• Company Modernizing Medicine, Inc.
  • Employment Full-time
  • Location 🇺🇸 United States nationwide
  • Submitted Posted 1 week ago - Updated 1 minute ago
<div class="content-intro"><p style="text-align: left;"><strong>We are united in our mission to make a positive impact on healthcare. Join Us!&nbsp;</strong></p><ul><li><strong>South Florida Business Journal, Best Places to Work 2024</strong></li><li><strong>Inc. 5000 Fastest-Growing Private Companies in America 2024</strong></li><li><strong>2024 Black Book Awards, ranked #1 EHR in 11 Specialties</strong></li><li><strong>2024 Spring Digital Health Awards, “Web-based Digital Health” category for EMA Health Records (Gold)</strong></li><li><strong>2024 Stevie American Business Award (Silver), New Product and Service: Health Technology Solution (Klara)</strong></li></ul><p><strong><em>Who we are:</em></strong></p><p>We Are Modernizing Medicine (<a href="https://www.youtube.com/watch?v=NspiqEzcgRQ&amp;t=2s" target="_blank">WAMM</a>)! We’re a team of bright, passionate, and positive problem-solvers on a mission to place doctors and patients at the center of care through an intelligent, specialty-specific cloud platform. Our vision is a world where the software we build increases medical practice success and improves patient outcomes. Founded in 2010 by<a href="https://www.modmed.com/company/leadership/" target="_blank"> Daniel Cane and Dr. Michael Sherling</a>, we have grown to over 3400 combined direct and contingent team members serving eleven specialties, and we are just getting started! ModMed's global headquarters is based in Boca Raton, FL, with a growing office in Hyderabad, India, and a robust remote workforce across the US, Chile, and Germany.</p><hr><p>&nbsp;</p></div><p><a href="https://www.modmed.com/company/" target="_blank">ModMed</a> is hiring a driven GRC Analyst (Governance, Risk, and Compliance) Analyst to support the development and implementation of GRC strategies within ModMed. This role will ensure that ModMed adheres to regulatory requirements, industry standards, and best practices for cybersecurity. The ideal candidate will have a strong understanding of GRC frameworks, experience in risk <br>assessment and management, and the ability to collaborate across various departments to enhance our security posture.</p><p><em><strong>Your Role:</strong></em></p><p><span style="text-decoration: underline;"><span id="page17R_mcid4" class="markedContent">Governance</span></span></p><ul><li><span id="page17R_mcid5" class="markedContent">Develop and maintain cybersecurity policies, procedures, and standards.</span></li><li><span id="page17R_mcid6" class="markedContent">Ensure alignment of cybersecurity practices with business objectives and regulatory requirements.</span></li><li><span id="page17R_mcid7" class="markedContent">Assist in the creation and management of the cybersecurity governance framework.</span></li></ul><p><span style="text-decoration: underline;"><span class="markedContent"><span id="page17R_mcid10" class="markedContent">Risk Management</span></span></span></p><ul><li><span class="markedContent"><span id="page17R_mcid11" class="markedContent">Conduct risk assessments on third parties to identify and evaluate potential cybersecurity risks.</span></span></li><li><span class="markedContent"><span id="page17R_mcid12" class="markedContent">Develop and implement risk mitigation strategies and controls.</span></span></li><li><span class="markedContent"><span id="page17R_mcid13" class="markedContent">Monitor and report on risk management activities and the effectiveness of controls.</span></span></li></ul><p><span style="text-decoration: underline;"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid15" class="markedContent">Compliance</span></span></span></span></p><ul><li><span class="markedContent"><span class="markedContent"><span id="page17R_mcid16" class="markedContent">Ensure compliance with industry regulations and standards (PCI, HIPAA, SOC2).</span></span></span></li><li><span class="markedContent"><span class="markedContent"><span id="page17R_mcid17" class="markedContent">Conduct regular audits and assessments to ensure adherence to compliance requirements.</span></span></span></li><li><span class="markedContent"><span class="markedContent"><span id="page17R_mcid18" class="markedContent">Collaborate with internal and external auditors during compliance reviews and audits.