Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Security Risk Management Consultant (REMOTE)

IHA

Livonia, MI
  • Remote job

Description The Senior Security Risk Management Consultant serves as a strategic advisor, liaison, and subject matter expert, driving enterprise-wide security risk management strategies that support Trinity Health’s mission and operational excellence. This role partners with senior leadership, security, IT, and business stakeholders to identify, assess, and mitigate cybersecurity risks while ensuring alignment with organizational priorities and regulatory requirements. Responsibilities include leading complex risk assessments, guiding risk treatment strategies, influencing enterprise decision-making, and strengthening overall risk posture through governance, metrics, and continuous improvement. Employment Type Full time Our Trinity Health Culture Knows, understands, incorporates & demonstrates our Trinity Health Mission, Values, Vision, Actions & Promise in behaviors, practices and decisions. Program and Regulatory Compliance Supports the development and execution of Trinity Health’s Information Security Third Party Risk and Integrated Risk Management Program, contributing to definition of team goals, scope of work, and deliverables aligned to Enterprise Information Security (EIS) priorities. Serves as a trusted advisor and liaison to stakeholders, ensuring initiatives align with organizational mission, values, operational goals, and applicable regulatory, legal, and contractual requirements. Leads and coordinates team participation in regulatory audits and investigations, including the preparation, validation, and delivery of required evidence, while supporting overall audit readiness and response efforts. People Leadership (Mentorship/Advisory) Contributes to a high-performing team of security risk professionals by providing guidance and support in third-party and integrated risk management, risk-based prioritization, and enterprise risk remediation coordination. Serves as a mentor and trusted resource to team members, offering subject matter expertise and helping to drive consistency, accountability, and quality in work delivery. Supports the development and refinement of team practices, including role clarity, competencies, and growth pathways aligned to organizational expectations. Provides ongoing coaching, knowledge sharing, and development support to colleagues, fostering professional growth and preparing team members for expanded responsibilities. Promotes a collaborative and inclusive team environment, encouraging open communication, psychological safety, and data-informed decision-making. Demonstrates authentic and professional influence, building trust through clear communication, partnership, and effective engagement with peers, leadership, and stakeholders. Information Security Governance,Risk & Compliance (GRC) Supports and contributes to third-party and integrated risk management activities within Trinity Health GRC platforms, identifying opportunities for process improvement and adapting to evolving control frameworks and risk requirements. Performs and reviews vendor tiering and risk assessments, partnering with team members and providing guidance on complex or higher-risk cases as needed. Contributes to the execution and ongoing refinement of the third-party cyber risk lifecycle, including intake, due diligence, control assessment, remediation tracking, and ongoing monitoring. Evaluates vendor security controls across multiple domains (e.g., identity and access management, network and cloud security, data protection, incident response, and business continuity), applying risk-based judgment. Reviews and provides input on security-related contractual requirements, supporting alignment with organizational standards and regulatory expectations. Participates in coordination of offshore security risk compliance activities, helping to ensure consistency, quality, and timeliness of deliverables. Translates technical findings into clear business risk insights to support decision-making by stakeholders and business partners. Prepares and supports materials for audits, regulatory inquiries, and internal governance reviews. Documents and tracks risks, supports remediation efforts, and facilitates security policy exception (risk acceptance) processes in alignment with established standards. Identifies security risks and manages issues by working with stakeholders to develop corrective action plans, including cost and timeline analysis, and partners with leadership to present temporary risk acceptance plans in accordance with organizational security policies, procedures, and standards. Provides guidance on governance processes and collaborates with stakeholders to embed security and compliance into operational and strategic initiatives. Maintains active involvement in day-to-day assessments to ensure quality, consistency, and timely delivery. Escalates risks and concerns through appropriate channels to support effective resolution and visibility. Metrics and Reporting Partners with Strategy and Planning and Enterprise Information Security leadership to develop and report on key risk indicators (KRIs) and key performance indicators (KPIs), delivering clear, actionable insights that support informed decision-making and effective governance. Design, develop, and monitor robust data analysis and reporting systems, along with communication tools, to ensure accurate and timely insights. Information Security Risk Management (Advisory & Enablement) Coordinates and supports assignment of assessment work, partnering with team members and stakeholders to ensure alignment with established standards and effective intake processes. Reviews and provides guidance on risk assessments to promote consistency, quality, and alignment with Trinity Health information security requirements. Contributes to workload balancing through collaboration and knowledge sharing, supporting team readiness and capability to deliver departmental services effectively. Executive & Stakeholder Engagement Cultivates and maintains effective relationships with executives and key stakeholders through clear, authentic, and risk-informed communication; supports alignment, enables informed decision-making, and promotes shared accountability for managing security risk. Enterprise Risk Communication & Decision Support Synthesizes and communicates enterprise security risk insights to executives and stakeholders in a clear, actionable manner, operating within established leadership direction and communication protocols; translates complex risk data into meaningful narratives that support informed decision-making, drive prioritization, and strengthen governance in alignment with organizational objectives. Information Security Leadership Support Serves as a representative of the Manager and/or Director as directed. Supports Information Security leadership by providing risk-informed insights, actionable recommendations, and clear communication to enable strategic decision-making, program prioritization, and alignment with organizational objectives. Security Leadership & Coordination Partners with Enterprise Information Security leadership to support aligned execution of security and risk management activities, including policy and standards development, control assessments, and risk management education; promotes collaboration, consistency, and integration of security practices across the organization. Regulatory & Standards Monitoring Maintains a working knowledge of applicable Federal, State, and local laws and regulations, the Trinity Health Integrity and Compliance Program and Code of Conduct, and relevant policies and procedures, while staying current with industry developments and regulatory changes to ensure updates are reflected and adherence is upheld with honest, ethical, and professional behavior. Project Management Leads and supports security risk initiatives and annual program activities, ensuring successful delivery aligned with organizational standards and risk management objectives. Provides guidance and mentorship to team members managing projects, promoting consistency, accountability, and high-quality outcomes without direct supervisory responsibility. Partners with stakeholders and leadership to align priorities, communicate status, and support achievement of strategic outcomes. Proactively identifies risks and supports mitigation efforts to keep initiatives on track and aligned with organizational expectations. Relationship Management Builds and maintains effective relationships to support stakeholder engagement throughout the project, program, or initiative lifecycle. Partners with stakeholders to support development and alignment of business process workflows, as well as training and communication plans. Provides guidance, tools, and resources to help stakeholders address challenges, mitigate risks, and sustain engagement, promoting risk-aware decision-making and adoption of information security best practices across the organization. Minimum Qualifications Bachelor’s degree or an equivalent combination of education and experience. One or more security certifications: Certified Information Systems Security Professional (CISSP), International Social Security Association (ISSA), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC) Certified in Governance, Risk and Compliance (GRCP) or equivalent. Minimum of seven (7) years of progressive experience in information services including three (3) years working in cybersecurity governance, risk, and compliance (GRC). Minimum of three (3) years of progressively responsible experience in healthcare and/or other regulated industries. Strong knowledge of the HIPAA Security Rule and applicable industry security regulations, with the ability to rapidly build and sustain expertise; working understanding of broader HIPAA requirements, including Privacy and Breach Notification Rules. Proven knowledge of enterprise security principles and practices, with hands-on experience or demonstrated capability in implementing, integrating, and managing security solutions across enterprise environments. Working knowledge of one or more information security regulations and/or frameworks - HIPAA, ISO 27001/2, FISMA, FIPS, HITRUST and NIST security. Experience with GRC platforms (e.g., ServiceNow GRC, RSA Archer, OneTrust, or similar) supporting risk and compliance programs. Demonstrated ability to leverage