Senior Security GRC Analyst

Alma · Remote

Company

Alma

Location

Remote

Type

Full Time

Job Description

Alma is on a mission to simplify access to high-quality, affordable mental health care. We do this by making it easy and financially rewarding for therapists to accept insurance and offer in-network care. When a provider joins Alma, they gain access to a suite of tools that not only help them better run their business, but also grow it sustainably and develop as a provider. Alma is available in all 50 states, with over 11,000 therapists in our growing network. Anyone looking for a therapist can browse Alma’s free directory. Alma has raised $220.5M in funding from Insight Partners, Optum Ventures, Tusk Venture Partners, Primary Venture Partners, Sound Ventures, BoxGroup, Cigna Ventures, and Rainfall Ventures. Alma was also named one of Inc’s Best Workplaces in 2022. 

Website
Job Board
Values
Candidate Interview Guide

Senior Security GRC Analyst

Alma is seeking a mission-driven Senior Security Governance Risk and Compliance (GRC) Analyst to join our team.  We are dedicated to building secure and compliant tools and services which help providers more easily manage and grow their practice.

Acting as a principal aide to the head of information security, this role will play a critical role in enabling a culture of security at Alma, making security a product differentiator that builds confidence and trust with our providers, and preparing Alma for annual audits and certifications (such as SOC 2 and HITRUST).

In this role you will perform risk assessments, maintain our security policies, educate our staff by developing a security awareness program, respond to security assessments, and review our vendor’s security. 

What you’ll do:

  • Performs risk assessments and reports on Alma’s risk management program
  • Collaborates with stakeholders to identify and facilitate implementation of mitigating controls
  • Streamlines and maintains Alma’s security policies and standards
  • Prepares organization and manages annual audit and certifications (SOC 2, HITRUST)
  • Educates Alma’s staff by creating and managing an effective security awareness program
  • Develops our vendor risk program, ensuring our vendors meet Alma security standards
  • Develops Alma’s Trust program, preparing materials and responses to security assessments and making security a product differentiator that builds confidence and instills trust with our providers 
  • Acts as a principal aide to the head of information security to develop and measure key metrics, and coordinate activities in support of cybersecurity priorities

Who you are:

  • You have 4+ years of work experience in information security, especially in an GRC analysis role
  • You have experience leading SOC 2 and/or HITRUST certifications with minimal findings
  • You strongly understand security best practices and controls frameworks (NIST CSF, NIST 800-53, AICPA Trust Services Criteria, HITRUST CSF, HIPAA)
  • Experience implementing security controls and policies that align with AWS security best practices
  • You have experience performing risk assessments, with an understanding of quantitative risk analysis frameworks (FAIR)
  • Experience writing customer facing materials in partnership with product and marketing teams
  • You have strong written and verbal communication skills and can convey complex technical topics to non-technical stakeholders clearly and concisely
  • You feel a passion for Alma's mission – to improve the experience of therapy for providers and their clients and simplify access to care

Benefits:

  • We’re a remote-first company 
  • Health insurance plans through Cigna (medical and dental) and MetLife (vision), including FSA & HSA plans
  • 401k plan (Roth and traditional)
  • Free Alma platform access 
  • Monthly therapy and wellness stipends
  • Monthly co-working space membership stipend
  • Monthly work-from-home stipend to power your wifi, lunches, coffee, etc 
  • Pet discount program through United Pet Care 
  • Financial perks and rewards through BenefitHub
  • Free EAP access through LifeWorks 
  • One-time home office stipend to set up your home office
  • Comprehensive parental leave plans 
  • 9 paid holidays, 1 Alma Mental Health Day, and 1 Alma Volunteering Day
  • Unlimited PTO

Salary Band: $145,000 - $175,000

Alma’s compensation philosophy is driven by our company value of building equity. To best ensure pay equity, we typically bring in new hires near the middle of our listed salary bands and we do not negotiate our compensation (i.e. all people hired at the same level & role are brought in at the same salary, equity, and benefits). The recruiter you work with can provide more details on our philosophy. 

All Alma jobs are listed on our careers page. We do not use outside applications or automated text messaging in our recruiting process. We will not ask for any sensitive financial or identification information throughout the recruiting process. Any communication during the recruitment process, including interview requests or job offers, will come directly from a recruiting team member with a helloalma.com email address.


Apply Now

Date Posted

03/31/2023

Views

8

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Senior Product Designer - Org & Security - Typeform

Views in the last 30 days - 0

This job description outlines a role in developing an intelligent contact management system with AI capabilities The position involves designing user ...

View Details

Senior Business Analyst - Xpansiv

Views in the last 30 days - 0

Xpansiv promotes its role as an energy market innovator with a global platform for environmental commodities The job posting seeks a Business Analyst ...

View Details

Senior Design Manager (Infrastructure) - Canonical

Views in the last 30 days - 0

Canonical a leading opensource provider seeks a Senior Design Manager to drive innovation in cloud and AI technologies The role offers remote work glo...

View Details

Recovery Analyst Underpayments - Trend Health Partners

Views in the last 30 days - 0

TREND Health Partners seeks an Underpayment Recovery Analyst to optimize client reimbursement through collaboration and detailed claim analysis The ro...

View Details

Senior Specialist Senior Accountant Shared Financial Services - Make-A-Wish America

Views in the last 30 days - 0

The text describes Make a Wish Foundations mission to grant childrens wishes and their community efforts It outlines job positions with remotehybrid o...

View Details

Fraud Investigation Analyst - Vonage

Views in the last 30 days - 0

The text describes the Trust Safety Teams mission to protect Vonages services from fraud and abuse detailing their proactive monitoring fraud detecti...

View Details