Information Security Risk and Governance Specialist, Senior
$102.74k - $154.22kBlue Shield Of California
Job Title
Information Security Risk & Governance Specialist, Senior
Job Description
The Technology and Data Trust Assurance Services team drives BSC technology and information security adherence to regulatory standards, as well as policies, standards, and controls development, with the goal of evaluating, directing and monitoring IT vendor performance, while safeguarding company assets and maintaining and securing the confidentiality, integrity, and availability of Blue Shield of California data. The Technology Risk and External Assurance program runs technology governance forums including the Artificial Intelligence (AI) Governance function and manages technology risk from identification to risk consequence management for BSC. The Information Security Risk & Governance Specialist, Senior will report to the Senior Manager, Technology External Assurance. In this role, you will be a key individual contributor to the Technology Risk and External Assurance team and Blue Shield's overall strategy and goals by providing consistent, coordinated SOC 2 and PCI-DSS audit and compliance support, information security oversight including NIST CSF maturity assessments, AI governance and technology risk assessment support, and risk reporting in partnership with leaders, stakeholders, and Stellarus.
Responsibilities
In this role, you will:
- Maintain, grow, and modify as needed a Blue Shield of California technology external assurance, risk management and AI governance knowledge bases, with a focus on improving technology risk management and security awareness organizational behavior, policies and standards, governance metrics, processes, and related workflows and tools.
- Provide excellent customer service to all of Technology Risk and External Assurance's internal and external business stakeholders (including the Stellarus and Promise AI Governance functions) and collaborate with our Stellarus partners to meet customer needs and technology and security assurance requirements.
- Create and maintain security and technology risk management knowledge bases, web pages, playbook(s), processes, and procedures for guiding various technology risk and assurance processes, including security shared services tracking and ticketing queue metrics, security and risk management project support.
- Responsible for managing, triaging, and executing operational work queues for information security and AI governance within our ticketing system, security tools, and email intakes in partnership with Stellarus asset and service owners and business owners and requesters to ensure quality and timeliness.
- Engage with stakeholders across the organization to identify service quality needs, draft requirements, assist in the development of service enhancements, tracking, monitoring, and reporting of the overall health of our services provided to the Ascendiun family of companies.
- Perform impact analysis and root cause analysis of regulatory issues, security incidents, business requests, corrective action plans, and system changes on Technology Risk and External Assurance programs.
- Assist with research and preparation of materials for regular core team meeting and governance forums (e.g., board and committee meetings, AI governance forums, audits and assessment, team meetings, project meetings, stakeholder communications, etc.).
- Facilitate collaboration and coordination of security controls and frameworks, AI use cases, and technology requests, intakes, workstreams, high priority engagements, security incidents and escalated issues.
- Promote and participate in security, compliance and AI acceptable use awareness and training initiatives.
Qualifications
Your Knowledge and Experience
- Requires a bachelor's degree or equivalent experience and 5+ years of prior relevant experience
- 2+ years of experience with technology service management, IT project management
- 2+ years of experience with information security awareness and training or IT user training
- Knowledge of Artificial Intelligence (AI) governance and monitoring practices is preferred
- Ability to provide excellent customer service and to conduct user awareness training
- Knowledge of various information technology governance and control frameworks and industry standards such as COBIT and NIST
- Problem-solving and critical-thinking skills to recognize and comprehend complex issues, policies, regulatory requirements, and industry information affecting the business environment
- Ability to communicate and articulate complex analysis in a clear, precise, and actionable manner
- Proven collaborator with strong interpersonal skills, works collaboratively within the team and outside the team
- Proficient in developing presentations and in written and verbal communication
- Proficiency in Microsoft Office products
- Experience managing workflows and queues in ticketing systems
- GCIH and CISSP certification preferred
About Us
About Blue Shield of California and the Ascendiun Family of Companies
As of January 2025, Blue Shield of California became a subsidiary of Ascendiun. Ascendiun is a nonprofit corporate entity that is the parent to a family of organizations including Blue Shield of California and its subsidiary, Blue Shield of California Promise Health Plan; Altais, a clinical services company; and Stellarus, a company designed to scale healthcare solutions. Together, these organizations are referred to as the Ascendiun Family of Companies.
