Staff Information Security Risk and Compliance

hace 7 días


Lima, Perú Qualifacts Systems, LLC A tiempo completo

**Qualifacts** is a leading provider of behavioral health software and SaaS solutions for clinical productivity, compliance and state reporting, billing, and business intelligence. Its mission is to be an innovative and trusted technology and end-to-end solutions partner, enabling exceptional outcomes for its customers and those they serve. Qualifacts’ comprehensive portfolio, including the
**CareLogic®**,
**Credible**, and
**InSync®** platforms, spans and serves the entire behavioral health, rehabilitative, and human services market supporting non-profit Certified Community Behavioral Health Clinics (CCBHC) as well as for-profit large enterprise and small business providers.

Get to know us:
**The Opportunity**:
**Your Responsibilities**:

- Supports the Information Security Compliance Manager and provides coordination for performing security audits and creation of documentation and remediation plans. Documents and reports on existing controls to support internal and external audit activities.
- Facilitate security risk assessments of functional areas to identify areas of risk and vulnerabilities and recommend alternative strategies.
- Develops and manages metrics to track and ensure QSI functional are in compliance with internal and external policies, standards and regulations.
- Maintains QSI Information Security reporting and dashboards including vulnerability counts, remediation assignments, remediation completion, incidents, etc.
- Manages security awareness content and manages phishing campaigns by providing orientation, training, and on-going communication.

**Skills and Experience You Need**:

- 5+ years as an Information Security Analyst working directly with infrastructure and software engineering teams to achieve, monitor and maintain a strong Information Security posture.
- 3+ years in developing and managing information security policies in accordance with industry regulations
- Working knowledge of IT functions, specifically understanding system production structure/controls, change management and software development processes.
- Capable of identifying management, IT system, and operational issues and trends and developing solutions including creating materials, documentation, systems, processes/procedures, and policies in support.
- Requires excellent technical, policy and procedural writing skills.
- Requires excellent reporting and presentation skills.
- Strong understanding of security audit methodologies with the management of audits with third parties.
- Working knowledge of IT security-related regulations/standards
- Working knowledge of IT functions, specifically understanding system production structure/controls, change management and software development processes.
- Capable of identifying cross-functional risks pertaining to management, IT system, and operational issues and trends and developing solutions including creating materials, documentation, systems, processes/procedures, and policies in support.
- Creates security documentation and provides training content to different teams to enhance awareness of vulnerabilities and other security related issues to reduce those risks.

**Skills and Experience We Prefer You Have**:

- 2+ years of experience as an Information Security Analyst within the healthcare technology sector
- Knowledge and understanding of regulatory compliance standards, particularly SOC1 and Service Organization Controls (SOC), HIPAA, HITrust, FedRAMP, Federal Information Security Management Act (FISMA), NIST Cyber Security Framework (CSF), NIST 800 series.
- Experience with working with Tenable products such as Tenable.sc, Nessus, Tenable.io
- Experience with working with Whitesource open-source scanning tools
- Experience with working with Checkmarx static code scanning and dynamic code scanning

**Licenses/Certifications (preferred)**
- CISSP - Certified Information Systems Security Professional
- CISA - Certified Information Systems Auditor
- CISM - Certified Information Security Manager
- CRISC - Certified in Risk and Information Systems Control
- Security+
- PMP - Project Management Professional

**What we offer you**:

- Economic bonus and merit review.
- Full Health Insurance (EPS and oncologic) for you and your direct dependents.
- Fully paid English lessons and LinkedIn Learning membership.
- All legal benefits (CTS, 30-day paid vacation per year, life insurance, etc.).
- Generous holidays policy.

Qualifacts is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, gender, age, disability, etc.



  • Lima, Perú Canonical - Jobs A tiempo completo

    The Information Systems (IS) Compliance Manager leads our work to achieve relevant certifications such as SOC2 as well as compliance with regulatory frameworks such as GDPR, SOC2 and other relevant standards. This role is to ensure that Canonical conducts its business processes in compliance with laws and regulations, international standards, and accepted...


  • Lima Metropolitana, Perú Binance A tiempo completo

    Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by over 280 million people in 100+ countries for our industry-leading security, user fund transparency, trading engine speed, deep liquidity, and an unmatched portfolio of digital-asset products. Binance...

  • Technology Specialists

    hace 5 días


    Lima, Perú Microsoft A tiempo completo

    Microsoft is on a mission to empower every person and every organization on the planet to achieve more. Our culture is centered on embracing a growth mindset, a theme of inspiring excellence, and encouraging teams and leaders to bring their best each day. In doing so, we create life-changing innovations that impact billions of lives around the world. You can...


  • Lima, Perú Willis Towers Watson A tiempo completo

    **The Role** This position is also responsible for improving internal controls and driving change within the organization and will work closely with other Analysts, Security Administrator, and various technology, and compliance members across the organization. **Responsibilities** - Work on a team within the Information Technology organization focusing on...


  • Lima, Perú Kyndryl A tiempo completo

    573821BR **Why Kyndryl** - Our world has never been more alive with opportunities and, at Kyndryl, we’re ready to seize them. We design, build, manage and modernize the mission-critical technology systems that the world depends on every day. Kyndryl is at the heart of progress — dedicated to helping companies and people grow strong. Our people are...

  • Director, Risk Management

    hace 2 semanas


    Lima, Perú Mastercard A tiempo completo

    **Our Purpose** - Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation,...


  • Lima, Perú Mastercard A tiempo completo

    Our PurposeMastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships...

  • Senior Risk Analyst

    hace 1 semana


    Lima Metropolitana, Perú Binance A tiempo completo

    Binance is a leading global blockchain ecosystem behind the world’s largest cryptocurrency exchange by trading volume and registered users. We are trusted by over 280 million people in 100+ countries for our industry‑leading security, user fund transparency, trading engine speed, deep liquidity, and an unmatched portfolio of digital‑asset products....

  • Director, Risk Management

    hace 3 semanas


    Lima Metropolitana, Perú Mastercard A tiempo completo

    Director, Risk Management at Mastercard Our Purpose Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our...


  • Lima, Perú Kyndryl A tiempo completo

    Who We Are At Kyndryl, we design, build, manage and modernize the mission-critical technology systems that the world depends on every day. So why work at Kyndryl? We are always moving forward - always pushing ourselves to go further in our efforts to build a more equitable, inclusive world for our employees, our customers and our communities. The Role Are...