Information Security GRC Analyst

Sorry, this job was removed at 08:01 p.m. (CST) on Monday, Jun 23, 2025
Ankeny, IA
Hybrid
Food
The Role
We are seeking a proactive and detail-oriented Governance, Risk, and Compliance (GRC) Analyst to join our growing Information Security team. In this role, you will support the development, implementation, and maintenance of the company’s GRC framework, ensuring compliance with healthcare regulations, privacy standards, and risk management principles. You will assist in activities related to HIPAA, HITRUST, and third-party risk assessments while collaborating closely with cross-functional teams to safeguard sensitive health data, including Protected Health Information (PHI). This role will report to the GRC Team Lead.

This position can be hybrid but must be local to the Des Moines, IA or surrounding area to work onsite as needed (multiple days during training, then 1-2 times/month) and when others from the team are onsite.

At this time, we are NOT considering applicants that require immigration sponsorship (additional work authorization or permanent work authorization) now or in the future to work in the United States. This includes, but IS NOT LIMITED TO: F1-OPT, F1-CPT, H-1B, TN, L-1, J-1, etc.

Position Responsibilities may include, but not limited to

  • Governance & Risk Management: Contribute to the ongoing development and maintenance of the GRC framework, policies, and procedures, ensuring alignment with regulatory requirements, privacy standards, and business objectives, particularly regarding PHI protection
  • HITRUST Certification: Assist with the HITRUST certification process by gathering necessary documentation, participating in assessments, and ensuring that audits are up to date and complete
  • Third-Party Risk Assessments: Aid in conducting third-party risk assessments, ensuring that vendors comply with required security and privacy regulations.
  • Collaboration with Cross-Functional Teams: Collaborate with internal teams (e.g., Compliance, Legal, IT) to align risk management practices across the organization and support the overall governance strategy
  • Risk Reporting & Analysis: Contribute to the identification and assessment of key risks, helping to produce reports that provide actionable insights
  • Continuous Improvement: Stay up to date with industry trends, regulatory changes, and emerging risks to ensure that the company’s GRC practices remain effective and relevant
  • Training & Awareness: Promote risk awareness within the organization and provide training and guidance on key regulations
  • Oversee tools that highlight data classification inside of the enterprise
  • Assist in monitoring security logs and daily activities for suspicious behavior and escalate incidents as necessary
  • Assist with the drafting, reviewing, and updating of information security policies to ensure alignment with regulatory requirements and best practices for healthcare organizations
  • Actively support the organization's incident response efforts, including assisting in the investigation, containment, and remediation of security incidents
  • Be part of the on-call rotation for incident response, providing critical support during after-hours or emergency security incidents

Required Skills and Experience

  • Proven experience (3+ years) in GRC or risk management, with a strong focus on governance and risk
  • Hands-on experience supporting the management of HITRUST certification
  • Strong understanding of risk management principles, frameworks, and methodologies (e.g., NIST, ISO 27001)
  • Knowledge of regulatory compliance such as HIPAA, HITRUST, GDPR, CCPA, and PCI DSS
  • Experience working with cross-functional teams to drive security and risk initiatives
  • Experience in conducting or supporting third-party risk assessments, especially in relation to healthcare data security and privacy
  • Excellent communication skills with the ability to explain complex risk and governance concepts to both technical and non-technical stakeholders
  • Strong analytical and problem-solving skills
  • Ability to work independently and manage multiple priorities in a fast-paced environment
  • Strong organizational and time management skills
  • Continuous drive to learn and grow professionally in the fields of GRC and information security

Preferred Skills and Experience

  • Relevant certifications (e.g., Security+, CRISC, CISM, CISSP) 

Physical Requirements

  • Repetitive motions that include the wrists, hands and/or fingers
  • Sedentary work that primarily involves sitting, remaining in a stationary position for prolonged periods
  • Visual perception to perform job including peripheral vision, depth perception, and the ability to adjust focus

Similar Jobs

Wells Fargo Logo Wells Fargo

Teller Ankeny

Fintech • Financial Services
Hybrid
Ankeny, IA, USA
213000 Employees

CrowdStrike Logo CrowdStrike

Architect

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
8 Locations
10000 Employees
135K-205K Annually

CrowdStrike Logo CrowdStrike

Regional Sales Manager

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
4 Locations
10000 Employees
130K-175K Annually

CrowdStrike Logo CrowdStrike

Principal Engineer

Cloud • Computer Vision • Information Technology • Sales • Security • Cybersecurity
Remote or Hybrid
37 Locations
10000 Employees
195K-290K Annually
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Ankeny, IA
793 Employees
Year Founded: 1999

What We Do

Mom’s Meals is a leading national provider of nutrition solutions and home-delivered meals.

Our mission is to help patients and seniors get the nutrition they need to maintain independence while:
- Managing chronic health conditions
- Living with disabilities or limited mobility
- Lacking the desire or energy to prepare and cook healthy meals

Healthcare Focus:

We partner with health insurance companies, managed care organizations and federal and state supported programs to provide nutrition solutions for their client populations suffering from serious chronic diseases. We are a leading nutrition supplier for Medicaid Waiver and offer programs for Medicare Advantage and Dual Eligible beneficiaries. Our personalized selection of meals aid in the recuperation process post hospitalization, improve patient outcomes and reduce costly readmissions.

Specialty health-condition menus support dietary requirements for major chronic diseases impacted by nutrition: Heart Disease, Diabetes, and Renal Disease. Additional menus include Gluten-free and Vegetarian options.

Our large selection of meals appeal to a variety of individual tastes and are designed by Registered Dietitians, prepared with fresh ingredients by Chefs in USDA-inspected kitchens and distributed across 48 U.S. states to individuals’ homes or congregate sites.

Mom’s Meals is part of PurFoods LLC, a privately held and family owned/operated company based in Iowa.

Similar Companies Hiring

McCain Foods Thumbnail
Retail • Manufacturing • Food • Agriculture
Florenceville-Bristol, NB
20000 Employees
Munchkin, Inc. Thumbnail
Manufacturing • Kids + Family • Food • eCommerce • Design • Consumer Web
Milton, Ontario
325 Employees
Tastewise Thumbnail
Software • Retail • Generative AI • Food • Big Data Analytics • Big Data • Artificial Intelligence
NYC, NYC
120 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account