Information Security Risk and Governance Specialist, Senior
$102.74k - $154.22kBlue Shield Of California
Information Security Risk & Governance Specialist, Senior
The Technology and Data Trust Assurance Services team drives BSC technology and information security adherence to regulatory standards, as well as policies, standards, and controls development, with the goal of evaluating, directing and monitoring IT vendor performance, while safeguarding company assets and maintaining and securing the confidentiality, integrity, and availability of Blue Shield of California data. The Technology Risk and External Assurance program runs technology governance forums including the Artificial Intelligence (AI) Governance function and manages technology risk from identification to risk consequence management for BSC. The Information Security Risk & Governance Specialist, Senior will report to the Senior Manager, Technology External Assurance. In this role, you will be a key individual contributor to the Technology Risk and External Assurance team and Blue Shield's overall strategy and goals by providing consistent, coordinated SOC 2 and PCI-DSS audit and compliance support, information security oversight including NIST CSF maturity assessments, AI governance and technology risk assessment support, and risk reporting in partnership with leaders, stakeholders, and Stellarus.
Responsibilities
In this role, you will:
- Maintain, grow, and modify as needed a Blue Shield of California technology external assurance, risk management and AI governance knowledge bases, with a focus on improving technology risk management and security awareness organizational behavior, policies and standards, governance metrics, processes, and related workflows and tools.
- Provide excellent customer service to all of Technology Risk and External Assurance's internal and external business stakeholders (including the Stellarus and Promise AI Governance functions) and collaborate with our Stellarus partners to meet customer needs and technology and security assurance requirements.
- Create and maintain security and technology risk management knowledge bases, web pages, playbook(s), processes, and procedures for guiding various technology risk and assurance processes, including security shared services tracking and ticketing queue metrics, security and risk management project support.
- Responsible for managing, triaging, and executing operational work queues for information security and AI governance within our ticketing system, security tools, and email intakes in partnership with Stellarus asset and service owners and business owners and requesters to ensure quality and timeliness.
- Engage with stakeholders across the organization to identify service quality needs, draft requirements, assist in the development of service enhancements, tracking, monitoring, and reporting of the overall health of our services provided to the Ascendiun family of companies.
- Perform impact analysis and root cause analysis of regulatory issues, security incidents, business requests, corrective action plans, and system changes on Technology Risk and External Assurance programs.
- Assist with research and preparation of materials for regular core team meeting and governance forums (e.g., board and committee meetings, AI governance forums, audits and assessment, team meetings, project meetings, stakeholder communications, etc.).
- Facilitate collaboration and coordination of security controls and frameworks, AI use cases, and technology requests, intakes, workstreams, high priority engagements, security incidents and escalated issues.
- Promote and participate in security, compliance and AI acceptable use awareness and training initiatives.
Qualifications
Your Knowledge and Experience
- Requires a bachelor's degree or equivalent experience and 5+ years of prior relevant experience
- 2+ years of experience with technology service management, IT project management
- 2+ years of experience with information security awareness and training or IT user training
- Knowledge of Artificial Intelligence (AI) governance and monitoring practices is preferred
- Ability to provide excellent customer service and to conduct user awareness training
- Knowledge of various information technology governance and control frameworks and industry standards such as COBIT and NIST
- Problem-solving and critical-thinking skills to recognize and comprehend complex issues, policies, regulatory requirements, and industry information affecting the business environment
- Ability to communicate and articulate complex analysis in a clear, precise, and actionable manner
- Proven collaborator with strong interpersonal skills, works collaboratively within the team and outside the team
- Proficient in developing presentations and in written and verbal communication
- Proficiency in Microsoft Office products
- Experience managing workflows and queues in ticketing systems
- GCIH and CISSP certification preferred
Hybrid
This role requires employees to be in - office based on our hybrid workplace model, balancing purposeful in - person collaboration with flexibility. For most teams, this means coming into the office two days each week.
Employees living more than 50 miles from an office location will work with their manager to determine in-office time based on business need.
