Student Veterans of America Jobs

Welcome to SVA’s jobs portal, your one-stop shop for finding the most up to date source of employment opportunities. We have partnered with the National Labor Exchange to provide you this information. You may be looking for part-time employment to supplement your income while you are in school. You might be looking for an internship to add experience to your resume. And you may be completing your training ready to start a new career. This site has all of those types of jobs.

Here are a few things you should know:
  • This site is mobile friendly. You do not need a log-in or password to access information.
  • Jobs on this site are original and unduplicated and come from three sources: the Federal government, state workforce agency job banks, and corporate career websites. All jobs are vetted to ensure there are no scams, training schemes, or phishing.
  • The site is refreshed daily to remove out-of-date content.
  • The newest jobs are listed first, so use the search features to match your interests. You can look for jobs in a specific geographical location, by title or keyword, or you can use the military crosswalk. You may want to do something different from your military career, but you undoubtedly have skills from that occupation that match to a civilian job.

Job Information

Fresenius Medical Care North America Lead Information Security Policy Analyst in Lexington, Massachusetts

POSITION FEATURES:

Fully remote position with occasional travel depending on business need.

PURPOSE AND SCOPE:

The Lead Governance, Risk, and Compliance Analyst will play a key role in leading the development and maintenance of the organization's global governance, risk management, and compliance programs. This position will support a broad range of activities across the organization.

LEAD INFORMATION SECURITY POLICY ANALYST ADDENDUM

  • Leads the development and implementation of global cybersecurity policies, standards, and procedures aligned with industry best practices, including NIST CSF and 800-series publications.

  • Advances the enterprise-wide cybersecurity governance function by fostering a union of business risk and information security practices.

  • Collaborates with business and IT leaders to analyze key global processes and develop new or adjusted information securityrequirements.

  • Works closely with security operations, engineering, and architecture teams to continuously align and improve information security practices.

  • Articulatesinformation security governance in business terms and champion awareness of requirements and best practices.

  • Facilitate examinations by security assessors and auditors for compliance obligations, such as HIPAA and ISO 27001.

  • Establishes, measures, and manages metrics to quantify and report global security posture.

  • Other duties as assigned.

PRINCIPAL DUTIES AND RESPONSIBILITIES:

  • Leads the development, implementation, and maintenance of an information security framework aligned with industry leading practices.

  • Leads the design and documentation of technical, administrative, and physical controls to ensure the business demonstrates compliance with its regulatory and compliance obligations.

  • Provides strategic direction within IT and information security initiatives to ensure the delivery of compliant and risk-appropriate solutions.

  • Facilitate examinations by security assessors and auditors for compliance obligations, such as HIPAA and ISO 27001.

  • Leads security risk assessments and recommends controls to mitigate identified security risks.

  • Communicates risk findings and recommendations to business stakeholders.

  • Leads the development and deployment of workforce security training and awareness.

  • Leads the development and implementation of global cybersecurity policies, standards, and procedures aligned with industry best practices, including NIST CSF and 800-series publications.

  • Leads the lifecycle management of information security policies.

  • Provides mentoring and quality reviews for other analysts.

PHYSICAL DEMANDS AND WORKING CONDITIONS :

  • The physical demands and work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

  • Occasional travel may be required due to the nature of the job (<10%).

SUPERVISION:

  • No supervision, but will provide technical direction and mentoring to junior analysts.

EDUCATION :

  • Bachelor's Degree or an equivalent combination of education and experience

EXPERIENCE AND REQUIRED SKILLS:

  • 7+ years' related experiencein cybersecurity governance, risk, compliance, information security, and/or other related roles.

  • Advancedknowledge of internal control structure, data, and technology

  • Advancedknowledge of NIST CSF, NIST SP 800-series, HIPAA, FIPS, and ISO 27001:2022, and other industry-leading standards and requirements.

  • Excellent verbal and written communication skills.

  • Excellentorganizational skills.

  • CISSP, CRISC, CISA, CISM, or other related certifications are preferred.

  • Demonstrated experience with ServiceNow GRC or a similar tool is preferred.

EO/AA Employer: Minorities/Females/Veterans/Disability/Sexual Orientation/Gender Identity

Fresenius Medical Care North America maintains a drug-free workplace in accordance with applicable federal and state laws.

DirectEmployers