Manager - Cyber Risk Assessment (Cluster Office)
Job Description
Role & Responsibilities
Risk Assessment
NOTE: It only takes a few minutes to apply for a meaningful career in HealthTech - GO FOR IT!!
This is a 2 year Direct Contract role.
Risk Assessment
- Review risk assessments for ICT, OT, and medical devices in accordance with the Healthcare Cybersecurity & Technology Risk Management Framework and IT Security Policies.
- Provide security risk opinions, advisories, and recommendations.
- Challenge and validate security risk remediation priorities based on identified risk findings.
- Ensure consistency across risk recommendations, balancing operational efficiency with cybersecurity requirements.
- Support security compliance program by assessing and validating adherence to policy requirements.
- Track all policy deviations and ensure timely renewal, implementation of mitigation plans, and eventual closure of each deviation.
- Support the institution's incident response activities by assessing and classifying security incidents, initiating appropriate response actions, conducting impact assessments, containing and eradicating threats, coordinating recovery efforts, and performing post‑incident investigations
- Cybersecurity awareness initiatives, audit support, and security activities associated with key system migrations, including Windows migrations and system go‑live events.
- At least 6-8 years of experience in IT, Information Security, or IT Audit.
- At least 4 years of experience in cybersecurity, preferably in healthcare or other regulated industries.
- Knowledge of ICT, Operational Technology and Medical Device cybersecurity.
- Experience with Information and Cybersecurity concepts spanning infrastructure and application domains.
- Cybersecurity related certifications such as CISSP, CCSP, CISA, CISM, CRISC is preferred.
NOTE: It only takes a few minutes to apply for a meaningful career in HealthTech - GO FOR IT!!
This is a 2 year Direct Contract role.