About Us
About Blue Shield of California and the Ascendiun Family of Companies
As of January 2025, Blue Shield of California became a subsidiary of Ascendiun. Ascendiun is a nonprofit corporate entity that is the parent to a family of organizations including Blue Shield of California and its subsidiary, Blue Shield of California Promise Health Plan; Altais, a clinical services company; and Stellarus, a company designed to scale healthcare solutions. Together, these organizations are referred to as the Ascendiun Family of Companies.
At Ascendiun, we believe in a brighter future for healthcare. As the parent to a family of four innovative healthcare companies, we're reimagining what's possible. Ascendiun is guided by the goal of transforming a dysfunctional American health care system into one worthy of our family and friends and sustainably affordable for everyone.
To achieve our mission, we foster an environment where all employees can thrive and contribute fully to address the needs of the various communities we serve. We are committed to creating and maintaining a supportive workplace that upholds our values and advances our goals.
Our Values:
- Honest. We hold ourselves to the highest ethical and integrity standards. We build trust by doing what we say we're going to do and by acknowledging and correcting where we fall short.
- Human. We strive to listen and communicate effectively, and showing empathy by understanding others' perspectives.
- Courageous. We stand up for what we believe in and are committed to the hard work necessary to achieve our ambitious goals.
Our Workplace Model:
We believe in fostering a workplace environment that balances purposeful in-person collaboration with flexibility - providing clear expectations while respecting the diverse needs of our workforce. Our workplace model is designed around intentional in-person interaction, collaboration, connection, creativity and flexibility:
For most teams, this means coming into the office two days per week.
Employees living more than 50 miles from an office location, out of state employees, and employees in certain member-facing roles should work with their manager to determine in-office time based on business need.
For employees with medical conditions that may impact their ability to work in-office, we are committed to engaging in an interactive process and providing reasonable accommodations to ensure their work environment is conducive to their success and well-being.
The Company reserves the right to require more presence in the office based on business needs, and requirements are subject to change with periodic reviews.
Physical Requirements:
Office Environment - roles involving part to full time schedule in Office Environment. Based in our physical offices and work from home office/deskwork - Activity level: Sedentary, frequency most of work day.
Please click here for further physical requirement detail.
Equal Employment Opportunity:
External hires must pass a background check/drug screen. Qualified applicants with arrest records and/or conviction records will be considered for employment in a manner consistent with Federal, State and local laws, including but not limited to the San Francisco Fair Chance Ordinance. All qualified applicants will receive consideration for employment without regards to race, color, religion, sex, national origin, sexual orientation, gender identity, protected veteran status or disability status and any other classification protected by Federal, State and local laws.
Job Info
- Job Identification 20260989
- Job Category Information Technology
- Apply Before 06/20/2026, 07:00 AM
- Job Schedule Full time
- Locations El Dorado Hills, CA, United States CA, United States Long Beach, CA, United States Oakland, CA, United States Rancho Cordova, CA, United States Woodland Hills, CA, United States
- Pay Range for California $102740.00 to $154220.00
- ...drives BSC technology and information security adherence to regulatory standards... ...data. The Technology Risk and External Assurance program runs technology governance forums including the Artificial... ...Security Risk & Governance Specialist, Senior will report to the Senior...SeniorRiskWork at office2 days per week
- ...authority (JPA) that provides risk management and insurance... ...to participate in the governance of our JPA. One of... ...control, claims administration, information technology, accounting,... ...team. The Supervising Senior Liability Specialist's primary role will be to...SeniorRiskFull timeWork at officeRemote work
- ...Job Description Description: The Senior Employment Specialist plays a vital role in supporting individuals... ..., justice-involved individuals, at-risk youth, and those facing homelessness... ...free from excessive distractions. Security: Follow company policies regarding...SeniorRiskWork at officeRemote workWork from homeHome office
