Base: $79,300.00 - $127,100.00; bonus/equity: not ...
Bachelor's degree in information security or related field
3-5 years experience in information security and risk management
Knowledge of hipaa, nist csf 2.0, pci dss, and soc frameworks
The Information Risk Consultant plays a key role in strengthening Highmark's information security posture through dedicated efforts in security governance, control assurance, and policy management
Job Summary
The Information Risk Consultant plays a key role in strengthening Highmark's information security posture through dedicated efforts in security governance, control assurance, and policy management.
This position actively contributes to establishing and maintaining robust security controls while ensuring compliance with frameworks such as HIPAA, NIST CSF 2.0, PCI DSS, and SOC.
The consultant will assist with M&A cybersecurity integration, supporting seamless alignment of security requirements during pre- and post-acquisition phases.
Matching Summary
The Information Risk Consultant plays a key role in strengthening Highmark's information security posture through dedicated efforts in security governance, control assurance, and policy management.
Salary
Base: $79,300.00 - $127,100.00; Bonus/Equity: Not specified; Benefits: Not specified
Skills & Requirements
Must-have
Bachelor's degree in Information Security or related field
3-5 years experience in Information Security and Risk Management
Knowledge of HIPAA, NIST CSF 2.0, PCI DSS, and SOC frameworks
Nice-to-have
Experience with M&A cybersecurity integration activities
Strong background in policy lifecycle management
Ability to present solution decks to varying audiences
Key Requirements
Bachelor's Degree in Information Security, Information Systems, or Computer Science
Minimum 3-5 years experience in Information Security and/or Risk Management
1-3 years experience within Information Security Governance, Risk, and Compliance functions
Preferred Master's Degree in Computer Science or Information Security
Preferred industry certifications such as CISSP, CISM, CISA, or SANS