Information Security Analyst
Blue Cross & Blue Shield of Rhode Island
This security analyst role fits IT Support Group readers interested in third-party risk, privacy, compliance, and AI governance in a healthcare environment. You would help Blue Cross & Blue Shield of Rhode Island assess vendor controls, communicate risks, and track remediation across its vendor-oversight and AI-governance programs.
What you would work on:
- Conduct security, privacy, and risk assessments for third-party vendors, delegates, and AI-enabled solutions.
- Review SOC 2, HITRUST, ISO, and other security attestations and supporting control documentation.
- Maintain vendor and AI risk inventories, engagement records, assessments, and related documentation.
- Recommend mitigations and support remediation of cybersecurity, privacy, compliance, and operational risks.
- Monitor emerging threats, regulatory changes, and evolving third-party and AI governance practices.
Good fit if:
- You have at least three years of relevant experience, ideally in vendor management, third-party risk, or enhanced vendor oversight.
- You understand cybersecurity, privacy, technology risk, and governance controls.
- You can analyze evidence and communicate risk findings to business and technology stakeholders.
- Familiarity with AI risk, NIST AI RMF, ISO/IEC 42001, or healthcare standards is useful.
- CISSP, CISA, CRISC, or a related certification is preferred but not required.
Curated from Himalayas for IT Support Group readers. This is an external listing; use the apply link for the source listing and latest details.