Sutter Health

Healthcare

Privacy&InformationSecurityRiskManagementAnalystII

$86–86k Sacramento, California, United States FULL TIME
Market Sentiment
HIGH DEMAND

Neural analysis suggests this role is
optimal for Mid candidates.

The Brief

“Privacy & Information Security Risk Management Analyst II at Sutter Health. Skills: Information security, Risk management, Security assessments. Conduct technical security reviews. Conduct security assessments”

Industry & Context.

Healthcare
Problems you'll solve

Problem-solving skills; Diagnostic capabilities

What They're Looking For.

Must Have

Bachelor's in Business, Computer Science, Engineering, Information Security, Management, Mathematics, Science, Technology or related field, 2 years recent relevant experience

Nice to Have

CISSP or CRISC certification preferred, Third-party/vendor security risk assessments, Conducting formal risk assessments, GRC or third-party risk management platforms, Continuous security monitoring tools, Assessing security risks affecting protected health information (PHI)

What You'll Do.

Conduct technical security reviews

Conduct security assessments

Produce security risk assessment reports

Function as technical advisor

Provide support leading resolution

Provide security training

Develop technical information security policies

Review technical information security policies

Conduct technical security-related research

Analyze technical security-related research

Translate research into input

How You'll Work.

Team & Collaboration

Information Services (IS) departments; Sutter Health business units; Multidisciplinary team

Communication Scope

Explain complex technical information; Explain sensitive information; Presentation skills

Process & Methodology

Project management, Prioritize tasks, Manage multiple projects

Full Job Description

We are so glad you are interested in joining Sutter Health! **Organization:** SHSO-Sutter Health System Office-Valley **Position Overview:** Uses the Sutter Health governance, risk management, and compliance (GRC) platform to conduct and validate technical security reviews and security assessments in alignment with the Sutter Health information security controls framework, state and federal regulations, and industry security best practices, culminating in the production of security risk assessment reports. Functions as a technical advisor to security leadership, Information Services (IS) departments, and Sutter Health business units on security-related issues and risks and provides support by leading resolution on complex security issues and initiatives. Provides security training to IS staff members through new hire orientation, just-in-time training, and regular department training. Develops and/or reviews technical information security policies, procedures, standards, and guidelines to support Sutter Health business initiatives in alignment with regulatory requirements, security best practices, and evolving technologies. Conducts technical security-related research and analysis and translates the results into meaningful input to the Information Security program. **Job Description** : ****Please Note: While this position is listed as hybrid, regular in-office attendance is required. Candidates should be prepared to commute to the office on a consistent basis to support team collaboration and business needs.**** **EDUCATION:** _Equivalent experience will be accepted in lieu of the required degree or diploma._ * Bachelor's in Business, Computer Science, Engineering, Information Security, Management, Mathematics, Science, Technology or related field **CERTIFICATION & LICENSURE:** * CISSP or CRISC certification preferred, or one of the certifications will be required within one year of hire **TYPICAL EXPERIENCE:** * 2 years recent relevant experience. **PREFERRED EXPE

Free ATS check

Applying for this Privacy & Information Security Risk Management Analyst II role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

How to Apply on Workday

  • Workday has a multi-step form — save your progress after every section.
  • "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
  • Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
  • Job requisition numbers are useful when following up with HR by email.

ANONYMOUS · UNFILTERED

What do employees actually say about Sutter Health?

Real rants from real employees. Read before you apply.

Read Company Rants →