Number of Positions In Requisition1
Job DetailsResponsible for effective management of information security and resilience risks through domain expertise in areas such as regulatory compliance, risk management, security data engineering, or organizational resilience. This position develops and enforces information security policies, performs advanced risk assessments, and ensures alignment with regulatory requirements. Uses data driven decision making to protect assets by identifying vulnerabilities, measuring risks, improving resilience, and promoting compliance through security awareness.
Job DescriptionSummaryResponsible for effective management of information security and resilience risks through domain expertise in areas such as regulatory compliance, risk management, security data engineering, or organizational resilience. This position develops and enforces information security policies, performs advanced risk assessments, and ensures alignment with regulatory requirements. Uses data driven decision making to protect assets by identifying vulnerabilities, measuring risks, improving resilience, and promoting compliance through security awareness.
Job Duties- Contribute to the implementation of an integrated Governance, Risk, and Compliance (GRC) program and tools to support GRC workflows, which align with organizational objectives and regulatory requirements.
- Develop and enforce enterprise-wide information security policies, standards, and procedures to support robust information security and operational resilience, including processes to manage exceptions to policies and standards.
- Perform risk assessments, including business impact assessments, third party risk assessments, and assessments of cloud systems. Synthesize data to inform senior leadership on security posture, resilience gaps, and emerging threats.
- Contribute to the prioritization and deployment of risk mitigation strategies using risk quantification methodologies, ensuring a coordinated response across business units and with external partners.
- Advance the culture of compliance and resilience by conducting enterprise-level information security awareness and business resilience training campaigns and tabletop exercises.
- Collaborate with cross-functional teams to integrate information security best practices and regulatory requirements into operational policies and procedures both within and beyond the immediate job area.
- Mentor and coach GRC analysts, fostering operational excellence and professional growth within the GRC organization.
- Develop executive dashboards and data pipelines to measure and communicate risk trends, compliance metrics, and strategic security objectives to senior stakeholders.
Minimum Qualifications- Bachelor's Degree in a science, technology, engineering, or math discipline or
- High School Diploma/GED and preferred certifications.
- 5 years related work experience
Physical DemandsLift and carry 25 lbs. frequent sitting/standing, frequent keyboard use, *patient care providers may be required to perform activities specific to their role including kneeling, bending, squatting and performing CPR.
Job Description Disclaimer: This position description provides the major duties/responsibilities, requirements and working conditions for the position. It is intended to be an accurate reflection of the current position, however management reserves the right to revise or change as necessary to meet organizational needs. Other responsibilities may be assigned when circumstances require.
Work ShiftWorkday Day (United States of America)
Worker Sub TypeRegular
Employee EntityThomas Jefferson University
Primary Location Address1100 Virginia Drive, Fort Washington, Pennsylvania, United States of America
BenefitsJefferson offers a comprehensive package of benefits for full-time and part-time colleagues, including medical (including prescription), supplemental insurance, dental, vision, life and AD&D insurance, short- and long-term disability, flexible spending accounts, retirement plans, tuition assistance, as well as voluntary benefits, which provide colleagues with access to group rates on insurance and discounts. Colleagues have access to tuition discounts at Thomas Jefferson University after one year of full time service or two years of part time service. All colleagues, including those who work less than part-time (including per diem colleagues, adjunct faculty, and Jeff Temps), have access to medical (including prescription) insurance.
For more benefits information, please click here