Enter a job title or keyword

Senior Security Analyst


Job Location:

Warwick, RI - USA

Monthly Salary: Not provided by the employer
Posted: 22 September 2026 (Yesterday)
Application Deadline: 20 December 2026
Vacancies: 1 Vacancy

Job Summary

About Us

Care New England Health System (CNE)and its member institutions Butler Hospital Women & Infants Hospital Kent Hospital VNA of Care New England Integra The Providence Center and Care New England Medical Group is a trusted integrated health care organization that fuels the latest advances in medical research attracts the nations top specialty-trained doctors hones renowned services and innovative programs and engages in the important discussions people need to have about their health and end-of-life wishes. Care New England is helping to transform the future of health care providing a leading voice in the ongoing effort to ensure the health of the individuals and communities we serve.

Job Summary

As a member of the Information Security team the Senior Security Analyst (GRC) is responsible for governance oversight enterprise risk management and compliance activities supporting the Care New England Health System.

This role ensures security programs are aligned with regulatory requirements industry standards and organizational risk tolerance. Primary areas of responsibility include policy governance enterprise risk register management audit coordination third-party risk oversight security awareness program management phishing simulation oversight and governance-level performance monitoring of security controls and tools.

The Senior Security Analyst does not perform direct engineering functions but provides oversight performance validation risk analysis and executive-level reporting to ensure effective security control implementation and regulatory readiness.

Duties & Responsibilities
  • Develop maintain and manage lifecycle governance of enterprise security policies standards and procedures.
  • Ensure alignment of administrative technical and physical controls with HIPAA and other regulatory frameworks.
  • Support annual enterprise risk assessments and maintain required compliance documentation.
  • Maintain and track the enterprise security risk register; coordinate remediation efforts with IT and business stakeholders.
  • Serve as primary liaison for internal and external audits coordinating evidence collection and corrective action plans.
  • Support third-party risk reviews and Business Associate Agreement (BAA) evaluations.
  • Oversee the security awareness and phishing simulation program; monitor user risk metrics and provide executive reporting.
  • Monitor governance performance of key security tools (EDR email security vulnerability management SIEM); review findings and validate remediation tracking.
  • Support incident documentation post-incident analysis and governance-based corrective action tracking.
  • Provide security governance consultation for IT initiatives and third-party engagements.
  • Participate in professional development and maintain current industry knowledge.
  • Perform other related duties as assigned.

Requirements

Education:

Bachelors degree in Information Technology Cybersecurity Information Assurance or related field required.

Experience:

Minimum of five (5) to seven (7) years of IT and/or information security experience including governance risk and compliance responsibilities. Experience in a highly regulated environment required; healthcare experience strongly preferred.

Licenses:N/A

Certifications:CISSP CISM IAM or equivalent industry certification required.

Knowledge Skills & Abilities:

Strong knowledge of HIPAA 164.308 164.310 and 164.312 HITECH RI state data protection laws and PCI DSS.

Demonstrated experience managing governance frameworks and regulatory compliance initiatives.

Strong analytical and problem-solving abilities.

Ability to interpret technical security findings and translate them into business risk terms.

Experience maintaining and tracking enterprise risk registers.

Strong written and verbal communication skills with the ability to present to executive leadership.

Ability to manage multiple priorities and adjust based on risk impact and regulatory deadlines.

Familiarity with EDR SIEM vulnerability management email security and related platforms from a governance perspective.

Ability to coordinate audit evidence collection and corrective action tracking.

Strong collaboration skills across technical and non-technical teams.

Americans with Disability Act Statement: External and internal applicants as well as position incumbents who become disabled must be able to perform the essential job-specific functions either unaided or with the assistance of a reasonable accommodation to be determined by the organization on a case-by-case basis.

EEOC Statement: Care New England is an equal opportunity employer. All applicants will be considered for employment without attention to race color religion sex sexual orientation gender identity national origin veteran or disability status

Ethics Statement: Employee conducts himself/herself consistent with the ethical standards of the organization including but not limited to hospital policy mission vision and values.


Required Experience:

Senior IC


About Company

Discover top-notch healthcare services at Care New England, specializing in obstetrics, oncology, and more. Begin your journey to improved health today.

View Profile View Profile