tooling to improve process efficiency, enable reporting, and support scalable risk management practices. Ability to serve as a leadership representative of the Manager and/or Director, interfacing with a variety of Health Ministry and System Office Executive leaders, team members and end users, exercising effective facilitation skills, judgment, and decision-making in providing problem resolution and in meeting established goals and expectations. Ability to shape results, garner support and successfully manage complex relationships. Actively building skills in courageous, authentic leadership through clear, human-centered communication with senior leaders and stakeholders; builds trust through empathy and vulnerability while skillfully navigating complex conversations, influencing decisions, and delivering compelling, accessible messages in both formal and informal settings. Excellent oral and written communication skills. Facilitates meetings between diverse groups and interests and prepare communications that includes independent advisory recommendations. Ability to communicate with non-technical leaders and business owners providing a clear understanding of appropriate technology solutions to support and enhance business needs. Proficiency in performing third-party risk assessments and negotiating contractual security language Proficiency in performing third-party risk assessments and negotiating contractual security language Proven ability to apply appropriate project management methodology. Excellent project leadership, organization, integration, and execution skills required. Knowledge of and experience with change control, risk management, project planning, relationship management, budgeting, and scheduling. Ability to operate in an ambiguous and highly matrix organizational structure. Ability to manage multiple and ever-changing priorities in a highly autonomous self-directed manner. Some knowledge of and experience with clinical application systems (i.e., hospital work environment, technical terminology, etc.). Considerable knowledge of multiple technologies and experience with enterprise-wide applications and systems in an integrated work environment. Proven ability to operate with speed and focus, driving measurable value through high-quality delivery of time-sensitive initiatives. Must demonstrate a strong commitment to continuous personal and professional growth, maintain a proactive mindset, and consistently go above and beyond to deliver exceptional value with acceptable security controls. Ability to work independently, manage multiple priorities, and effectively adapt to rapidly changing technology and business needs with demonstrated ability to prioritize projects and workload. Preferred Qualifications Master's degree from an accredited college/university One or more enterprise technology vendor certifications (e.g. PMP, Six Sigma, ITIL) Experience with risk quantification models (e.g. FAIR) or building custom risk scoring approaches. Familiarity with data visualization tools (e.g., Tableau, Power BI) for building risk dashboards Experience working cross-functionally to evaluate security controls and business processes, translating findings into meaningful risk insights Experience in managing risk in a healthcare environment Experience with Artificial Intelligence (AI) as a strategic tool to enhance efficiency in day-to-day business processes and strengthen risk assessment capabilities through automation, predictive analytics, and intelligent decision support. Demonstrated proficiency in executive-level communication and presence, including emotional intelligence, negotiation skills, and the ability to deliver compelling presentations to senior leadership and stakeholders. Physical And Mental Requirements And Working Conditions This position operates in a typical office environment. The area is well lit, temperature-controlled, and free from hazards. Incumbent communicates frequently, in person and over the telephone, with people in a number of various locations on technical issues. Remote office must be set up to maintain confidentiality and privacy of business and clinical information. Manual dexterity is needed to operate a keyboard. Hearing is needed for extensive telephone and in person communications. The environment in which the incumbent will work requires the ability to concentrate, meet deadlines, work on several projects at the same period and adapt to interruptions. The incumbent must be capable of traveling in the course of completing project assignments. Frequent over time is required to meet deadlines. Must be able to set and organize own work priorities and adapt to them as they change frequently. Must be able to travel to the various Trinity Health sites as needed (10% or less) Our Commitment Rooted in our Mission and Core Values, we honor the dignity of every person and recognize the unique perspectives, experiences, and talents each colleague brings. By finding common ground and embracing our differences, we grow stronger together and deliver more compassionate, person-centered care. We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, veteran status, or any other status protected by federal, state, or local law. #J-18808-Ljbffr IHA