At Ascendiun, we believe in a brighter future for healthcare. As the parent to a family of four innovative healthcare companies, we're reimagining what's possible. Ascendiun is guided by the goal of transforming a dysfunctional American health care system into one worthy of our family and friends and sustainably affordable for everyone.
To achieve our mission, we foster an environment where all employees can thrive and contribute fully to address the needs of the various communities we serve. We are committed to creating and maintaining a supportive workplace that upholds our values and advances our goals.
Our Values:
- Honest. We hold ourselves to the highest ethical and integrity standards. We build trust by doing what we say we're going to do and by acknowledging and correcting where we fall short.
- Human. We strive to listen and communicate effectively, and showing empathy by understanding others' perspectives.
- Courageous. We stand up for what we believe in and are committed to the hard work necessary to achieve our ambitious goals.
Our Workplace Model:
We believe in fostering a workplace environment that balances purposeful in-person collaboration with flexibility - providing clear expectations while respecting the diverse needs of our workforce. Our workplace model is designed around intentional in-person interaction, collaboration, connection, creativity and flexibility:
- For most teams, this means coming into the office two days per week.
- Employees living more than 50 miles from an office location, out of state employees, and employees in certain member-facing roles should work with their manager to determine in-office time based on business need.
- For employees with medical conditions that may impact their ability to work in-office, we are committed to engaging in an interactive process and providing reasonable accommodations to ensure their work environment is conducive to their success and well-being.
The Company reserves the right to require more presence in the office based on business needs, and requirements are subject to change with periodic reviews.
Physical Requirements:
Office Environment - roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork - Activity level: Sedentary, frequency most of work day.
Please click here for further physical requirement detail.
Equal Employment Opportunity:
External hires must pass a background check/drug screen. Qualified applicants with arrest records and/or conviction records will be considered for employment in a manner consistent with Federal, State and local laws, including but not limited to the San Francisco Fair Chance Ordinance. All qualified applicants will receive consideration for employment without regards to race, color, religion, sex, national origin, sexual orientation, gender identity, protected veteran status or disability status and any other classification protected by Federal, State and local laws.
Job Info
- Job Identification 20260989
- Job Category Information Technology
- Apply Before 06/20/2026, 07:00 AM
- Job Schedule Full time
- Locations El Dorado Hills, CA, United States CA, United States Long Beach, CA, United States Oakland, CA, United States Rancho Cordova, CA, United States Woodland Hills, CA, United States
- Pay Range for California $102740.00 to $154220.00
- Pay Range for Bay Area $115816.00 to $173848.00
- Note Please note that this range represents the pay range for this and many other positions at Blue Shield that fall into this pay grade. Blue Shield salaries are based on a variety of factors, including the candidate experience
- ...drives BSC technology and information security adherence to regulatory standards... ...data. The Technology Risk and External Assurance program runs technology governance forums including the Artificial... ...Security Risk & Governance Specialist, Senior will report to the Senior...SeniorRiskWork at office2 days per week
$123.76k - $211.12k
Farmers & Merchants Bank of Long Beach is seeking an Appraisal Manager to oversee the end-to-end appraisal process. The role involves managing appraiser performance, ensuring compliance with regulations, and providing expert guidance to lending teams. Ideal candidates will...SeniorRisk- ...SENIOR ASSET PROTECTION SPECIALIST Summary Description: Under the direct supervision... ..., & the Sr. Compliance, Risk & Safety Manager, under... ...and shares knowledge and information with other employees as... ...Compliance. Responsible for the security of the company's property,...SeniorRiskContract workFor contractorsFlexible hours
