Demo

GRC Analyst

Expion Health
Myrtle Point, OR Full Time
POSTED ON 1/26/2025
AVAILABLE BEFORE 4/25/2025

Job Description

Job Description

Governance, Risk, and Compliance (GRC) Analyst

Position Overview : The GRC Analyst will be responsible for supporting the development, implementation, and management of the company's governance, risk management, and compliance programs. The role involves identifying and mitigating risks, ensuring regulatory compliance, and strengthening internal controls to protect the organization from potential threats and to align with industry best practices.

Key Responsibilities :

  • Governance Frameworks : Develop, implement, and maintain governance frameworks, policies, and procedures to ensure effective oversight of corporate operations and business processes.
  • Risk Management : Identify, assess, and prioritize organizational risks (financial, operational, cyber, etc.) and support the development of mitigation strategies. Assist in performing risk assessments and creating risk management plans.
  • Compliance Monitoring : Ensure adherence to relevant laws, regulations, industry standards (such as GDPR, HIPAA, SOX, PCI DSS), and internal policies. Conduct regular audits and assessments to ensure compliance with regulatory requirements. For Expion Health, this means HITRUST Certification Annually.
  • Policy and Procedure Management : Assist in creating and maintaining policies, guidelines, and documentation that support the organization's GRC strategy. Work closely with other departments to ensure policies are communicated, understood, and followed.
  • Internal Controls : Evaluate the effectiveness of internal controls, recommend improvements, and collaborate with various teams to address compliance gaps and ensure continuous improvement.
  • Reporting & Documentation : Prepare reports on risk management activities, compliance status, and findings from audits or assessments. Document compliance issues, corrective actions, and risk mitigation efforts.
  • Training and Awareness : Conduct GRC-related training and awareness programs to ensure employees understand their roles in compliance and risk management.
  • Third-party Risk Management : Assist in evaluating and managing the risk associated with third-party vendors and partners. Ensure appropriate risk assessments and due diligence are conducted prior to onboarding third parties.
  • Incident Management : Support the organization in responding to compliance or risk-related incidents, including data breaches, regulatory inquiries, or internal control failures, and help in the implementation of corrective actions.
  • Collaboration : Work closely with cross-functional teams, including IT, legal, finance, and operations, to align governance, risk, and compliance initiatives across the organization.

Required Qualifications :

  • Education : Bachelor's degree in Business Administration, Finance, Information Security, Risk Management, or a related field (or equivalent experience).
  • Experience : At least 2-4 years of experience in governance, risk management, compliance, or audit roles, preferably in a corporate environment.
  • Certifications : Relevant certifications such as Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Auditor (CISA), Certified Information Privacy Professional (CIPP), or similar GRC-related certifications are preferred.
  • Technical Skills :

  • Familiarity with governance, risk management, and compliance software tools (e.g., RSA Archer, MetricStream).
  • Knowledge of applicable regulatory frameworks (e.g., GDPR, SOX, HIPAA, PCI DSS).
  • Strong understanding of risk assessment methodologies and frameworks.
  • Proficiency with Microsoft Office tools (Word, Excel, PowerPoint) and reporting tools.
  • Soft Skills :

  • Strong analytical and problem-solving skills.
  • Excellent attention to detail and organizational skills.
  • Effective communication skills, with the ability to present complex information to various stakeholders.
  • Ability to collaborate across teams and drive compliance initiatives.
  • Strong time management skills, with the ability to prioritize tasks effectively.
  • Preferred Qualifications :

  • Experience in an industry with high regulatory oversight (e.g., financial services, healthcare, technology).
  • Knowledge of IT security and cyber risk management concepts.
  • Familiarity with audit processes and methodologies.
  • Must be able to work independently and successfully with limited supervision.
  • What it's like to work with us

    Expion Health has been challenging the industry status quo for over 30 years, leading with ground-breaking innovation in a wide variety of healthcare cost-management solutions. Embracing the latest opportunities that technology can offer within a rapidly evolving industry, we provide exceptional service, technology, and product innovation to meet greater challenges in healthcare cost management.

    We have a distributed workforce so you can work from anywhere in the continental United States. Because of our distributed nature we have cultivated a connected culture that includes town halls, one-on-ones with executive leadership, educational forums, and even social clubs.

    We offer comprehensive benefits package which includes the following :

  • Medical, dental, and vision insurance
  • Healthcare and dependent care Flexible Spending Accounts
  • Healthcare Savings Account
  • 401(k) Savings and Investment Plan with company match
  • Paid time off
  • Phone and Internet Allowance
  • Voluntary and Group Term Life Insurance
  • Additional Insurance Coverage : Short Term Disability, Long Term Disability, Life, and Accidental Death & Dismemberment, Critical Illness, Accident, and Hospitalization, and Workman's Compensation
  • Employee Assistance Program
  • If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
    Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

    What is the career path for a GRC Analyst?

    Sign up to receive alerts about other jobs on the GRC Analyst career path by checking the boxes next to the positions that interest you.
    Income Estimation: 
    $74,367 - $98,680
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $99,138 - $133,641
    Income Estimation: 
    $94,973 - $125,755
    Income Estimation: 
    $96,228 - $129,772
    Income Estimation: 
    $58,470 - $77,272
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $99,138 - $133,641
    Income Estimation: 
    $75,905 - $103,047
    Income Estimation: 
    $74,367 - $98,680
    Income Estimation: 
    $74,367 - $98,680
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $99,138 - $133,641
    Income Estimation: 
    $94,973 - $125,755
    Income Estimation: 
    $96,228 - $129,772
    Income Estimation: 
    $96,228 - $129,772
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $121,926 - $164,179
    Income Estimation: 
    $124,413 - $154,875
    Income Estimation: 
    $87,128 - $112,557
    Income Estimation: 
    $161,616 - $208,121
    Income Estimation: 
    $131,676 - $196,560
    Income Estimation: 
    $105,243 - $143,011
    Income Estimation: 
    $101,446 - $138,837
    Income Estimation: 
    $87,128 - $112,557
    View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

    Job openings at Expion Health

    Expion Health
    Hired Organization Address Remote, OR Full Time
    Staff Accountant Job Description Join us in powering the future of healthcare cost containment. Expion Health (formerly ...
    Expion Health
    Hired Organization Address Remote, OR Full Time
    Senior Software Engineer Job Description Join us in powering the future of healthcare cost containment. Expion Health (f...
    Expion Health
    Hired Organization Address Remote, OR Full Time
    Patient Advocate Job Description Join us in powering the future of healthcare cost containment Expion Health (formerly H...

    Not the job you're looking for? Here are some other GRC Analyst jobs in the Myrtle Point, OR area that may be a better fit.

    Chargemaster Analyst

    MultiCare Health System, Myrtle Point, OR

    Data Analyst

    Equiliem, Myrtle Point, OR

    AI Assistant is available now!

    Feel free to start your new journey!