All roles

Senior Security Analyst

Remote · USA Full-time New today

ABOUT THE ROLE: Rightway Healthcare is looking for a Senior Security GRC Analyst ready to take their experience to the next level. If you've worked on GRC programs in a fast-paced or startup environment, this is your chance to apply that agility and execution focus in a growing healthcare organization. You'll also have the opportunity to contribute to emerging areas of AI risk and governance as Rightway integrates advanced technologies into its platform. Reporting to the Security GRC Manager, you'll own key deliverables that keep our security and compliance programs running smoothly, supporting customer assurance, vendor risk reviews, and recurring governance activities. This role is ideal for someone who enjoys hands-on GRC work and wants to grow as a senior individual contributor within a collaborative, mission-driven healthcare company transforming pharmacy benefit management and care navigation. WHAT YOU'LL DO:

  • Core GRC Operations
  • Coordinate and execute recurring GRC tasks such as quarterly access reviews, audit evidence collection, and risk register reconciliation.
  • Document and track completion of control activities and escalate issues where needed.
  • Assist with internal and external audits, ensuring timely and complete evidence collection and review.
  • Customer Assurance
  • Collaborate with Sales, Legal, and Product teams to lead responses for customer security questionnaires and RFPs, progressively owning more complex requests as your experience deepens.
  • Maintain and continuously improve a centralized repository of commonly requested security documentation and artifacts (e.g., SOC 2, SIG, CAIQ).
  • Vendor Risk Management
  • Work closely with a broad array of business leaders to conduct initial and periodic vendor risk assessments, ensuring that third parties meet Rightway's security and compliance standards.
  • Track and follow up on remediation plans and risk treatment for vendors posing unacceptable risk.
  • Enable and support automation and optimization of the vendor risk assessment lifecycle using both AI and traditional tooling
  • AI Governance
  • Support the implementation and operationalization of AI risk and governance controls in alignment with ISO/IEC 42001 (AI Management System) and emerging regulatory guidance e.g., CAIA (Colorado AI Act).
  • Monitor AI systems for compliance with ethical and legal standards.
  • WHO YOU ARE:
  • 3-5 years of experience in information security, GRC, or related disciplines.
  • Familiarity with security compliance frameworks and regulation (e.g., SOC 2, ISO 27001, NIST, HIPAA).
  • Experience responding to security questionnaires and customer due diligence requests.
  • Experience performing vendor security reviews and risk assessments.
  • Strong organizational skills and the ability to manage multiple tasks and deadlines simultaneously.
  • Passionate advocate for governance, risk, and compliance, believing that these are not merely check box activities, but vital tools that significantly improve security posture and protect the organization.
  • Interest in emerging technologies and willingness to develop subject matter expertise in AI risk and compliance.

SALARY (BEFORE BONUS POTENTIAL): $120,000 - $145,000 Offer amounts for both remote and in office roles are influenced by geographic location. CYBERSECURITY AWARENESS NOTICE In response to ongoing and industry-wide fraudulent recruitment activities (i.e., job scams), Rightway wants to inform potential candidates that we will only contact them from the @rightwayhealthcare.com email domain. We will never ask for bank details or deposits of any kind as a condition of employment. ABOUT RIGHTWAY: Rightway is on a mission to harmonize healthcare for everyone, everywhere. Our products guide patients to the best care and medications by inserting clinicians and pharmacists into a patient's care journey through a modern, mobile app. Rightway is a front door to healthcare, giving patients the tools they need along with on-demand access to Rightway health guides, human experts that answer their questions and manage the frustrating parts of healthcare for them. Since its founding in 2017, Rightway has raised over $205mm from investors including Khosla Ventures, Thrive Capital, and Tiger Global. We're headquartered in New York City, with satellite offices in Denver and Dallas. Our clients rely on us to transform the healthcare experience, improve outcomes for their teams, and decrease their healthcare costs. HOW WE LIVE OUR VALUES TO OUR TEAMMATES: We're seeking those with passion for healthcare and relentless devotion to our goal. We need team members that embody our following core values:

  • 1) We are human, first
  • Our

Apply tot his job Apply To this Job

Related roles

Security Operations Center (SOC) Level 2 Quality Analyst (100% Remote)

Remote · USA Full-time

[Remote] Process Safety Auditor - US Residence/Remote

Remote · USA Full-time

Corporate Safety Manager (hybrid or remote)

Remote · USA Full-time

Safety Expert

Remote · USA Full-time

Lead SOC Analyst

Remote · USA Full-time

Security Operations Center (SOC) Analyst

Remote · USA Full-time

SOC Analyst (EDR, Crowdstrike , Incident response)

Remote · USA Full-time

Security Operations Center (SOC) Analyst (Endpoint Detection & Response) (Remote)

Remote · USA Full-time

SOC Analyst – Contract

Remote · USA Full-time

Specialist Analyst - SOC AWS Security

Remote · USA Full-time

Experienced Customer Service Representative – Remote Work Opportunity at arenaflex

Remote · USA Full-time

Experienced Customer Service Representative – Deliver Exceptional Travel Experiences for arenaflex

Remote · USA Full-time

Multimedia Production Assistant Seasonal job at Chicago Zoological Society in Chicago, IL

Remote · USA Full-time

Research Health Economist

Remote · USA Full-time

Experienced Remote Data Entry Clerk – Entry Level – Daily/Weekly Pay Opportunities at arenaflex

Remote · USA Full-time

Experienced Data Entry Specialist – Southwest Airlines Remote Operations Support

Remote · USA Full-time

SaaS Administrator - Google Workspace

Remote · USA Full-time

Experienced Finnish Customer Service Specialist – Nikon Customer Support Team in Lisbon, Portugal

Remote · USA Full-time

Experienced Customer Service Representative – Delivering Exceptional Experiences in Ennis, TX at arenaflex

Remote · USA Full-time

Experienced Customer Support Specialist – Entry-Level Opportunity at arenaflex

Remote · USA Full-time