</span></span></span></li></ul><p><span style="text-decoration: underline;"><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid21" class="markedContent">Security Awareness &amp; Training</span></span></span></span></span></p><ul><li><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid22" class="markedContent">Develop and deliver cybersecurity awareness training materials.</span></span></span></span></li><li><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid23" class="markedContent">Promote a culture of cybersecurity awareness across the organization.</span></span></span></span></li><li><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid24" class="markedContent">Monitor and report on the effectiveness of security awareness initiatives.</span></span></span></span></li></ul><p><span style="text-decoration: underline;"><span class="markedContent"><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid27" class="markedContent">Reporting &amp; Documentation</span></span></span></span></span></span></p><ul><li><span class="markedContent"><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid28" class="markedContent">Prepare regular reports on GRC activities and metrics for senior security management.</span></span></span></span></span></li><li><span class="markedContent"><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid29" class="markedContent">Maintain comprehensive documentation of all GRC activities, policies, and procedures.</span></span></span></span></span></li><li><span class="markedContent"><span class="markedContent"><span class="markedContent"><span class="markedContent"><span id="page17R_mcid30" class="markedContent">Ensure proper documentation of risk assessments, audit findings, and compliance activities.</span></span></span></span></span></li></ul><p><em><span style="font-weight: 600;">Skills &amp; Requirements:</span></em></p><ul><li>Bachelor’s degree in Information Security, Cybersecurity, or Information Technology or equivalent education and experience.</li><li><span id="page21R_mcid22" class="markedContent">Minimum of 3-5 years of experience in information&nbsp;</span><span id="page21R_mcid23" class="markedContent">security GRC, or related fields.</span></li><li><span id="page21R_mcid24" class="markedContent">Experience with PCI, HIPAA, SOC2, CIS&nbsp;Controls, and risk&nbsp;management, </span><span id="page21R_mcid25" class="markedContent">enterprise security risk&nbsp;management.</span></li><li><span class="markedContent">Familiarity with healthcare industry regulations and standards is a plus.</span></li><li><span class="markedContent"><span id="page21R_mcid34" class="markedContent">Proficiency in PCI and security&nbsp;risk assessments </span><span id="page21R_mcid35" class="markedContent">methodologies and tools.</span></span></li><li><span class="markedContent"><span id="page21R_mcid35" class="markedContent">Excellent problem-solving skills.</span></span></li><li><span class="markedContent"><span id="page21R_mcid36" class="markedContent">Strong communication and&nbsp;</span><span id="page21R_mcid37" class="markedContent">interpersonal skills.</span></span></li><li><span class="markedContent"><span class="markedContent"><span id="page21R_mcid38" class="markedContent">Strong understanding </span><span id="page21R_mcid39" class="markedContent">of security&nbsp;frameworks and&nbsp;standards (NIST CSF,&nbsp;PCI, HIPAA, SOC2,&nbsp;CIS Controls).</span></span></span></li><li><span class="markedContent"><span class="markedContent"><span id="page21R_mcid40" class="markedContent">Experience with GRC tools and technologies </span><span id="page21R_mcid41" class="markedContent">PCIP, ISA </span><span id="page21R_mcid42" class="markedContent">CISA Certification.