Information Security Risk Analyst (GRC) - Hybrid (PA/NJ/DE)

Independence
Philadelphia, PA

IBX is seeking an experienced Information Security Risk Analyst to be the primary owner of cybersecurity risk assessments and our enterprise cyber risk register. You’ll collaborate with ISOGRC and Security Operations to identify, assess, and monitor risks; map them to controls; design and execute regular effectiveness testing; and provide clear, actionable reporting on our risk posture to leadership. You will also drive the project risk assessment process end-to-end, working closely with the Project Management Office to keep initiatives moving while ensuring risks are mitigated and documented.

This role is ideal for someone who thrives in a hands-on environment, can independently run a cyber risk management platform, and is comfortable partnering across audit, third-party risk, and security operations in a regulated healthcare environment.

What You’ll Do

Own Project Risk Assessments: Intake project requests from the PMO, facilitate stakeholder meetings, perform risk analysis, document findings, recommend mitigations, and publish deliverables (risk assessment report, control requirements, sign-offs) to enable go/no-go decisions.

Build & Manage the Risk Register: Establish and maintain an enterprise cyber risk register in LogicGate—define risk taxonomy, scoring methodology, control mapping, and treatment plans; track status and residual risk over time.

Controls Testing & Assurance: Coordinate and perform control effectiveness reviews, define test plans/criteria, and report test results; partner with SecOps to implement corrective actions and continuous improvement.

Risk Reporting & Governance: Produce dashboards and executive-level reporting on risk posture, trends, key risk indicators (KRIs), and control performance; prepare materials for governance forums and leadership briefings.

Cross-Functional Collaboration: Work with Audit (SOC 2, HITRUST, external audits), Third-Party Risk (annual vendor assessments), Privileged Access Certification (bi-annual), and Access/Data Monitoring teams to ensure risk linkage and consistent control coverage.

Methodology & Process Maturity: Define and refine risk assessment procedures, SLAs, and templates; contribute to NIST CSF maturity assessments and HIPAA Security Risk Assessments; support remediation tracking and verification.

Qualifications:

Required

1-3 years in cybersecurity risk management or information security with direct experience performing project/initiative risk assessments and managing risk registers.

Strong knowledge of IT and security controls (identity/access, privileged access, change/configuration, vulnerability management, endpoint/network security, logging/monitoring, incident response).

Hands-on experience with a GRC or risk management platform (e.g., LogicGate, Archer, OneTrust, ServiceNow GRC) including workflow design, risk scoring, and reporting.

Familiarity with healthcare and regulated environments; practical understanding of frameworks and standards such as NIST CSF, HIPAA Security Rule, HITRUST, and SOC 2.

Proven ability to translate technical risk into business-impact narratives and clear mitigation plans; excellent writing and stakeholder facilitation skills.

Ability to operate independently, set priorities, and move multiple assessments to completion in a fast-paced environment.

Preferred

Experience implementing LogicGate (risk taxonomy, controls library, workflows, dashboards).

Exposure to third-party security risk assessments and integration of vendor risks into enterprise risk register.

Experience with privileged access governance/certification and evidence collection.

Certifications: CRISC, CISSP, CISM, CGEIT, HITRUST, CCSK (or equivalent).

Experience with control testing and audit readiness (SOC 2/HITRUST) and developing KRIs/KPIs.

Hybrid

Independence has implemented a “Hybrid” model which consists of Associates working in the office 3 days a week (Tuesday, Wednesday & Thursday) and remotely 2 days a week (Monday & Friday). This role is designated as a role that fits into the “Hybrid” model. While associates may work remotely on our designated remote days, the work must be performed in the Tri-State Area of Delaware, New Jersey or Pennsylvania.

IBX is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to their age, race, color, religion, sex, national origin, sexual orientation, protected veteran status, or disability.

Must have an Android or iOS device which is compatible with the free Microsoft Authenticator app.

Posted 2026-02-17

Recommended Jobs

KFC Shift Manager

KBP Foods
Morgantown, PA

Join KBP Foods' KFC franchise as a Shift Manager and lead a dedicated team in delivering exceptional customer service at one of our bustling locations. As a pivotal part of the restaurant's success, …

View Details
Posted 2026-01-28

Elementary Classroom Aide, Monitor, and Transfer Bus Rider (Anticipated)

Palmyra Area School District
Palmyra, PA

JobID: 948 Position Type: Support Staff Date Posted: 1/20/2026 Location: Lingle Avenue Elementary School Date Available: 02/17/2026 Closing Date…

View Details
Posted 2026-02-12

Regional Account Manager (Pennsylvania)

Ironwear
Philadelphia, PA

Summary Ironwear is a safety solution provider. For over 30 years we have manufactured, developed, and reengineered Personal Protective Equipment (PPE) for all industrial markets around the globe.…

View Details
Posted 2026-02-14

Plant Power Systems Electrician

Donnelley Financial Solutions
Lancaster, PA

About the Role Our 24/7 manufacturing operation relies on reliable power and precise controls. As a Plant Power Systems Electrician, you will keep production running by maintaining, troubleshooting,…

View Details
Posted 2026-02-17

Sales Representative - Remote Position

Legacy Life Recruitment
Allentown, PA

We are HIRING a few select individuals that want to help others protect their future and make money simultaneously. This is a FULL COMMISSION position. The insurance industry is one of the most stabl…

View Details
Posted 2026-01-27

Mental Health Therapist - 1099 Contractor - Pennsylvania

Lyra Health
Clearfield, PA

About Lyra Lyra Health is the leading provider of mental health solutions for employers supporting more than 20 million people globally. The company has published more than 20 peer-reviewed studies, …

View Details
Posted 2026-01-29

Sprinter/Cargo Van Owner Operator

Empire National Inc.
Pittsburgh, PA

OTR and Local Drivers Wanted Across the State! Apply here or contact the recruiters: Josh Terrazas at (864) 987-8484, [email protected] . Jamie Page at (864) 900-2122, jamiepa@empir…

View Details
Posted 2026-01-20

QA Inspector

Pretium Packaging
Bethlehem, PA

Job Details Description the last 24 hours of plant operation. Deal with any issues that need immediate attention with priority given to the containment of any suspect product. Review schedule…

View Details
Posted 2026-02-10

Well Driller's Assistant

Team Builder Recruiting
Denver, PA

Well Driller's Assistant Lancaster County, PA Are you mechanically inclined? Love working outdoors, on mechanical projects, or operating heavy equipment? Looking for a hands-on role where you c…

View Details
Posted 2026-01-30

Territory Manager, Roofing and Waterproofing

ICP Group
Philadelphia, PA

Innovative Chemical Products Group (ICP Group) is a leading formulator and manufacturer of specialty coatings, adhesives, and sealants serving the construction and industrial end markets. ICP Group is…

View Details
Posted 2026-01-15