$105k
...Job Category: Compliance / Risk / Quality Assurance; Business... ...Compliance organization provides governance, oversight, and strategic direction... ...Position Summary: As a Senior Risk and Compliance consultant... ...FERC, NERC, WECC) and how they inform enterprise compliance strategy...SeniorRiskWork experience placementWork at officeWork from homeFlexible hours2 days per week3 days per week$159k
...Operations / Strategy Job Level: Senior Manager Business Unit:... ...Department Overview: The Electric Risk & Compliance organization provides governance, oversight, and strategic direction... ...complex issues with minimal information or supervision of a manager or director...SeniorRiskContract workWork experience placementWork at officeFlexible hours2 days per week3 days per week- ...authority (JPA) that provides risk management and... ...to participate in the governance of our JPA. One of PRISM... ...administration, information technology, accounting... ...team. We are seeking a Senior Data Engineer to play... ...platform Partner with security and compliance teams to...SeniorRiskTemporary workWork at officeRemote workFlexible hours
- ...population with Blue Shield of California. The Case Management - Nurse, Senior will report to the Manager of Care Management within Medical... ...for managing a caseload of DSNP members, reviewing Health Risk Assessments and completing Individualized Care Plans, engaging members...SeniorRisk
$89.1k - $133.65k
...California. The Case Management – Nurse, Senior will report to the Manager of Care Management... ...of DSNP members, reviewing Health Risk Assessments and completing Individualized... ...clients belief/value system. Evaluates all information related to current/proposed treatment plan...SeniorRiskContract work- ...Job Description The Application Security team reports to the Director of Information Security and is responsible for driving continual risk reduction across application services. This role partners closely with development teams, providing security oversight at each...RiskFull timePart timeWork at officeLocal areaWork from homeHome office2 days per week
- ...Cyber Defense Specialist, Experienced The Information Security team is looking for a certified security professional to join our fast paced, collaborative... ...Defense Specialist, Experienced will report to the Senior Manager of Information Security Operations. In this...Full timePart timeWork at officeLocal areaWork from homeHome office2 days per week
- ...the outpatient setting. The Senior Care Manager will report to the... ...coordination of care with specialists, community resources. Care Managers... ...plans (ICP) based on health risk assessment (HRA) completion,... .../value system. Evaluates all information related to current/proposed...SeniorRiskFull timeContract workPart timeWork at officeLocal areaWork from homeHome office2 days per week
- ...Your Role The Information Security team is looking for a certified security professional to join our fast paced, collaborative... ...from adverse cyber events. The Cyber Defense Specialist, Consultant will report to the Senior Manager of Information Security Operations. In...Work at office2 days per week
- ...Senior Oracle Cloud Integration Developer El Dorado Hills, California, United States About the Job As a Professional Services... ...delivering against defined milestones; mitigating and remediating risk factors, and proposing solutions based on best practices. ~...SeniorRisk
$126k
...Electric Compliance Assurance department is part of the Electric Risk & Compliance organization, where together we will embed... ...including identifying corrective actions and gaining consensus with senior and executive leadership to mitigate risk. Identifies and summarizes...RiskWork experience placementWork at officeRemote workFlexible hours- ...trust and partnership with the company. The Senior Principal, Strategic Account Manager is a... ...authority, and responsibility for high risk, high visibility customer outcomes. The... ...enhancement. Ability to synthesize complex information and communicate compelling narratives to...SeniorRisk
- ...and staffing to businesses and governments in Canada. With revenues... ...Infrastructure & Network Services • Risk Management & Compliance •... ...& Disaster Recovery • Security & Privacy Specialties• Contract... ...Pipeline. A basic understanding of Information Security and patching is...RiskPermanent employmentContract workFor contractorsH1bWork at office
$105k
...Assurance department is part of the Electric Risk & Compliance organization, where together... ...building consensus with multiple senior leaders to stay on schedule. Abstracts or... ...using a variety of methods and conveying information or conclusions in a clear, direct, and non...SeniorRiskWork experience placementWork at officeRemote workFlexible hours$97.88k - $156.6k
