All roles

Sr. Information Security Risk Analyst [HIPAA & HITRUST & NIST SP 800-30, NIST SP 800-53

Remote · USA Full-time New today

Sr. Information Security Risk Analyst [Must Have HIPAA & HITRUST & NIST SP 800-30, NIST SP 800-53] 221 E Lane Street, Raleigh, NC/REMOTE 12 Months Description: The North Carolina Health Information Exchange Authority is seeking a skilled Information Security Risk Analyst on a contract basis to lead the execution of its annual enterprise security risk assessment.

  • This engagement ensures compliance with industry-standard frameworks, supports proactive risk mitigation, & positions NC HIEA for future HITRUST certification.Plan and conduct NC HIEA's annual enterprise security risk assessment using NIST SP 800-30, ISO 27005, or FAIR methodologies.
  • Ensure full alignment with NIST SP 800-53 Revision 5, including: RA (Risk Assessment), AC (Access Control), SC (System Communications Protection), IR (Incident Response), and more.
  • Incorporate NIST Privacy Framework and NIST SP 800-53 Rev. 5 privacy control families (AP, AR, DI, DM, IP, SE, TR, UL).
  • Build and maintain a comprehensive risk register, with treatment plans for mitigation, transfer, acceptance, or avoidance.
  • Map risks and mitigation efforts to HITRUST CSF control domains to support future certification
  • Develop and deliver documentation, dashboards, and executive summaries.
  • Collaborate with internal stakeholders to validate findings and support security governance efforts.

Apply tot his job Apply To this Job

Related roles

: SAP Security Analyst / Lead – GRC, S/4HANA & BTP (Experience: 10+ Years)

Remote · USA Full-time

Threat Intelligence Analyst

Remote · USA Full-time

Cloud Security Analyst

Remote · USA Full-time

Associate Security Analyst, Mandiant Threat Defense

Remote · USA Full-time

Advisor Security Analyst I

Remote · USA Full-time

Personnel Security Analyst

Remote · USA Full-time

Epic User Security Analyst I (Hybrid)

Remote · USA Full-time

Security Analyst

Remote · USA Full-time

AI & Emerging Tech Security Analyst

Remote · USA Full-time

IT Cloud Security Analyst III

Remote · USA Full-time

Experienced Customer Service Representative – Delivering Exceptional Experiences for arenaflex Customers in Reno, NV

Remote · USA Full-time

Senior Manager, Medical Loss Ratio

Remote · USA Full-time

Experienced Customer Service Representative – Delivering Exceptional Travel Experiences Remotely

Remote · USA Full-time

Experienced Investigations & Response Manager, Customer Trust & Privacy – Strategic Leadership for Enhanced Customer Experience

Remote · USA Full-time

Experienced Customer Support Specialist (Remote) - arenaflex

Remote · USA Full-time

Diagnostic Radiologist Needed for Locum Tenens Coverage at Inpatient and ER Facility in Harvey, Illinois

Remote · USA Full-time

IFM Vendor Manager

Remote · USA Full-time

GCP Cloud Engineer

Remote · USA Full-time

Commercial Contracts & Pre-Construction Manager

Remote · USA Full-time

Experienced Remote Data Entry Clerk – Accuracy and Efficiency Expert

Remote · USA Full-time