 2022-05-18
Date 2022-05-17
Deadline 2022-07-16
Category Security
Create resume

Information Security Risk and Governance Specialist, Principal

California, Oakland, 94601 Oakland USA

Vacancy expired!

Blue Shield of California's mission is to ensure all Californians have access to high-quality health care at a sustainably affordable price. We are transforming health care in a way that truly serves our nonprofit mission by lowering costs, improving quality, and enhancing the member and physician experience.

To fulfill our mission, we must ensure a diverse, equitable, and inclusive environment where all employees can be their authentic selves and fully contribute to meet the needs of the multifaceted communities we serve. Our comprehensive approach to diversity, equity, and inclusion combines a focus on our people, processes, and systems with a deep commitment to promoting social justice and health equity through our products, business practices, and presence as a corporate citizen.

Blue Shield has received awards and recognition for being a certified Great Place to Work, best place to work for LGBTQ equality, leading disability employer, one of the best companies for women to advance, Bay Area's top companies in volunteering & giving, and one of the world's most ethical companies. Here at Blue Shield of California, we are striving to make a positive change across our industry and the communities we live in - join us!

Your Role

The Information Security Risk Management team includes the IT Risk Assurance program for technology risk identification to risk consequence management . The Principal, Information Security Risk and Governance Specialist will report to the Senior Manager, IT Risk Assurance . In this role you will be a key individual contributor to the IT Security team and Blue Shield's overall strategy and goals by providing consistent, coordinated security risk assessment and reporting in a partnership with leaders, stakeholders, and the business .

Your Work

In this role, you will:
  • Provide subject matter expertise, thought leadership, guidance, best practice and support across security and governance risk management functions
  • Drive security risk management processes by partnering with the business and technical stakeholder
  • Lead the Risk Management function and maintain risk management framework
  • Be responsible for entire portfolio delivery as IT Security Governance industry subject matter expert
  • Perform highly complex security risk reviews, identify gaps in IT Security Governance capabilities, and develop security risk mitigation plan
  • Support the strategic initiatives of Blue Shield of California
  • Partner with the mandates and compliance teams to develop, initiate, maintain, and revise policies and procedures to ensure world-class security for the operation of enterprise compliance
  • Partner with cross functional operational business partners including Customer Experience, Customer Care, Markets, IT, Health Solutions and Enterprise Risk Management to operationalize and socialize the risk management framework and program and to identify shifts in the organization's implicit risk appetite
  • Advise and support the development of reporting processes to communicate progress of in-flight initiatives, risks and planned initiatives to senior executives and stakeholders in other business units
  • Participate in technology risk governance activities (e.g., committees, presentation preparations, training and awareness, etc.)

Your Knowledge and Experience
  • Requires a bachelor's degree or equivalent experience
  • Requires at least 10 years of prior relevant experience
  • Requires industry knowledge of information assurance (IA) principles and organizational requirements that are relevant to confidentiality, integrity, and availability of data (e.g., NIST, ISO 27000, COBIT, etc.)
  • Requires business acumen, strategic thinking, financial analytical skills, and decision-making skills
  • Strong IT Process (e.g., ITIL, etc) knowledge desired
  • Professional security certification desired (e.g., CISSP, CEH, Security+, GSEC, CISM, CRISC, etc.)

Our Values
  • Honest. We hold ourselves to the highest ethical and integrity standards. We build trust by doing what we say we're going to do and by acknowledging and correcting where we fall short
  • Human. We strive to be our authentic selves, listening and communicating effectively, and showing empathy towards others by walking in their shoes
  • Courageous. We stand up for what we believe in and are committed to the hard work necessary to achieve our ambitious goals
#Dice

Vacancy expired!

Subscribe Report job