Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Senior GRC Analyst image - Rise Careers
Job details

Senior GRC Analyst

About Us

TherapyNotes is the go-to superhero for behavioral health Practice Management and EHR software! Our top-notch SaaS solution handles scheduling, billing, documenting, telehealth, and more so clinicians can focus on awesome patient care.

We're a dynamic team of pros who love to innovate and push the envelope, keeping our software cutting-edge. Join us, and let's revolutionize behavioral health software together while making a real difference!

Description

TherapyNotes is seeking an experienced cyber security professional to join our team of technology enthusiasts.  The right candidate should have a focus on cybersecurity compliance, security control implementation, risk/vulnerability management, continuous monitoring, and security awareness training. The role will serve as the liaison for external audits, oversee an internal cybersecurity audit program. This role requires a strong understanding of regulatory requirements, risk management frameworks, and industry best practices.

Responsibilities

  • Develop and implement GRC strategies, policies, and procedures to ensure compliance with regulatory standards and industry best practices.
  • Lead the assessment and management of risks across the organization, including conducting risk assessments, identifying gaps, and developing mitigation plans.
  • Collaborate with cross-functional teams to integrate GRC principles into business processes and systems.
  • Monitor regulatory changes and industry trends to ensure the organization remains compliant and proactive in addressing emerging risks.
  • Provide guidance and training to employees on GRC policies, procedures, and best practices.
  • Support the execution of audits, assessments, and compliance activities through validation of adherence to compliance standards.
  • Mentor and coach GRC analysts, fostering their professional development and growth within the organization.
  • Support the execution and continual improvement of the company’s information security program, with an emphasis on meeting HIPAA-HITECH, state, and GDPR compliance requirements
  • Identify and document cyber risks and manage mitigation, follow up on open security risks, and report issues to leadership
  • Assist with ad-hoc compliance reporting and follow up with customers and/or support partners to ensure all identified vulnerabilities are being addressed
  • Provide support to Information Security Incident Response team during cyber/privacy incidents
  • Validate that information security requirements are built into architectures and new technology projects
  • Ensures the running application and developing codebase protects the confidentiality, integrity, and availability of our customer's data
  • Evaluate the technical security posture of newly proposed third-party solutions.
  • Identify areas of improvement related to third party risk management to drive maturity.

Requirements

  • BS degree in Information Security, Risk Management, Business Administration, or related field
  • 8+ years of experience in GRC, risk management, or related fields.
  • Experience supporting and/or leading audit discussions
  • Certified Information Systems Security Professional (CISSP), Certified Information Security Auditor (CISA), Certified Information Security Manager (CISM) or Certified in Risk and Information Systems Control (CRISC) strongly preferred
  • Strong knowledge of regulatory requirements (e.g., GDPR, HIPAA, PCI-DSS, CPRA) and industry standards (e.g., ISO 27001, NIST).
  • Expert in designing, implementing, and maintaining security solutions
  • Experience developing and implementing GRC frameworks, policies, and procedures
  • Excellent analytical skills with the ability to assess complex risks and develop effective mitigation strategies
  • Exceptional communication and interpersonal skills, with the ability to effectively collaborate with stakeholders at all levels of the organization
  • Proven ability to lead and manage projects, including coordinating cross-functional teams and delivering results on time
  • Ability to adapt to a fast-paced and dynamic environment, with a focus on continuous improvement and innovation
  • Expert in OWASP, CIS and/or other security standards and secure configuration baselines
  • Proficiency with cloud-based solutions and web related technologies

Benefits

  • Competitive salary - $95,000-$135,000
  • Employer sponsored health, dental, vision, life, and disability insurance
  • Retirement plan with company contribution
  • Annual company profit sharing
  • Personal development/training budget
  • Open, collaborative work environment
  • Extensive 2-week onboarding plan
  • Comprehensive mentorship program

Equal Opportunity Employer Statement & Applicant Rights
TherapyNotes LLC is an Equal Opportunity Employer and does not discriminate based on race, color, religion, sex, national origin, age, disability, genetic information, or any other protected status under federal, state, or local law. We are committed to providing a workplace free of discrimination and harassment. For more information about your rights under federal employment laws, please review the following:

If you require a reasonable accommodation during the application process, please contact [email protected].

#LI-Remote
#LI-PL1
5/30/2025

Average salary estimate

$115000 / YEARLY (est.)
min
max
$95000K
$135000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User
Kaseya Careers Hybrid Miami, Florida, United States
Posted 12 days ago

Be a part of Kaseya’s innovative cybersecurity team as a SOC Tier 2 Analyst and help protect critical systems globally.

Photo of the Rise User
Rackspace Hybrid No location specified
Posted 8 days ago

As a Senior Cloud Architect, you will champion cloud innovation and design solutions that elevate our Azure infrastructure.

Photo of the Rise User
Funnel Leasing Hybrid No location specified
Posted 3 days ago
Dental Insurance
Disability Insurance
Flexible Spending Account (FSA)
Health Savings Account (HSA)
Vision Insurance
Performance Bonus
Paid Holidays

Funnel Leasing Inc. seeks a remote Manager, DevOps to lead operations and a team to enhance cloud infrastructure and deployment workflows across the U.S.

Photo of the Rise User
SGS Hybrid 3777 Depot Rd, Hayward, CA 94545, USA
Posted 6 days ago

As an IT Service Desk Analyst II at SGS, you will play a crucial role in resolving advanced technical issues and ensuring smooth operations in a dynamic business environment.

Rive Hybrid No location specified
Posted 3 days ago

Join Rive as a Security Engineer, where you'll shape our security practices while working in a collaborative environment focused on innovation.

Photo of the Rise User
Solerity Hybrid McLean, Virginia, United States
Posted 6 days ago

Solerity seeks an experienced Enterprise Architect with a TS/SCI clearance to guide IT enterprise strategies for federal agencies.

Photo of the Rise User
Posted yesterday

Agiloft seeks a Staff DevOps Engineer to architect and lead advanced CloudOps systems and DevOps practices in a data-driven contract management company.

Photo of the Rise User
Posted 10 days ago

We are seeking a skilled ServiceNow Development Team Lead to drive technical excellence and lead our remote team in delivering top-notch ServiceNow solutions.

Photo of the Rise User
Posted 8 days ago

Become a key player at Peraton as an IT Specialist, delivering vital technical support for national security at the TSA Operations Center.

Photo of the Rise User

Join the NYC DOT as a CRM Application Developer and play a key role in transforming how technology supports the city's transportation network.

Join Abile Group as a Microsoft Active Directory SME, driving innovative identity solutions for a key Intelligence Community customer.

Photo of the Rise User
Peraton Hybrid Redstone Arsenal
Posted 10 days ago

Be a key player at Peraton as a Senior DevOps Engineer, leading strategic cloud and automation initiatives for national security.

Photo of the Rise User

Join Memorial Sloan Kettering Cancer Center as an Application Analyst I and drive impactful technology solutions in healthcare.

We at StarQuick Solutions are excited to announce that we have entered into an agreement with TherapyNotes LLC to offer TheraQuick customers an upgrade path into the TherapyNotes.com online practice management system. We are also referring prospec...

10 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
June 7, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!