- ...Senior Compliance Engineer, AI Governance Space is a warfighting domain. True Anomaly seeks... ...the technology that secures it. True Anomaly delivers... ...to join our Governance, Risk, and Compliance (GRC) team... ...developing and operationalizing information security policies,...SeniorRiskPermanent employment
- ...Cyber Defense Specialist, Consultant The Information Security team is looking for a certified security professional... ...Specialist, Consultant will report to the Senior Manager of Information Security... ...opportunities to reduce risk and improve effectiveness Qualifications...RiskFull timePart timeWork at officeLocal areaWork from homeHome office2 days per week
- ...Senior Technical Program Manager, Security & Infrastructure Denver, CO or Long Beach, CA Space is a warfighting... ...tracking, dependency management, risk identification, and stakeholder... ...environments ~ Prior experience as an information security engineer or security sales...SeniorRiskFor contractorsWork at officeFlexible hoursShift work
$119k - $148k
...Senior Network Engineer Reporting directly to the IT Director... ...designing, enhancing, coordinating, securing, and supporting the... ...Bachelor's degree in Information Technology, Network Engineering... ...Knowledge of cybersecurity concepts, risk mitigation, vulnerability remediation...SeniorRiskWork at officeRemote work- ...Senior Security Architect The Senior Security Architect will be a key leader in designing,... ...onboarding (SaaS, IaaS, PaaS) for security risks Evaluate internal application &... ...of action and milestones for network, information system, and data security architectures...SeniorRiskWork at officeLocal areaRemote work
$160k - $225k
...Senior Enterprise Security Engineer, Linux Denver, CO or Long Beach, CA or SF Bay Area Space is... ...business to operate on Linux with as little risk as necessary?" As part of True... ...Minimum of 6 years of experience in information security, with a strong focus on...SeniorRisk- ...Senior Governance, Risk, and Compliance (GRC) Process Analyst Boeing is seeking a detail-oriented... ...coordination, risk assessments, security controls validation, and corporate/internal... .... This role will partner with Information Security, IT&O, Internal Audit, Compliance...SeniorRiskWork experience placement
- ...position in Torrance, CA. The role involves overseeing valuations governance and financial compliance while managing complex financial... ...for professionals looking to take on significant governance and risk management responsibilities within a large-scale operation. #J-...SeniorRiskContract work
$85k - $100k
...enabling human life on Mars. SENIOR SOURCING SPECIALIST, INSTALLER NETWORK (... ...communities, businesses, and governments worldwide. The Starlink... ...communication skills to synthesize information that shapes future... ..., schedules, and risks Collaborate with cross-...SeniorRiskPermanent employmentTemporary workLocal areaWorldwideWeekend work$93.67k - $140.51k
...Sr Sourcing Specialist - TEMP Company: Exemplis Department: Supply Chain Location: Cypress, CA, US, 90630 Work Designation: Hybrid Salary... ...team to understand all the market forces and manage the risks such as FX risk, political risk, scarcity and to develop the right...SeniorRiskTemporary workLocal areaFlexible hours3 days per week- ...Network Security Controls Senior Manager The Boeing Company is currently seeking a Network Security... ...directly to the Deputy Chief Information Security Officer (CISO), you will drive... ...performance reviews Provide cost, risk, and impact analysis for network security...SeniorRiskContract workRemote work
$69k - $81k
...Job Posting Title: Senior Project Specialist, Time Critical Time... ...reacting quickly to any service risks. Work closely with carriers... ...and global DSV offices to secure the fastest and most reliable... .... Keep customers informed with accurate, timely updates...SeniorRiskFull timeTemporary workWork experience placementWork at officeLocal areaFlexible hoursRotating shift$69k - $81k
...& Sea Job Posting Title:Senior Project Specialist, Time Critical Time Type... ...reacting quickly to any service risks. Work closely with... ...and global DSV offices to secure the fastest and most reliable... ...solutions. Keep customers informed with accurate, timely...SeniorRiskFull timeTemporary workWork experience placementWork at officeLocal areaFlexible hoursRotating shift- ...Systems, LLC, a Koniag Government Services company, is seeking a Senior Enterprise IT Architect... ...and network planning. Security Implementation Hands‑on... ...Implementation Guides) and RMF (Risk Management Framework)... ...in computer science, Information Systems, or Engineering....SeniorRiskContract workLocal areaFlexible hoursShift work
