Blue Shield Of California

Information Security Risk and Governance Specialist, Consultant

Blue Shield Of California$100K — $130K *
Healthcare
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent experience required.
  • 7+ years of relevant experience in technology risk management needed.
  • Experience in healthcare, pharmaceutical, or biotechnology sectors is essential.
  • CISSP-ISSAP certification preferred for advanced knowledge.
  • Experience with red teaming and ethical hacking is an asset.
  • Familiarity with GRC practices and IT governance frameworks like COBIT and NIST required.
  • Strong communication skills for effective presentation at all levels are necessary.

Responsibilities

  • Participate in governance committees and present training and awareness programs.
  • Develop and manage technology governance programs to evaluate risk exposure.
  • Assess and enhance AI tool risk management capabilities across the organization.
  • Implement strategic goals as set by BSC leadership for risk management.
  • Conduct third-party risk assessments to ensure data security and integrity.
  • Enhance training initiatives for internal teams and third-party partners.
  • Collaborate with operational business units to promote IT risk management frameworks and identify risk appetite shifts.

Benefits

  • Flexible hybrid work environment with on-site collaboration.
  • Opportunity to work with cross-functional teams.
  • Engagement in transformative risk management and governance initiatives.
  • Access to professional development and training programs.
  • Impactful role in safeguarding sensitive data within the healthcare sector.
Full Job Description
Job Description

Your Role

The Technology and Data Trust Assurance Services team drives BSC technology and information security adherence to regulatory standards, as well as policies, standards, and controls development, with the goal of evaluating, directing and monitoring IT vendor performance, while safeguarding company assets and maintaining and securing the confidentiality, integrity, and availability of Blue Shield of California data. The Technology Risk and External Assurance program runs technology governance forums and manages technology risk from identification to risk consequence management for BSC. The Information Security Risk & Governance Specialist, Consultant will report to the Senior Manager, Technology Risk Assurance. In this role, you will be a key individual contributor to the Technology Risk and External Assurance team and Blue Shield's overall strategy and goals by providing consistent, coordinated technology governance, information security oversight, AI governance, technology risk assessment, and risk reporting in partnership with leaders, stakeholders, and Stellarus.

Responsibilities

Your Work

In this role, you will:

  • Participate in technology risk governance activities (e.g., committees, presentation preparations, training and awareness, etc.)
  • Develop and implement technology governance programs, including technical performance oversight, AI governance, and data exchange and third-party risk governance that will help BSC understand its inherent and residual risk exposure
  • Assess AI tools, techniques, and procedures to enhance AI risk management capabilities throughout the company
  • Implement strategic goals established by BSC leadership
  • Be responsible for third-party security risk assessment activities ensuring Blue Shield's data is stored, transmitted, and processed in a secure manner
  • Enhance and conduct training and awareness activities to business teams and applicable third parties
  • Partner with cross functional operational business partners including Customer Experience, Customer Care, Markets, Health Solutions and Enterprise Risk Management to operationalize and socialize the IT risk management framework and program and to identify shifts in the organization's implicit risk appetite.
  • Lead and support the development of reporting processes to communicate progress of in-flight initiatives, risks and planned initiatives to senior executives and stakeholders in other business units


Qualifications

Your Knowledge and Experience

  • Requires a bachelor's degree or equivalent experience
  • Requires at least 7 years of prior relevant experience
  • Previous experience working in the healthcare, pharmaceutical, biotechnology or related services industry is required
  • CISSP-ISSAP preferred
  • Red team experience preferred
  • Certified Ethical Hacker preferred
  • Knowledge of various information technology governance and control frameworks and industry standards such as COBIT, COSO, ITIL, PMBOK, HIPAA, and NIST are required
  • Knowledge of Artificial Intelligence (AI) governance and monitoring practices is preferred
  • Demonstrated experience as a governance, risk and compliance (GRC) expert is required
  • Requires business acumen, strategic thinking, financial analytical skills, and decision-making skills
  • Excellent communication and presentation skills at every level including executives is required
  • Experience working with healthcare partner and vendor contracts and understanding of the key components of basic agreements and how legal terms impact business terms and vice versa is preferred.


Hybrid

This role requires employees to be in - office based on our hybrid workplace model, balancing purposeful in - person collaboration with flexibility. For most teams, this means coming into the office two days each week.

Employees living more than 50 miles from an office location will work with their manager to determine in-office time based on business need.

#LI-CP4

Physical Requirements:

Office Environment - roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork - Activity level: Sedentary, frequency most of work day.

Please click here for further physical requirement detail.

About Blue Shield Of California

Blue Shield of California is a not-for-profit health plan provider that has been providing Californians with access to high-quality healthcare for over 80 years. The company offers a range of health insurance products and services to individuals, families, and employers. Blue Shield of California is committed to improving the health and wellbeing of its members and the communities it serves. The company is also committed to sustainability and has implemented a number of initiatives to reduce its environmental impact.
Learn more about Blue Shield Of California
Size
7,000 employees
Industry
Founded
1981

Similar Jobs

More Jobs at Blue Shield Of California

More Healthcare Jobs

Find similar Information Security Risk and Governance Specialist, Consultant jobs: