Senior Governance & Risk Analyst
Listed on 2026-01-09
-
IT/Tech
Cybersecurity, IT Business Analyst
Overview
ZS is a place where passion changes lives. As a management consulting and technology firm focused on improving life and how we live it, we transform ideas into impact by bringing together data, science, technology and human ingenuity to deliver better outcomes for all. Here you’ll work side-by-side with a powerful collective of thinkers and experts shaping life-changing solutions for patients, caregivers and consumers, worldwide.
ZSers drive impact by bringing a client-first mentality to each engagement. We partner collaboratively with our clients to develop custom solutions and technology products that create value and deliver company results across critical areas of their business. Bring your curiosity for learning, bold ideas, courage and passion to drive life-changing impact to ZS.
ZS IT Support teams are aligned with the company’s business strategy and operating model and aims to provide its 4000 plus employees and their clients the right tools and information for high performance. The IT organization focuses on providing products and services to ZS to ensure successful business outcomes. This involves providing a scalable, sustainable and reliable IT infrastructure, customized applications, messaging and collaboration products, Business Intelligence and Database administration support along with a reliable 24x7 uninterrupted high-quality technology support services.
WhatYou’ll Do
We are seeking applicants for the position of Senior Analyst - Governance and Risk team to join our US IT Governance, Risk and Compliance team. The position will support various management-directed IT risk governance initiatives which include the following responsibilities:
- Perform risk assessments:
- Conduct vendor due diligence assessments to evaluate the security controls and risk posture of third-party vendors.
- Conduct process and project security risk assessments to identify potential vulnerabilities and recommend appropriate controls.
- Analyze and evaluate risks associated with IT systems, applications, and infrastructure.
- Maintain risk register:
- Develop and maintain a comprehensive risk register, documenting identified risks, their likelihood, potential impact, and recommended mitigation strategies.
- Regularly review and update the risk register to reflect changes in the risk landscape and organizational priorities.
- Communicate risk findings and recommendations to relevant stakeholders.
- Compliance and policy adherence:
- Stay up-to-date with relevant regulatory requirements and industry best practices related to IT risk management.
- Assist in the development and implementation of policies, procedures, and controls to ensure compliance with applicable standards and regulations.
- Monitor and assess compliance with established risk management policies and procedures.
- Risk mitigation and control implementation:
- Collaborate with cross-functional teams to develop and implement risk mitigation strategies and controls.
- Provide guidance and support to project teams to ensure that security controls are effectively implemented.
- Monitor the effectiveness of implemented controls and recommend enhancements as needed.
- Reporting and communication:
- Prepare and present reports on risk assessment findings, including risk profiles, potential impacts, and recommended risk mitigation strategies, to stakeholders and senior management.
- Communicate complex risk concepts and technical information to non-technical stakeholders in a clear and concise manner.
- Bachelor's degree in Computer Science, Information Systems, or a related field (master's degree is a plus).
- Minimum of 5-7 years of experience in IT risk management, IT governance or related field.
- Strong understanding and knowledge of IT risk assessment methodologies, frameworks, industry best practices and regulatory requirements (GDPR, HIPAA, PCI DSS).
- Strong experience with vendor risk management and security risk assessments.
- High proficiency in using risk assessment tools and technologies.
- Excellent analytical and problem-solving skills.
- Strong written and verbal communication skills, with the ability to effectively communicate technical concepts…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).