- Northrop Grumman Federal Credit Union is seeking an Information Technology Security Manager to lead its cybersecurity initiatives within a highly regulated... ...financial environment. This role involves overseeing risk management, compliance, and incident response, while...SeniorRiskWork experience placement
- ...the healthcare and insurance sectors. Key responsibilities include delivering projects on time and within budget, managing project risks, and ensuring adherence to quality standards. The candidate should possess strong financial management capabilities, including budget...SeniorRisk
- ...Senior Mainframe Systems Programmer Downey... ...ensuring that relevant security products are patched... ...systems requirements, risks and costs; evaluating,... ...and/or ensuring that information security/information assurance... ...-5838 Serving government agencies for 22 Years...SeniorRisk
- ...TRISTAR RISK MANAGEMENT in Signal Hill is seeking an experienced claims manager to oversee indemnity claims from inception to conclusion. The role requires managing a substantial caseload of workers' compensation files, applying extensive knowledge of statutory regulations...SeniorRisk
- ...TRISTAR RISK MANAGEMENT is seeking an experienced Claims Examiner to manage all aspects of indemnity claims handling in Signal Hill, CA. Candidates should possess a Bachelor's degree and at least three years of related experience. The role involves comprehensive file...SeniorRisk
- ...SOX IT Lead for our Corporate Governance and Financial Compliance... ...ensures robust governance and risk management practices to mitigate... ...have: ~ BA/BS degree in Information Systems, Computer Science, Accounting... ...Certified Information System Security Professional), or CRISC (...RiskWork at officeRemote work
- ...Senior Multi-Cloud Architect Downey, CA 12+ months The Senior Multi-Cloud... ...activities and resources to mitigate risk; implements or maintains quality assurance... ...change requests); implements information systems security plans and procedures; and ensures appropriate...SeniorRisk
- ...provider network consists of providers that meet all regulatory and risk management criteria - effectively minimizing liability to the... ...care providers to clarify questions and request any missing information. • Updates credentialing software systems with required information...RiskWork at officeRemote work
- ...Description ¿ A Senior Programmer is... ...software quality assurance specialist, systems programmer,... ...rigorous application of information security/information assurance... ...requirements, risks and costs; evaluating... ...components; pertinent government regulations; infrastructure...SeniorRiskContract work
$65 - $80 per hour
...Third-Party Risk Management (TPRM) Security Analyst Our client is seeking a sharp and driven TPRM Security Analyst to join their Information Security GRC team in a remote capacity. This is a high-impact contract role where you will play a critical part in protecting...RiskContract workRemote workVisa sponsorship$146.2k - $197.8k
...Boeing Defense, Space & Security (BDS), Space Mission... ...seeks an Senior System Administrator... ...infrastructure management, information security, software installation... ...and conformance to Risk Management Framework (... ...(SSBI) by the federal government within the past 5...SeniorRiskRelocationVisa sponsorshipWork visaRelocation packageFlexible hoursShift workDay shift$85k - $100k
...Mars. SR. SOURCING SPECIALIST, MECHANICAL (STARSHIELD... ...to support national security efforts. While Starlink... ...Starshield is designed for government use, with an initial... ...Track high risk components and supplier... ...decisions of vendors and senior leadership Interpret...SeniorRiskPermanent employmentContract workTemporary workRemote workWeekend work$90k - $115k
...enabling human life on Mars. SR. SOURCING SPECIALIST, CONSTRUCTION We are a progressive... ...for assigned categories to reduce risk and meet targets for the purchasing department... ...REQUIREMENTS: ~ To conform to U.S. Government export regulations, applicant must be a...SeniorRiskPermanent employmentContract workTemporary workRemote workWeekend work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk and Governance Specialist, Senior. Be the first to apply!
- senior information security analyst Long Beach, CA
- risk assurance Long Beach, CA
- technology risk Long Beach, CA
- senior manager process engineering Long Beach, CA
- senior manufacturing engineer Long Beach, CA
- senior manager clinical operations Long Beach, CA
- senior lead project manager Long Beach, CA
- senior manager quality engineering Long Beach, CA
- senior device engineer Long Beach, CA
- senior hvac project manager Long Beach, CA

