Jobs

Security Compliance Lead

Who We Are

Verily is a subsidiary of Alphabet that is using a data-driven approach to change the way people manage their health and the way healthcare is delivered. Launched from Google X in 2015, Our purpose is to bring the promise of precision health to everyone, every day. We are focused on generating and activating data from a variety of sources, including clinical, social, behavioral and the real world, to arrive at the best solutions for a person based on a comprehensive view of the evidence. Our unique expertise and capabilities in technology, data science and healthcare enable the entire healthcare ecosystem to drive better health outcomes.

Description

We are seeking a highly skilled and experienced GRC Analyst specializing in security, audit, and attestation to join our team. As a GRC Analyst, you will play a crucial role in ensuring the security and compliance of our organization. Your expertise in security strategy, policies, and frameworks such as ISO 27001, HITRUST, HIPAA, and FEDRAMP will be invaluable in maintaining a robust security posture. Additionally, your knowledge of governance and management of security GRC functions will contribute to the overall success of our security program. 

Responsibilities

  • Conduct audits and assessments to evaluate the effectiveness of security controls, policies, and procedures within the organization.
  • Assist in developing and implementing security governance frameworks, policies, and standards to ensure compliance with industry regulations and best practices. Assist in the development and delivery of security awareness and training programs for employees.
  • Work collaboratively with security architecture and engineering teams to establish and maintain a continuous monitoring program to proactively identify and address security risks.
  • Manage and maintain tools and documentation related to security controls, audit findings, risk assessments, and compliance requirements.
  • Coordinate and participate in external audits and attestation processes, ensuring compliance with relevant standards and regulations and working directly with auditors.

Qualifications

Minimum Qualifications: 

  • Bachelor's degree in Computer Science, Information Systems, or a related field. 
  • 8+ years of experience as a GRC Analyst or similar role, with a focus on security, audit and attestation.
  • In-depth knowledge of security frameworks and regulations, such as  AICPA Trust Principles, ISO 27001, HITRUST, HIPAA, and FEDRAMP.

Preferred Qualifications: 

  • Relevant certifications such as CISSP, CISM, CRISC, or CISA are highly desirable.
  • Experience conducting security audits, risk assessments, and vulnerability assessments.
  • Excellent analytical and problem-solving skills, with the ability to identify and mitigate risks effectively.
  • Ability to translate technical security requirements into business language and communicate the value of security initiatives to key stakeholders
  • Working knowledge of GRC tools and technologies.

The US base salary range for this full-time position is $124,000-$191,000 + bonus + equity + benefits. Our salary ranges are determined by role, level, and location. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and additional factors, including job-related skills, experience, and relevant education or training. Your recruiter can share more about the specific salary range for your preferred location during the hiring process.

Please note that the compensation details listed in US role postings reflect the base salary only, and do not include bonus, equity, or benefits.

#LI-SR1

#LI-TB1

Why Join Us

Build What’s Vital.

At Verily, you are a part of something bigger. We are a diverse team of builders innovating at the intersection of health and technology—united by a shared spirit of curiosity, resilience and determination to make better health possible for all. This builder mindset means your fingerprints will be on the work that shapes the future of health. Fulfilling our precision health purpose starts with the health of our Veeps (what we call our employees), which is why we offer flexibility, resources, and competitive benefits to support you in your whole-person well being. We believe diversity of thought drives innovation—we unite the brightest minds, and encourage all Veeps to bring their lived experience to work with them.

If this sounds exciting to you, we would love to hear from you.

You can find out more about our company culture on our LinkedIn Company Page and Verily Careers page.

Cyber Security Jobs by Category

Cyber Security Salaries