...today and tomorrow. Position Summary The Treasury Principal is a senior, hands‑on role responsible for end‑to‑end ownership for assigned... ...operations, with independent accountability for outcomes and risk management. This position provides comprehensive Treasury coverage...RiskTemporary workWork experience placementVisa sponsorshipFlexible hours$120k - $165k
...Senior Bathymetric LiDAR Specialist R.E.Y. Engineers, Inc. Folsom, California | Full-Time | Occasional Travel About R.E.Y. Engineers, Inc.... ...sexual orientation, national origin, disability, genetic information, pregnancy, age, veteran status, or any other protected...SeniorFull time$50.25k - $80.4k
...sustainability data for conversion into information that supports strategy and oversight for... ...the Director of Environmental, Social, Governance, and will serve as a thought leader on emerging... ...for ESG information. Respond to ESG risk assessments and questionnaires from...RiskTemporary workWork experience placementVisa sponsorshipFlexible hours- ...& external resources, prioritizing across competing requests, budget management and oversight, coaching & mentoring direct reports, risk management, and delegation Requires excellent verbal / written communication, collaboration, analytical and presentation skills...SeniorRiskWork at office2 days per week
- ...programs, and keeping the licensed or registered physical therapist informed directly, and in a timely manner, of patient progress and... ...policies and procedures related to environmental safety, orderliness, risk management, infection control, and emergency preparedness...SeniorRiskFull timeReliefShift work
$75k - $80k
...Description Position Title: Delivery Specialist Department: Delivery Reports... ...potential financial risks Foster talent growth, recognize... ...their commitments instantly and securely. Headquarteredin Folsom, CA,... ...employment laws.For further information, please review the Know Your...RiskFull timeWork at officeRemote workShift work- ...environment. At NorCal Aquarium and Wildlife Adventures our Senior Environmental Quality Keeper plays a critical leadership role in... ...to improve habitat quality and animal outcomes. Compliance & Risk Management: Maintain compliance with all federal, state, and...SeniorRiskLocal area
- ...Senior Principal, Strategic Account Manager The Customer Experience... ...and responsibility for high risk, high visibility customer... ...enterprise performance. Governance, Planning & Change Leadership... ...Ability to synthesize complex information and communicate compelling...SeniorRiskFull timePart timeWork at officeWork from homeHome office2 days per week
$31 - $49 per hour
Senior Structural BIM Specialist Responsibilities Drafting and designing HDR Building Engineering Services and Municipal Water projects, including... ...Maintain the discipline model including project information, coordinates, scales, orientations, scope boundaries, match...SeniorFull timeTemporary workWork at office- ...policies and procedures related to environmental safety, orderliness, risk management, infection control, and emergency preparedness; and... ...of Reliant Rehabilitation, community, and patient information. Must conduct self in an ethical, legal, and responsible...SeniorRiskWork at officeShift work
$120k - $160k
...development. Position Overview: We are on the lookout for a Senior Estimator who will lead and enhance our estimating functions.... ...such as schedules, safety hazards, penalty clauses, and other risk factors. Oversee the pre-qualification and submission processes...SeniorRiskFull timeFor subcontractor- ...ensure that the organization complies with industry and government regulatory compliance. Increase security awareness, assess compliance and where necessary,... ...-compliant areas. Essential Tasks # Leverage risk assessment to develop & refine on-going processes and...Risk
- ...policies and procedures related to environmental safety, orderliness, risk management, infection control, and emergency preparedness; and... ...of Reliant Rehabilitation, community, and patient information. Must conduct self in an ethical, legal, and responsible manner...SeniorRiskReliefWork at officeShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security Risk and Governance Specialist, Senior. Be the first to apply!
- senior performance engineer El Dorado Hills, CA
- senior manager diversity & inclusion El Dorado Hills, CA
- senior level El Dorado Hills, CA
- senior manager creative operations El Dorado Hills, CA
- senior creative El Dorado Hills, CA
- senior performance tester El Dorado Hills, CA
- legal senior counsel family office El Dorado Hills, CA
- senior application administrator El Dorado Hills, CA
- senior El Dorado Hills, CA
- senior application security El Dorado Hills, CA


