Job Description:The Governance, Risk, and Compliance (GRC) Manager is responsible for overseeing all areas of governance, risk, and compliance within the organization. This role involves managing the day-to-day responsibilities of GRC analysts, overseeing third-party risk management, vulnerability management, regulatory compliance, organizational security awareness, and policy development. The GRC Manager ensures that the organization adheres to legal standards and internal policies, and that risk management strategies are effectively implemented. Education Qualifications: Key Responsibilities: Team Management: Lead and manage a team of GRC analysts, providing guidance, mentorship, and performance evaluations to ensure effective execution of GRC initiatives Third-Party Risk Management Oversight: Oversee the assessment and monitoring of third-party vendors and partners to ensure they meet the organization's risk and compliance standards Vulnerability Management: Coordinate with IT and security operations teams to identify, assess, and remediate vulnerabilities within the organization's systems and infrastructure Regulatory Compliance: Ensure adherence to all relevant laws, regulations, and industry standards by implementing compliance programs and monitoring ongoing compliance efforts Organizational Security Awareness: Develop and implement security awareness programs to educate employees on security policies, procedures, and best practices Policy Development and Implementation: Create, update, and communicate governance, risk, and compliance policies and procedures across the organization Risk Assessment and Mitigation: Conduct regular risk assessments, identify potential risks, and work with partners to develop mitigation strategies to reduce impact on the organization Audit Coordination: Prepare for and coordinate internal and external audits, ensuring all necessary documentation is available and that audit findings are addressed promptly Reporting and Documentation: Maintain accurate records of GRC activities and prepare reports for senior management on the status of governance, risk, and compliance efforts Cross-Functional Collaboration: Work closely with other departments, such as Legal, IT, and Operations, to integrate GRC objectives and ensure a unified approach to risk management and compliance Education Requirements: Bachelor's degree in Information Security, Information Technology, Compliance, or a related field (or equivalent experience) Required Qualifications: Minimum of 5 years of experience in governance, risk management, and compliance roles, with at least 2 years in a managerial or leading position Strong knowledge of regulatory requirements and industry standards relevant to the organization (e.g., HIPAA, NIST, PCI-DSS) Experience with third-party risk management and vulnerability management processes Excellent leadership and team management skills Strong analytical and problem-solving abilities Exceptional communication and interpersonal skills Proficiency in GRC tools and software applications Preferred Qualifications: Healthcare IT Experience: Experience working in the healthcare sector, with a deep understanding of HIPAA compliance, electronic health record (EHR) systems, and the specific governance and compliance challenges in healthcare environments Experience in developing and delivering organizational security awareness programs Proven track record in policy development and implementation Relevant certifications such as CISA, CRISC, CISM, or CISSP are preferred Employee Benefits at Essentia Health: At Essentia Health, we're committed to supporting your well-being, growth, and work-life balance. Our comprehensive benefits include medical, dental, vision, life, and disability insurance, along with supplemental options to fit your needs. We offer a 401(k) plan with employer contributions to help you plan for the future, and we invest in your professional development through training, tuition reimbursement, and educational programs. To help you thrive both at work and at home, we provide flexible scheduling, generous time off, and wellness resources focused on your physical, mental, and emotional health. Please note that benefit eligibility may vary. For full details, refer to your benefit summary or contact our HR Service Center at (218) 576-0000. Job Location: Peerless Building Shift Rotation: Day Rotation (United States of America) Shift Start/End: Flexible/Flexible Hours Per Pay Period: 80 Compensation Range: $122658 - $183997 / year FTE: 1 Call Obligations: Yes
Job Title
Governance, Risk, and Compliance Manager