Security Risk Management Analyst

Frankfort, Kentucky

CVS Health
Apply for this Job
At CVS Health, we're building a world of health around every consumer and surrounding ourselves with dedicated colleagues who are passionate about transforming health care.

As the nation's leading health solutions company, we reach millions of Americans through our local presence, digital channels and more than 300,000 purpose-driven colleagues - caring for people where, when and how they choose in a way that is uniquely more connected, more convenient and more compassionate. And we do it all with heart, each and every day.

Job Purpose and Summary:

Represent CVS Health information security practices via our client facing Information Security Client Assurance function. This role will provide extraordinary support to our clients and will navigate complex client security assurance relationship issues. You will do this by partnering with other technology teams, business account teams, legal & privacy. Delight our clients by providing Request For Information/Proposal (RFI/P) responses, responding to client third party risk management questionnaires and updating our client facing security materials based on the latest industry trends. Leverage & maintain a current knowledge base for all information security policies, standards, procedures and practices to accurately represent CVS Health's information security posture.

Required Qualifications
  • 2-5 years of Security Audit Management, Third Party Risk Management or information security related experience
  • 2+ years experience working with common security frameworks and regulations, including but not limited to NIST 800-53, ISO 27001/2, HIPAA/HITECH, HITRUST and the PCI-DSS
Preferred Qualifications

Knowledge of:
  • Enterprise level Information security policies and procedures
  • Working knowledge of regulatory (including audit frameworks) standards, including but not limited to NIST 800-53, SOX, SOC1/SOC2 Type II audits, HIPAA/HITECH, HITRUST, and the PCI-DSS
  • Previous experience in a client facing security role, third party risk management or controls assurance function
  • Cloud Security Control frameworks a bonus
Skill in:
  • Control evaluation, audit, and testing
  • Understanding security schedule legal terminology
  • Technical control negotiations
  • Strong interpersonal and collaboration skills
  • Strong written and verbal communication skills
Ability To:
  • Ability to comprehend implications of security risk & technical control implementations
  • Worked independently
  • Take initiative; Be a self-starter
  • Execute on assigned tasks
  • Collaborate across many teams
Education

Bachelor Degree or equivalent experience

Anticipated Weekly Hours

40

Time Type

Full time

Pay Range

The typical pay range for this role is:

$64,890.00 - $173,040.00

This pay range represents the base hourly rate or base annual full-time salary for all positions in the job grade within which this position falls. The actual base salary offer will depend on a variety of factors including experience, education, geography and other relevant factors. This position is eligible for a CVS Health bonus, commission or short-term incentive program in addition to the base pay range listed above.

Our people fuel our future. Our teams reflect the customers, patients, members and communities we serve and we are committed to fostering a workplace where every colleague feels valued and that they belong.

Great benefits for great people

We take pride in our comprehensive and competitive mix of pay and benefits - investing in the physical, emotional and financial wellness of our colleagues and their families to help them be the healthiest they can be. In addition to our competitive wages, our great benefits include:
  • Affordable medical plan options, a 401(k) plan (including matching company contributions), and an employee stock purchase plan .
  • No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching.
  • Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility.
For more information, visit

We anticipate the application window for this opening will close on: 07/05/2025

Qualified applicants with arrest or conviction records will be considered for employment in accordance with all federal, state and local laws.

We are an equal opportunity and affirmative action employer. We do not discriminate in recruiting, hiring, promotion, or any other personnel action based on race, ethnicity, color, national origin, sex/gender, sexual orientation, gender identity or expression, religion, age, disability, protected veteran status, or any other characteristic protected by applicable federal, state, or local law.

Date Posted: 20 April 2025
Apply for this Job