Company

Hawaii Medical Service AssociationSee more

addressAddressHonolulu, HI
type Form of workFull-Time
CategoryInformation Technology

Job description

Employment TypeFull-time
Exempt or Non-ExemptExempt
Job Summary

**Hybrid Work Environment - Must reside in Hawaii **

Pay Range: $90,770 - $156,409

Note: Individuals typically begin between the minimum to middle of the pay range

Reports to the Vice President, Chief Audit Executive (CAE), the Cybersecurity Governance Consultant is responsible for providing the organization with consulting and advisory services related to cybersecurity-related governance risk management functions.

These consulting and advisory services are intended to:

  1. Support the organization's efforts to improve its NIST cybersecurity maturity assessment score.
  2. Review adequacy of risk management operations with the goal of minimizing risk.
  3. Advise management on best practices for risk management, internal controls, and processes.

Responsible for designing, developing, documenting and communicating the 2nd line of defense strategy and governance program as it relates to cybersecurity. May assist with special reviews or consulting engagements as directed by the VP and CAE.


Minimum Qualifications
  1. Bachelor's degree or equivalent combination of experience and education.
  2. Ten years of IT, risk, audit, or cybersecurity-related work experience.
  3. Strong verbal and written communication skills. (including interviewing, reporting and presentation skills).
  4. Expertise with risk management.
  5. Knowledge of information systems or IT auditing.
  6. Strong leadership skills.
  7. Strong project management skills.
  8. Intermediate working knowledge of Microsoft Office applications, including but not limited to Word, Excel, Outlook, and PowerPoint.

Duties and Responsibilities
  1. Provide guidance and oversight to IT Security and Corporate Governance functions as it relates to remediation activities intended to address NIST cybersecurity maturity assessment gaps.
    • Advise and participate during NIST-related project meetings.
    • Review NIST remediation work performed to ensure it meets intended objectives, with sufficient design and effectiveness.
    • Provide a high-level programmatic view on the path to enhanced NIST maturity to management, senior management, the HMSA Board of Directors, etc.
  2. Design and deploy the 2nd line of defense cybersecurity program in support of the overall Corporate Governance function to provide appropriate oversight and monitoring that leads to improved decision-making.
    • Drive strategic efforts to educate and advise key internal stakeholders and business leaders regarding the program, while ensuring alignment with current HMSA functions.
    • Communicate the vision and purpose of the 2nd line of defense cybersecurity program via presentations to senior management and the HMSA Board of Directors, as well as via internal management and operational-level training.
    • Create program governance documents, such as a charter, policies, standards, procedures, risk reporting, and an operational roadmap to support the program's strategy.
    • Inventory cybersecurity-related compliance requirements, which may include but are not limited to, regulatory requirements, Blue Cross Blue Shield Association requirements, government program-related requirements, and employer group requirements, and create a risk and controls mapping for improved oversight and identification of gaps.
    • Keep abreast of Cybersecurity Governance program updates, emerging issues, latest strategies, etc.
  3. Provide other consultative services to executives and key management leaders that aligns with HMSA's efforts to implement improved risk management strategies as assigned.
  4. Other Duties/Functions
    • Performs all other miscellaneous responsibilities and duties as assigned or directed.
    • Maintain a comprehensive knowledge of risk management activities, internal controls, NIST standards and guidance. Maintain requisite knowledge of cybersecurity risk management trends and updates by participating in appropriate professional organization trainings and seminars, as directed.
 
#LI-Hybrid

Refer code: 7906337. Hawaii Medical Service Association - The previous day - 2024-01-25 23:12

Hawaii Medical Service Association

Honolulu, HI
Popular Governance Consultant jobs in top cities

Share jobs with friends