</span></span></span></li></ul><p><span style="color: rgb(255, 255, 255);"><span class="markedContent"><span class="markedContent"><span class="markedContent">#LI-DV1</span></span></span></span></p><div class="content-conclusion"><p><strong><em>ModMed Benefits Highlight:&nbsp; </em></strong>At ModMed, we believe it’s important to offer a competitive benefits package designed to meet the diverse needs of our growing workforce. Eligible Modernizers can enroll in a wide range of benefits:</p><p><strong>India</strong></p><ul><li>Meals &amp; Snacks: Enjoy complimentary office lunches &amp; dinners on select days and healthy snacks delivered to your desk,</li><li>Insurance Coverage: Comprehensive health, accidental, and life insurance plans, including coverage for family members, all at no cost to employees,</li><li>Allowances: Annual wellness allowance to support your well-being and productivity,</li><li>Earned, casual, and sick leaves to maintain a healthy work-life balance,</li><li>Bereavement leave for difficult times and extended medical leave options,</li><li>Paid parental leaves, including maternity, paternity, adoption, surrogacy, and abortion leave,</li><li>Celebration leave to make your special day even more memorable, and company-paid holidays to recharge and unwind.</li></ul><p><strong>United States</strong></p><ul><li style="line-height: 1.5;">Comprehensive medical, dental, and vision benefits, including a company Health Savings Account contribution,</li><li style="line-height: 1.5;">401(k):&nbsp; ModMed provides a matching contribution each payday of 50% of your contribution deferred on up to 6% of your compensation. After one year of employment with ModMed, 100% of any matching contribution you receive is yours to keep.</li><li style="line-height: 1.5;">Generous Paid Time Off and Paid Parental Leave programs,</li><li style="line-height: 1.5;">Company paid Life and Disability benefits, Flexible Spending Account, and Employee Assistance Programs,</li><li style="line-height: 1.5;">Company-sponsored <a href="https://www.modmed.com/company/social-responsibility/">Business Resource &amp; Special Interest Groups</a> that provide engaged and supportive communities within ModMed,</li><li style="line-height: 1.5;">Professional development opportunities, including tuition reimbursement programs and unlimited access to <a href="https://www.linkedin.com/learning/subscription/topics?src=go-pa&amp;veh=sem_src.go-pa_c.LLS-C_NAMER_All_US_Search_Google-Brand_DR-PRS_Broad_LIL-HeadTerm-Alpha_All_English_Core-MKAG_pkw.linkedin%20learning_pmt.e_pcrid.343926466304_pdv.c_plc._trgid.kwd-47311766595_net.g_learning&amp;trk=sem_src.go-pa_c.LLS-C_NAMER_All_US_Search_Google-Brand_DR-PRS_Broad_LIL-HeadTerm-Alpha_All_English_Core-MKAG_pkw.linkedin%20learning_pmt.e_pcrid.343926466304_pdv.c_plc._trgid.kwd-47311766595_net.g_learning&amp;mcid=6626616148786065462&amp;cname=&amp;camid=664286762&amp;asid=37446315521&amp;targetid=kwd-47311766595&amp;crid=343926466304&amp;placement=&amp;dev=c&amp;ends=1&amp;gclid=Cj0KCQiAmL-ABhDFARIsAKywVaehuw9WLkfw1_Fpjj2ausilUwEui5-YCog3rFfTnqug4lO45n9Wm7waApJ9EALw_wcB&amp;gclsrc=aw.ds">LinkedIn Learning</a>,</li><li style="line-height: 1.5;">Global presence and in-person collaboration opportunities; dog-friendly HQ (US), Hybrid office-based roles and remote availability for some roles,</li><li>Weekly catered breakfast and lunch, treadmill workstations, Zen, and wellness rooms within our BRIC headquarters.</li></ul><hr><p><strong>PHISHING SCAM WARNING:&nbsp;</strong>ModMed is among several companies recently made aware of a phishing scam involving imposters posing as hiring managers recruiting via email, text and social media. The imposters are creating misleading email accounts, conducting remote "interviews," and making fake job offers in order to collect personal and financial information from unsuspecting individuals. Please be aware that no job offers will be made from ModMed without a formal interview process, and valid communications from our hiring team will come from our employees with a ModMed email address (<a href="mailto:first.lastname@modmed.com">first.lastname@modmed.com</a>). Please check senders’ email addresses carefully.&nbsp; Additionally, ModMed will not ask you to purchase equipment or supplies as part of your onboarding process. If you are receiving communications as described above, please report them to the <a href="https://consumer.ftc.gov/articles/how-recognize-and-avoid-phishing-scams">FTC website</a>.</p></div>

Loading similar jobs...

USA Remote Jobs

Discover fully remote job opportunities in the United States at USA Remote Jobs. Apply for roles like Software Developer, Customer Service Specialist, Project Manager, and more!

© 2025 Created by USA Remote Jobs. All rights reserved.