CrawlJobs Logo

Analyst, IT Governance, Risk & Compliance

https://www.cvshealth.com/ Logo

CVS Health

Location Icon

Location:
United States, Hartford

Category Icon
Category:
IT - Administration

Job Type Icon

Contract Type:
Employment contract

Salary Icon

Salary:

101970.00 - 203940.00 USD / Year

Job Description:

As an Analyst in the Governance, Risk, and Compliance (GRC) team within the Infrastructure Engineering organization, you will be focused on the success of audit, compliance and other GRC activities. You will bring your knowledge of GRC principles and real-world application of those principles in an enterprise infrastructure ecosystem to help our colleagues confidently implement practices that comply with CVS GRC and security frameworks and standards. You will be responsible for analyzing GRC related data and coordinating remediation activities to maintain a secure and compliant IT environment.

Job Responsibility:

  • Analyzing data from integrated risk management platforms for risk assessment, threat detection, compliance monitoring, and systems that enable the management of security posture, vulnerabilities, audits and policies
  • Assemble plans with timelines, resource assignments and milestones to remediate issues and risks on an enterprise-wide scale
  • Facilitate remediation efforts by assembling engineers, testers and other key contributors to complete the remediation activities
  • Lead audit evidence collection and serve as the central coordinator between the Engineering, Product, and CVS Audit teams
  • Ensure that all necessary audit evidence is collected, organized, and presented effectively, while minimizing disruptions to core engineering and product development activities
  • Assist application developers and infrastructure/cloud engineers in the implementation and remediation of technical solutions that meet specific GRC requirements
  • Collaborate with teams across the company (e.g., Network, Security, Operations) as needed to ensure compliance with required GRC frameworks
  • Collaborate closely with application development, engineering and other infrastructure teams to ensure compliance with frameworks as selected by enterprise GRC and Security teams
  • Educate and guide engineers and leaders across Cloud and Platform Engineering teams, providing information and advice on GRC activities, including rationale, recommended practices, and implementation strategies
  • Stay up-to-date with the latest developments in Cloud technology and broader technology trends and applicability to GRC responsibilities, sharing valuable insights with your team
  • Prepare reports for senior leaders to summarize GRC status and initiatives

Requirements:

  • 4+ years of experience with public & private cloud infrastructure and middleware
  • 4+ years of experience collaborating with enterprise-wide teams implementing GRC practices
  • 4+ years of experience facilitating the remediation of IT issues and risks
  • 2+ years of experience gathering evidence and forming audit responses in a regulated environment

Nice to have:

  • Experience working in a highly regulated company
  • Excellent analytical and problem-solving skills
  • Strong organizational skills that enable you to assemble and execute viable plans
  • Experience working with integrated risk management platforms for risk assessment, threat detection, compliance monitoring, and systems that enable the management of security posture, vulnerabilities, audits and policies
  • Ability to influence and collaborate with stakeholders at all levels
  • Excellent communications skills and proven ability to communicate effectively with senior management and business leaders
  • Experience evaluating and recommending new solutions to meet enterprise GRC requirements
  • Demonstrated teamwork, positive attitude and good rapport with peers and customers
  • Ability to multitask in a fast paced and continually changing environment
What we offer:
  • Affordable medical plan options
  • 401(k) plan (including matching company contributions)
  • Employee stock purchase plan
  • No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching
  • Paid time off
  • Flexible work schedules
  • Family leave
  • Dependent care resources
  • Colleague assistance programs
  • Tuition assistance
  • Retiree medical access

Additional Information:

Job Posted:
May 21, 2025

Expiration:
August 31, 2025

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:
Welcome to CrawlJobs.com
Your Global Job Discovery Platform
At CrawlJobs.com, we simplify finding your next career opportunity by bringing job listings directly to you from all corners of the web. Using cutting-edge AI and web-crawling technologies, we gather and curate job offers from various sources across the globe, ensuring you have access to the most up-to-date job listings in one place.