Vacancy posted 2 days ago
Similar jobs that could be interesting for youBased on the Senior Security Risk Management Consultant (REMOTE) in Livonia, MI vacancy
  • Role Description We are recruiting for a Senior Risk Management/Loss Control Consultant to join our team. This is a remote position that will ideally sit in the Chicagoland area, or potentially in western IL. Position Summary: ~Conducts insurance risk management surveys... 
    Remote work
    Senior
    Full time
    Flexible hours
    Night shift

    Amerisure Insurance

    Remote
    7 days ago
  • Amerisure in Illinois seeks a Senior Risk Management/Loss Control Consultant to perform risk surveys at client premises and deliver recommendations for risk improvement. This remote role supports a hybrid work environment with some travel to field sites. You will analyze... 
    Remote job
    Senior

    Amerisure

    Lisle, IL
    5 days ago
  •  ...companies in the United States, we proudly manage nearly $1 Billion of Direct Written...  ...retirement, we are recruiting for a Senior Risk Management/Loss Control Consultant to join our team. This is a field-based position that will sit remotely within the Broward County to Palm... 
    Remote job
    Senior
    Local area
    Flexible hours
    Night shift

    Amerisure Insurance

    Tampa, FL
    2 days ago
  •  ...systems integration services to the US National Security market, has an immediate need for a Senior IT Management Consultant to provide support to a Chief Information...  ...SAP IT efforts Track schedules, milestones, risks, and issues across complex, multi-stakeholder... 
    Remote work
    Senior
    Contract work
    For contractors
    Work at office
    Immediate start

    Tau Six

    United States
    3 days ago
  • Posted 4 days agoSenior RISK MANAGEMENT Consultant opening in Nassau County, Long Island, New York. Dynamic individual who wants to help grow the...  ...excel and numbers. Ideal candidate will have experience as a senior risk manager is preferred but not mandatory; Real Estate... 
    Senior
    For contractors

    Pryor Associates Executive Search

    New York, NY
    1 day ago
  •  ...development and advancement.Your OpportunityWe are seeking a Risk Management Consultant to join our Energy and Resources team. In this role, you...  ...and successfully execute complex projects. This role is a remote / hybrid position, with the work requiring travel to client... 
    Remote work
    Full time
    Temporary work
    Part time
    Casual work
    Local area
    Flexible hours

    Stantec

    Phoenix, AZ
    3 days ago
  •  ...DescriptionProSidian is a Management and Operations Consulting Services firm that...  .../solutions for Risk Management, Compliance...  ...Overtime Pay Basis Remote (within USA - W/ On-...  ...GSA Labor Category: Senior Consultant.We seek Risk...  ..., energy security, domestic production... 
    Remote work
    Full time
    Contract work
    Temporary work
    For contractors
    Work at office
    Flexible hours

    Prosidian Consultng

    Washington DC
    4 days ago
  •  ...Safety and Risk Management Consultant _ Remote: CAThis is a remote position in CA. Job location is flexible but prefer it to be near a major airport...  ...programs.Strong communication skills to conduct high-level senior management professional business communications (... 
    Remote work
    Full time
    Work from home
    Monday to Friday
    Flexible hours
    Night shift
    Weekend work

    Tristar

    San Diego, CA
    2 days ago
  • Enterprise Risk Management (ERM) Consultant 6-12+ years of experience in Murex Front Office , ERM: Market Risk, Credit Risk/MLC, xVA Minimum 2-3 years...  ...communication skillsLocation : Preferred Newyork but Remote is also acceptable , but need to support EST hoursPosting... 
    Remote work

    NTT DATA

    New York, NY
    3 days ago
  • A consulting firm is seeking a Freelance Risk Management Consultant to support clients in a fully remote capacity. Candidates should have extensive experience in risk management, insurance, or compliance, with strong analytical and communication skills. This role offers... 
    Remote job
    Freelance
    Flexible hours

    Jody McClure

    Tampa, FL
    5 days ago
  • Overview SAP CTRM (Commodity Trading and Risk Management) Consultant - Remote Location: Inver Grove Heights, MN Responsibilities Energy S/4 deployment...  ...is desired. Understanding of SAP Activate methodology. Seniority level Mid-Senior level Employment type Full-time Job... 
    Remote job
    Full time

    The Dignify Solutions, LLC

    Inver Grove Heights, MN
    1 day ago
  • Freelance Risk Management Consultant (Remote, Project‑Based) About the Role We’re building a network of experienced Risk Management professionals to support clients on an as‑needed basis. Ideal for consultants and analysts who excel in flexible, fast‑moving environments... 
    Remote job
    Freelance
    Flexible hours

    Jody McClure

    Tampa, FL
    5 days ago
  • Skip Navigation Senior Risk Management Consultant Role Overview: The Senior Risk Management Consultant is a seasoned professional liability risk...  ...training programs, including Code of Conduct, privacy and security, anti-fraud, and loss prevention. Manage travel and... 
    Senior
    Work at office

    Mutual Insurance Company

    Phoenix, AZ
    2 days ago
  •  ...DescriptionProSidian is a Management and Operations Consulting Services Firm...  ...the broad spectrum of Risk Management,...  ...CONUS - Washington, DC (Remote) to support requirements...  ...Washington, DC (Remote) | Senior Consultant - Full-...  ...National Nuclear Security Administration... 
    Remote work
    Senior
    Full time
    Temporary work
    For contractors
    Work at office
    Flexible hours

    Prosidian Consultng

    Washington DC
    1 day ago
  • Stantec is seeking a Risk Management Consultant to join our Energy and Resources team. You will support the delivery of engineering risk management...  ...and successfully execute complex projects. This role is remote / hybrid with travel to client sites up to 10% of the year.... 
    Remote job

    Stantec

    Phoenix, AZ
    4 days ago
  • Stantec is seeking a Risk Management Consultant to join its Energy and Resources team. This remote/hybrid role requires travel to client sites up to 10% annually, collaborating with multidisciplinary teams to identify and manage risks across the project lifecycle. You will... 
    Remote job

    Stantec Consulting International Ltd.

    Phoenix, AZ
    4 days ago
  •  ...Solutions is assisting the Risk & Resilience Advisory...  ...0 CPA firm, searching for consultants with Fusion Risk Management software experience to support...  ...engagement pipeline. These are remote, contract (1099)...  ...implementation experience required. Seniority Level Mid‑Senior level... 
    Remote work
    Contract work

    Beech Valley Solutions

    New York, NY
    15 hours ago
  • Amerisure’s field-based Senior Risk Management/Loss Control Consultant will conduct risk assessments at policyholder...  ...and loss profiles. The role sits remotely in Broward to Palm Beach, FL, supporting...  ...collaborate with underwriting to secure new business and retain existing... 
    Remote job
    Senior

    Amerisure Insurance

    Tampa, FL
    2 days ago
  • A financial services consulting firm is seeking a Business Consultant specializing in Financial Crimes Risk Management. The successful candidate will work closely with clients to enhance...  ...compensation and the possibility of remote work. #J-18808-Ljbffr Tenth Revolution... 
    Remote work
    Senior
    Full time

    Tenth Revolution Group

    Plainfield, NJ
    15 hours ago
  • $50k - $70k

    Producer/Risk Management Consultant (Remote) Patriot Growth Insurance Services, LLC Location: Jacksonville, FL (Remote) Salary: $50,000.00 - $70,000.00 (possible range up to $120,000.00) Position Overview The Risk Management Consultant and Producer is responsible for... 
    Remote job
    Full time
    Contract work
    Temporary work
    Work at office
    Local area
    Flexible hours

    Patriot Growth Insurance Services, LLC

    Jacksonville, FL
    1 day ago
  •  ...industry, is seeking an experienced Change Management Consultant to join their Business Transformation...  ..., with four days onsite and one remote day per week. Core onsite days are Tuesday...  ...key stakeholders Create and implement risk mitigation and resistance management plans... 
    Remote work
    Senior
    1 day per week

