HimalayasHimalayas logo
Sentara HealthSH

IT Specialty Analyst - Cybersecurity Risk

Sentara Health is a leading integrated health system in the U.S., dedicated to improving health in Virginia and North Carolina through a comprehensive range of healthcare services delivered by over 30,000 employees.

Sentara Health

Employee count: 1001-5000

United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

City/State

Norfolk, VA

Work Shift

First (Days)

Overview:

Overview

A highly motivated and experienced Cybersecurity Risk Analyst is sought with a strong background in assessing and managing cybersecurity risks at both the application and enterprise levels. The ideal candidate will be comfortable engaging with stakeholders across various business units, capable of independently guiding teams through risk rating and remediation processes and experienced in handling policy exceptions and drafting procedural documentation. Familiarity with platforms like ServiceNow for risk management and program building, and a solid understanding of regulations such as HIPAA—including experience with HIPAA Security Assessments or Health Industry Cybersecurity Practices (HICP) assessments—is preferred.

Responsibilities

  • Conduct comprehensive risk assessments across applications, systems, and enterprise-wide initiatives to identify potential threats, vulnerabilities, and their impact on confidentiality, integrity, and availability of data.
  • Lead or support the execution of HIPAA Security Risk Assessments (SRA) and/or HICP assessments, including documenting findings, recommending corrective actions, and ensuring ongoing compliance.
  • Independently conduct risk rating for issues using ISO, COBIT, NIST frameworks in partnership with other stakeholders. Additionally, guide and facilitate diverse business units in performing their own risk ratings to help them understand risk implications and remediation priorities.
  • Collaborate with the stakeholders in developing and implementing risk mitigation strategies aligned with industry standards and best practices such as NIST, ISO 27001, and HIPAA.
  • Utilize Governance, Risk, and Compliance (GRC) tools—specifically ServiceNow—to manage risk registers, track remediation plans, automate workflows, and generate reports on risk status and compliance metrics.
  • Manage and oversee policy exception processes, including documentation, risk analysis, and tracking.
  • Stay current with the evolving threat landscape, regulatory changes, and emerging cybersecurity technologies to proactively identify and address potential risks.
  • Contribute to the continuous improvement of the organization's risk management program and cybersecurity posture.
  • Draft clear and actionable procedure documents and other risk-related documentation to support policy implementation and operational consistency.
  • Develop and deliver training and awareness programs to educate employees on cybersecurity risks, policies, and best practices.
  • Participate in incident response activities, providing risk analysis and remediation support as needed.

.

Education

  • Bachelor’s Degree (Preferred)
  • Experience in lieu of Bachelor’s Degree - 5+ years of relevant experience without a degree

Certification/Licensure

  • No specific certification or licensure requirements

Experience

  • 3-5 years of experience in cybersecurity risk management, including performing risk assessments at both application and enterprise levels.
  • Hands-on experience with GRC platforms, particularly ServiceNow, including modules related to risk, compliance, and policy management.
  • Demonstrated expertise in conducting risk assessments and developing mitigation strategies aligned with HIPAA, NIST, and ISO 27001.
  • Experience with HIPAA Security Risk Assessments and/or HICP assessments.
  • Proven ability to work independently, manage multiple projects, and collaborate with cross-functional teams.
  • Experience managing policy exceptions, including evaluating risks and ensuring proper documentation and approvals.
  • Skilled in drafting procedures and operational documentation related to cybersecurity risk and compliance processes.
  • Strong understanding of security principles, technical controls, and common attack vectors.
  • Excellent communication, interpersonal, and presentation skills with the ability to effectively engage technical and non-technical stakeholders across all levels.
  • Strong analytical, problem-solving, and critical thinking abilities.

Benefits: Caring For Your Family and Your Career

Medical, Dental, Vision plans
• Adoption, Fertility and Surrogacy Reimbursement up to $10,000
• Paid Time Off and Sick Leave
• Paid Parental & Family Caregiver Leave
• Emergency Backup Care
• Long-Term, Short-Term Disability, and Critical Illness plans
• Life Insurance
• 401k/403B with Employer Match
• Tuition Assistance – $5,250/year and discounted educational opportunities through Guild Education
• Student Debt Pay Down – $10,000
• Reimbursement for certifications and free access to complete CEUs and professional development
•Pet Insurance

•Legal Resources Plan

•Colleagues have the opportunity to earn an annual discretionary bonus if established system and employee eligibility criteria is met.

Sentara Health is an equal opportunity employer and prides itself on the diversity and inclusiveness of its close to an almost 30,000-member workforce. Diversity, inclusion, and belonging is a guiding principle of the organization to ensure its workforce reflects the communities it serves.

In support of our mission “to improve health every day,” this is a tobacco-free environment.

For positions that are available as remote work,Sentara Health employs associates in the following states:

Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington, West Virginia, Wisconsin, and Wyoming.

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Education

Bachelor degree

Experience

3 years minimum

Experience accepted in place of education

Location requirements

Hiring timezones

United States +/- 0 hours

About Sentara Health

Learn more about Sentara Health and their company culture.

View company profile

Sentara Health is an integrated, not-for-profit health care delivery system that has been improving health for over 130 years. Founded in 1888, the organization operates primarily in Virginia and North Carolina and has emerged as a leading integrated health system in the U.S., comprising 12 hospitals and serving over 1.2 million members through its health insurance plans. With more than 30,000 employees, Sentara focuses on delivering high-quality healthcare services and is committed to enhancing the health of the communities it serves.

Sentara’s mission, 'we improve health every day,' guides all of its initiatives. The organization is distinguished for its commitment to clinical quality, safety, and innovation, earning recognition from IBM Watson Health as one of the "Top 15 Health Systems" in the country. In addition, Sentara has been acknowledged by Forbes as a 'Best Employer for New Grads,' 'Best Employer for Veterans,' and 'Best Employer for Women.' Sentara aims to create an extraordinary health care experience through various programs that address social determinants of health and advance community health and wellness.

Claim this profileSentara Health logoSH

Sentara Health

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

25 remote jobs at Sentara Health

Explore the variety of open remote roles at Sentara Health, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Sentara Health

Remote companies like Sentara Health

Find your next opportunity by exploring profiles of companies that are similar to Sentara Health. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan