Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Information Security Governance, Risk & Compliance Analyst

$121k - $205k
Full-time

MiniMed

We anticipate the application window for this opening will close on - 1 Sep 2026

At MiniMed, you can begin a lifelong career of exploration and innovation, while helping make a difference in the lives of people living with diabetes around the globe. You'll lead with purpose, breaking down barriers to innovation for a more connected, compassionate world.

About the Role

The Senior Information Security Governance, Risk & Compliance Analyst is a seasoned individual contributor responsible for supporting enterprise governance, risk, compliance, access governance, SAP GRC, SOX ITGC, and assurance activities. This second-line role provides independent oversight, monitoring, reporting, and control assurance to strengthen information security, technology compliance, and risk management capabilities. The role partners across Information Security, IT, IAM, Finance, Internal Audit, Privacy, Legal, and business stakeholders to assess risks, support regulatory obligations, improve control effectiveness, and mature governance practices across a global public medical technology environment.

Responsibilities may include the following and other duties may be assigned.

Access Governance & Segregation of Dutie s

  • Coordinate and support enterprise Segregation of Duties governance across SAP and other key enterprise platforms.

  • Administer SAP GRC Access Control capabilities, including Access Risk Analysis, Access Request Management, Emergency Access Management, and Business Role Management.

  • Maintain SoD rulesets, risk functions, mitigating controls, access governance documentation, and related control evidence.

  • Assess access risks, including SoD conflicts, excessive entitlements, privileged access exposure, and control effectiveness concerns.

  • Monitor access-related exceptions, remediation plans, compensating controls, metrics, and trends to support risk reduction and compliance obligations.

  • Partner with application owners, IAM, SAP Security, and business stakeholders to evaluate and address identified access governance risks

User Access Review & Privileged Access Governance

  • Coordinate and manage periodic User Access Reviews and access certification activities.

  • Monitor completion rates, overdue certifications, and non-compliance issues in accordance with governance requirements.

  • Support oversight of privileged access, emergency access, Firefighter governance, and related monitoring activities.

  • Review privileged access activity and maintain evidence supporting user access governance controls.

SOX ITGC Compliance & Control Monitoring

  • Administer and support SAP GRC Process Control activities used to monitor, assess, and validate SOX IT General Controls and security compliance requirements.

  • Support SOX ITGC compliance execution, control monitoring, audit evidence collection, validation, retention, and reporting.

  • Assist control owners and stakeholders with control procedures, evidence requirements, deficiencies, findings, remediation tracking, and closure activities.

  • Develop dashboards, metrics, and reporting to support management self-assessment, continuous control monitoring, and control effectiveness improvements.

Audit & Assurance Support

  • Support internal audits, external audits, and regulatory assessments by coordinating evidence, documentation, walkthroughs, and audit responses.

  • Maintain audit-ready documentation repositories and supporting records.

  • Monitor remediation activities and validate completion of corrective actions.

  • Perform control assurance activities by reviewing evidence completeness, control execution, and remediation effectiveness.

Governance & Compliance Operations

  • Support the development, implementation, and maintenance of information security policies, standards, procedures, governance processes, and control frameworks.

  • Support control inventory management, exception management, compliance reporting, GRC tool administration, workflows, dashboards, and reporting capabilities.

  • Develop compliance and risk metrics to monitor program effectiveness and identify opportunities for process improvement, automation, and control optimization.

  • Contribute to scalable governance standards, operational procedures, and compliance monitoring practices that strengthen enterprise security governance.

Risk Management Support

  • Assess cybersecurity, technology, artificial intelligence, data protection, and operational risks through structured risk assessment and governance processes.

  • Facilitate information security risk assessments supporting governance, compliance, and enterprise risk management activities.

  • Maintain risk registers, treatment plans, issue logs, action tracking, KRIs, risk dashboards, and management reporting.

  • Evaluate mitigation strategies and control implementation activities to support informed business and technology decision-making.

Stakeholder Collaboration & Advisory Support

  • Partner with Information Security, Information Technology, Finance, Privacy, Internal Audit, Legal, Enterprise Risk Management, and business stakeholders.

  • Translate technical risks, access governance issues, and compliance requirements into clear, business-focused recommendations.

  • Facilitate assessments, workshops, compliance reviews, and cross-functional discussions to promote risk-informed decision-making.

  • Provide subject matter guidance on governance, compliance, access governance, risk management, and security control requirements.

Second-Line Independence & Governance Boundaries

This role provides oversight, monitoring, reporting, governance, compliance, risk management, and assurance activities while maintaining appropriate second-line independence. The role partners with first-line teams to evaluate control design, monitor execution, assess risk, validate evidence, and support remediation governance while preserving independent oversight responsibilities.

Required Qualifications

  • Bachelor’s degree in Information Security, Cybersecurity, Information Systems, Risk Management, Business Administration, Accounting, Finance, Audit, or a related discipline, or equivalent combination of education and experience.

  • Minimum 7 years of experience in Information Security GRC, Information Security Risk Management, SOX ITGC Compliance, Internal Audit, External Audit, Access Governance, Identity Governance, SAP Security Governance, Compliance Management, or Internal Controls Management.

  • Requires advanced knowledge of Information Security GRC, access governance, regulatory compliance, risk management, and internal controls.

  • Requires strong understanding of SAP GRC Access Control and SAP GRC Process Control administration. Typically obtained through advanced education combined with significant professional experience in information security, compliance, governance, risk management, audit, or internal controls.

  • Current SAP Certified Application Associate, SAP Access Control certification required.

  • Current SAP GRC Process Control certification required.

Preferred Qualifications

  • Hands-on experience administering SAP GRC capabilities supporting SoD, UAR, EAM, SOX ITGC, continuous control monitoring, compliance reporting, and audit evidence management.

  • Experience administering SAP GRC Access Risk Analysis, Access Request Management, Emergency Access Management, Business Role Management, and SAP GRC Process Control.

  • Experience maintaining SoD rulesets, mitigating controls, access-risk libraries, access review campaigns, compliance dashboards, and audit evidence repositories.

  • Experience supporting SOX ITGC testing, walkthroughs, evidence requests, remediation tracking, and audit readiness activities.

  • Working knowledge of SAP authorization concepts, including roles, profiles, transaction codes, and role-based access controls.

  • Strong analytical, documentation, reporting, stakeholder management, and business communication skills.

  • SAP GRC Risk Management Certification or experience administering SAP GRC Risk Management solutions.

  • Professional certifications such as CISA, CRISC, CIA, CISM, CISSP, GRCP, or CPA.

  • Experience supporting public-company SOX 404 compliance programs.

  • Experience in medical device, healthcare, life sciences, pharmaceutical, manufacturing, or other highly regulated industries.

  • Experience supporting enterprise access governance platforms beyond SAP, including Oracle, Workday, ServiceNow, SailPoint, Entra ID, or comparable platforms.

  • Experience developing compliance dashboards, risk reporting, and executive-facing control metrics.

  • Experience supporting enterprise information security risk management programs.

Framework Knowledge

Knowledge of one or more of the following frameworks and standards is preferred:

  • NIST Cybersecurity Framework

  • NIST Risk Management Framework

  • NIST AI Risk Management Framework

  • ISO 27001

  • ISO 31000

  • ISO 42001

  • COBIT

  • COSO Internal Control Framework

  • SOX 404 IT General Controls

  • HIPAA Security and Privacy Requirements

  • Data Protection and Privacy Regulations

Physical Job Requirements

The above statements are intended to describe the general nature and level of work being performed by employees assigned to this position, but they are not an exhaustive list of all the required responsibilities and skills of this position.

The physical demands described within the Responsibilities section of this job description are representative of those that must be met by an employee to successfully perform the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions. For Office Roles: While performing the duties of this job, the employee is regularly required to be independently mobile. The employee is also required to interact with a computer and communicate with peers and co-workers. Contact your manager or local HR to understand the Work Conditions and Physical requirements that may be specific to each role.

Benefits & Compensation

MiniMed offers a competitive salary and flexible benefits package

At MiniMed, we put people first. A commitment to our employees lives at the core of our values: We recognize their contributions. They share in the success they help create. We offer a wide range of benefits, resources, and competitive compensation plans designed to support you at every stage of your career and life.

Salary ranges for U.S (excl. PR) locations (USD):$128,800.00 - $193,200.00

For roles located in California, Seattle WA, Washington DC, Boston MA, and New York City, the salary range is $121,000.00- $205,000.00 USD.

Actual compensation may vary based on factors including experience, education, certifications, skills, market conditions, internal equity, and geographic location. Compensation and benefits information pertains solely to candidates hired within the United States (local market compensation and benefits will apply for others).

This position is eligible for a short-term incentive called the Short Term Incentive (STI).

At MiniMed, we are committed to supporting the well-being and financial security of our employees. Regular employees working 20 or more hours per week are eligible for a robust benefits package, including health, dental, and vision insurance, as well as access to a Health Savings Account, Healthcare Flexible Spending Account, life insurance, long-term disability leave, and a dependent daycare spending account. In addition, all regular employees enjoy incentive plans, a 401(k) plan with company match, short-term disability coverage, paid time off and holidays, participation in our Employee Stock Purchase Plan, and access to our Employee Assistance Program. Eligible employees may also benefit from our Non-qualified Retirement Plan Supplement and Capital Accumulation Plan, subject to IRS minimum earnings requirements. Please note that “regular employees” refers to those who are not temporary staff, such as interns, and some benefits may not apply to employees in Puerto Rico.

For further details about our comprehensive benefits, we encourage you to visit the link below.

MiniMed Benefits Overview

About MiniMed

MiniMed is a full-stack insulin delivery company dedicated to supporting people living with diabetes through every step of their journey — when and how they need it. For more than 40 years, we’ve been committed to redefining what’s possible: intelligent dosing systems designed for real life, predictive insights that stay a step ahead, and always on support when it’s needed most. At the heart of everything we do is a simple Mission: to make every day a better day for people with diabetes.

Learn more about our business, and our mission here .

It is the policy of MiniMed to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, familial status, membership or activity in a local human rights commission, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state, or local law. In addition, MiniMed will provide reasonable accommodations for qualified individuals with disabilities.

If you are applying to perform work for MiniMed in any position which will involve performing at least two (2) hours of work on average each week within the unincorporated areas of Los Angeles County, you can find here a list of all material job duties of the specific job position which MiniMed reasonably believes that criminal history may have a direct, adverse and negative relationship potentially resulting in the withdrawal of a conditional offer of employment. MiniMed will consider for employment qualified job applicants with arrest or conviction records in accordance with the Los Angeles County Fair Chance Ordinance for Employers and the California Fair Chance Act.

Vacancy posted 5 days ago
Similar jobs that could be interesting for youBased on the Senior Information Security Governance, Risk & Compliance Analyst in Minnesota vacancy
  • $91.7k - $163.7k

     ...directly support the Senior Director's...  ...progress across critical security and enterprise...  ..., dashboards, and risk metrics while leveraging...  ...best practices, governance frameworks, and...  ...indicators (KPIs), compliance metrics, and risk...  ...technology trends to inform solution design... 
    Senior
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work

    UnitedHealth Group

    Eden Prairie, MN
    1 day ago
  • $81.7k - $165.1k

    Old National Bank is seeking a Community Banking Business Risk Officer to join their Consumer, Commercial and Shared Services Business Risk Team. This role requires deep expertise in risk management, particularly within consumer banking and operations. The successful candidate... 
    Senior

    Old National Bank

    Lake Elmo, MN
    5 days ago
  •  ...Risk & Compliance Technical Specialist SFM writes Workers' Compensation...  ...data and policyholder information. The Risk & Compliance Technical...  ...workflows, systems, and governance records that keep our Risk...  ...governance, cybersecurity and data security, and privacy; identify the... 
    Suggested
    Temporary work
    Work experience placement
    Work at office
    Local area
    Remote work
    Flexible hours

    SFM Mutual Insurance Company

    Minneapolis, MN
    3 days ago
  •  ...Risk Consulting - Risk Technology - Sap Grc & Security - Senior Consultant Location: New York Other locations: Anywhere...  ...growth across SAP and Governance, Risk, and Compliance (GRC), EY is seeking SAP...  ...degree in computer science, information systems, information... 
    Senior
    Shift work

    EY

    Minneapolis, MN
    1 day ago
  •  ...the latest tools, information and training, we’ll...  ....The Principal Analyst, HR Technology Risk and Access Governance will lead access governance...  ..., Privacy, Legal, Compliance and HR leadership...  ...and enterprise security standards into...  ...remediation status to senior HR, HR Operations,... 
    Suggested
    Hourly pay
    Work at office
    Local area
    Relocation package
    Shift work
    3 days per week

    Boston Scientific Corporation

    Arden Hills, MN
    4 days ago
  • Boston Scientific is seeking a Principal Analyst to lead HR technology risk and access governance across SAP SuccessFactors and other HR platforms. You will partner with HR Operations, IT, Privacy, Legal and Internal Audit to build sustainable access controls and evidence... 
    Work at office

    Boston Scientific

    Osseo, MN
    5 days ago
  • $65k - $115k

     ...What is the opportunity? The Senior Analyst, Disclosures Management and Risk Governance is responsible for executing...  ...business support units (e.g., Legal, Compliance, Operations, Business...  ...to encourage action and obtain information effectively. Demonstrated high... 
    Senior
    Full time
    Work at office
    Local area
    Flexible hours

    Royal Bank of Canada

    Minneapolis, MN
    more than 2 months ago
  • $70k - $130k

     ...DescriptionWhat is the opportunity?The Senior Analyst, Risk Transformation is a newly created...  ...partner closely with the Head, Risk Governance and Transformation to build out the WM...  ...posted : 2026-08-10Profession: Audit | Compliance | Legal | RiskEmployment type: Full time
    Senior
    Full time
    Work at office
    Flexible hours

    Royal Bank of Canada

    Minneapolis, MN
    2 days ago
  • $70k - $130k

     ...DescriptionWhat is the opportunity?As a Senior Analyst for Operational Risk you will be responsible for...  ...business and lines of defense such as Compliance and Group Risk Management to ensure...  ...analyses as neededGather and validate information provided by business to ensure... 
    Senior
    Full time
    Flexible hours

    Royal Bank of Canada

    Minneapolis, MN
    17 hours ago
  • $66.3k - $114.29k

     ...seeking a Cybersecurity GRC Analyst to join our team! The...  ...the organization's information security program by supporting regulatory compliance, managing third-party security risk, advancing security framework...  ...improvements that strengthen governance, documentation,... 
    Full time
    Work at office
    Local area
    Remote work
    Work visa
    Flexible hours

    Western National Insurance Group / Umialik Insurance Company

    Minneapolis, MN
    4 days ago
  •  ...Senior High-Risk BSA Analyst Park State Bank's Core values are GROWTH, TEAMWORK, RESPONSIVE, TRANSPARENT...  ...customer relationships to ensure compliance with regulatory requirements and...  ...thorough documentation, responding to information requests, and assisting with... 
    Senior
    Work at office
    Night shift
    Weekend work
    Afternoon shift

    American Statistical Association - ASA

    Minneapolis, MN
    2 days ago
  • $72.8k - $130k

     ...Senior Vendor Risk Analyst Optum is a global organization that delivers care...  ...Responsibilities: Review vendor information to assess risk exposure...  ..., including information security, financial, geographic,...  ...Familiarity with industry compliance standards and frameworks,... 
    Senior
    Remote job
    Minimum wage
    Full time
    Work experience placement
    Local area

    UMR

    Eden Prairie, MN
    2 days ago
  •  ...this role:Wells Fargo is seeking a Senior Lead Operational Risk Officer within the Finance & Financial...  ...change initiatives.Participate in governance routines and leadership forums to provide...  ...managing risk (including audit, compliance, or product control experience). Understanding... 
    Senior
    Full time
    Work experience placement
    Work at office

    Wells Fargo

    Minneapolis, MN
    17 hours ago
  • $105.4k - $207.8k

     ...resilience, support compliance, and protect critical...  ...capabilities that advance data governance, information protection, and...  ...Work you'll do As a Senior Engineering...  ...and adjacent Microsoft security and compliance technologies...  ...security posture and reduce risk. A successful... 
    Senior
    Local area
    Visa sponsorship

    Deloitte

    Minneapolis, MN
    4 days ago
  • $149.52k - $175.9k

     ...Job DescriptionUS Bancorp is seeking a Senior Compliance Officer to advise US Bank's Capital Markets...  ...in their assigned Line of Business, Risk/Compliance/Audit (RCA) Consultants, RCA...  ...your health, protect your financial security and give you peace of mind. Our benefits... 
    Senior
    Full time
    Work experience placement
    Local area
    3 days per week

    US Bank

    Minneapolis, MN
    1 day ago
  • $90k - $121.3k

     ...ResponsibilitiesWe are currently seeking a Senior Compliance Advisory Services Officer...  ...is part of the Compliance/Risk Management team (the “second...  ...reviewing of all requested information and/or assisting in...  ...business management team and any governance committees on relevant... 
    Senior
    Work experience placement
    Work at office

    Old National Bank

    Saint Paul, MN
    17 hours ago
  • $100k - $179k

     ...Wells Fargo is seeking a Senior Risk Asset Review Specialist within...  ...company’s commercial loans and securities investments. At times,...  ..., policies, procedures, and compliance requirements. Collaborate...  ...emphasis on proactive monitoring, governance, risk identification and... 
    Senior
    Work experience placement
    Relocation package

    Wells Fargo

    Minneapolis, MN
    17 hours ago
  • $220k

     ...project leadership experience here! Growing Life company is seeking an ASA or FSA with 11+ years of experience to join the team as a Senior Actuary (Reinsurance). This role will lead various projects, design new reinsurance structures, and negotiate reinsurance treaties.... 
    Senior

    DW Simpson Global Actuarial & Analytics Recruitment

    Minneapolis, MN
    4 days ago
  • $60k - $121.3k

     ...Third-Party Risk Management Senior Analyst The Third-Party Risk Management (TPRM) Senior Analyst...  ...of vendors, supporting the Bank's compliance with regulatory requirements and internal...  ...to operational resilience, information security, compliance, and business continuity... 
    Senior
    Work at office

    Old National Bancorp

    Lake Elmo, MN
    4 days ago
  • $137.7k - $229.5k

     ...humans better at work. The team Deloitte’s Government and Public Services (GPS) practice - our...  ...-value. Work you'll doAs an Actuarial Senior Consultant, you will:Provide strategic...  ...budget forecasting and fiscal analyses, and risk adjustmentSupport business development... 
    Senior
    Local area

    Deloitte

    Minneapolis, MN
    4 days ago
  • $92.82k - $109.2k

     ...Job Title Business Risk Professional Job Description...  ...designed to promote effective governance and risk management that is systematic...  .../or activities that ensure compliance with applicable federal,...  ...regulations. May identify gaps and inform solutions that minimize... 
    Temporary work
    Work experience placement
    Work at office
    Local area
    Remote work
    Flexible hours
    3 days per week

    U.S. Bancorp

    Hopkins, MN
    4 days ago
  • $92.82k - $109.2k

     ...Business Risk Professional The organization's...  ...to promote effective governance and risk management that...  ...activities that ensure compliance with applicable...  ...May identify gaps and inform solutions that minimize...  ...protect your financial security and give you peace of... 
    Temporary work
    Work at office
    Local area
    Remote work
    Flexible hours
    3 days per week

    Minnesota Jobs

    Minneapolis, MN
    17 hours ago
  • $91.7k - $163.7k

     ...is improving the flow of health data and information to create a more connected system. We remove...  ...reduce costs while improving risk management, quality and revenue growth. Ready...  ...Connecting. Growing together. As an Actuarial Senior Consultant on the UHG Enterprise Solutions... 
    Senior
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work

    UnitedHealth Group

    Eden Prairie, MN
    2 days ago
  • $72.8k - $130k

     ...Join us to start Caring. Connecting. Growing togetherThis Senior Actuarial Analyst will be part of a team that oversees the Medicaid pricing...  ...This role will be tasked with analyzing state rate files and information, trends, claims experience, and eligibility to identify... 
    Senior
    Minimum wage
    Full time
    Work experience placement
    Work at office
    Local area
    Remote work

    UnitedHealth Group

    Minnetonka, MN
    17 hours ago
  • $73.7k

     ...Sr Sox Compliance Analyst Assist in managing Sarbanes - Oxley compliance. Assist company personnel in understanding...  ...of SAP applications, participate in reviewing risks, role changes and access requests within the Governance Risk and Compliance application. Essential... 
    Senior

    Minnesota Jobs

    Minneapolis, MN
    4 days ago
  • Alerus Financial is seeking a Cash Balance Actuary to assist the sales team in designing and communicating ERISA aspects of cash balance, defined benefit, and defined contribution plans. You will produce projections for new business proposals and explain funding strategies...
    Senior

    Alerus

    Hopkins, MN
    17 hours ago
  •  ...UnitedHealth Group’s UnitedHealthcare unit is seeking a Senior Actuarial Analyst to oversee Medicaid pricing from end to end, collaborating with market leads, forecasting, medical economics, and external partners to ensure proper funding for Community & State programs... 
    Senior

    UnitedHealth Group

    Minnetonka, MN
    2 days ago
  •  ...UnitedHealthcare is seeking a Senior Actuarial Analyst to lead Medicaid pricing initiatives and support cross-functional teams across markets, forecasting, and accounting. You will analyze rate files, trends, and eligibility to advocate for appropriate reimbursement while... 
    Senior
    Work at office
    Remote work

    UnitedHealthcare

    Minnetonka, MN
    1 day ago
  • AsaHealthandBenefitsFinancial/Actuarial SeniorDirector,youwillserveasthefinancialleadforlarge,complex client assignments. You’ll leverage your experience as a benefits financial/actuarial expert to make strategic recommendations on funding, plan design and innovative financial...
    Senior

    WTW inc.

    Bloomington, MN
    17 hours ago
  • $111.3k - $207.8k

     ...developments, and emerging product risks.Prepare and sign statements of...  ...Solutions Product and Actuarial as a senior consultant and expert in governance forums and cross-functional committees...  ...problem-solving skills to analyze information and form recommendations.Self-... 
    Senior
    Full time
    Work at office
    Flexible hours
    3 days per week

    Securian Financial

    Saint Paul, MN
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Information Security Governance, Risk & Compliance Analyst. Be the first to apply!