    Calculated Hire

    Cincinnati, OH
    1 day ago
  • $100k - $130k

     ...Senior Risk Consultant HUB International's Risk Services Division (RSD) partners with clients...  ...broad range of industries to turn risk management from a cost center into a competitive...  ...Liability, Products, Environmental, Security, Emergency Management). Familiarity... 
    Senior
    Work at office
    Local area
    Shift work
    Night shift

    Squaremouth

    Lake Oswego, OR
    2 days ago
  •  ...DescriptionProSidian is a Management And Operations Consulting Services firm that focuses...  ...enterprise services/solutions for Risk Management | Compliance |...  ...Seeks a Senior Management Consultant | Strategic...  ...with relevant Defense, And Security Sector Experience (functional... 
    Senior
    Full time
    Contract work
    Temporary work
    For contractors
    H1b
    Work at office
    Local area
    Monday to Friday
    Flexible hours

    Prosidian Consultng

    Washington DC
    1 day ago
  • $91.7k - $163.7k

     ...Connecting. Growing together. As a Manager of Technical Project and...  ...You will directly support the Senior Director's strategies and objectives...  ...progress across critical security and enterprise programs. Working...  ...reporting, dashboards, and risk metrics while leveraging modern... 
    Remote work
    Senior
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area

    UnitedHealth Group

    Eden Prairie, MN
    2 days ago
  • $154.38k - $193.13k

    Job DescriptionPosition: Anti-Fraud Risk Management Senior ConsultantAbout the RoleAs a Senior Consultant, you will lead and manage delivery of engagements, being responsible for quality, budget and staffing, working closely with senior client stakeholders to develop anti... 
    Senior
    Full time
    Temporary work
    Work at office
    Local area

    Infosys Technologies

    Somerset, NJ
    3 days ago
  • $102.4k - $153.6k

    A leading insurance company is seeking a Risk Engineering Consultant to identify risks and deliver safety and risk management solutions. This role offers a remote work arrangement with periodic office visits primarily within New York and New Jersey. Candidates should have... 
    Remote job
    Senior
    Work at office

    The Hartford

    New York, NY
    16 hours ago
  •  ...Salesforce Administrator Bitsight is a cyber risk management leader transforming how companies...  ...deliver value across enterprise security performance, digital supply chains, cyber...  ...audits and flag degradation or gaps to the senior team before they become incidents... 
    Remote work
    Senior

    BitSight

    United States
    2 days ago
  • $81.8k - $177.1k

    Risk Engineering Consultant (Mid-Senior) 120008 Zurich’s Middle Markets Risk Engineering team is seeking a Risk...  ...to the Regional Risk Engineering Manager. We are open to hiring talent in one...  ...Office, AM - New York Virtual Office Remote Working: Yes Schedule: Full Time... 
    Remote work
    Senior
    Full time
    Apprenticeship
    Work at office
    Work from home
    Visa sponsorship

    Zurich 56 Company Ltd

    New York, NY
    16 hours ago
  •  ...Join the team as Twilio’s next Security Risk Senior Analyst . About the job The Senior Security...  ...a key member of the One Twilio Risk Management program, focused on maturing our...  ...departments. Location This role will be remote, but is not eligible to be hired in CA... 
    Remote work
    Senior
    Full time
    Flexible hours

    Twilio

    Remote
    9 days ago
  •  ...Join the team as Twilio’s next Security Risk Senior Analyst . About the job The Senior Security...  ...a key member of the One Twilio Risk Management program, focused on maturing our...  ...departments. Location This role will be remote, but is not eligible to be hired in CA... 
    Remote work
    Senior
    Full time
    Flexible hours

    Twilio

    Remote
    18 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Security Risk Management Consultant (REMOTE). Be the first to apply!