Jobs and Careers
SO

Senior Enterprise Risk Management Specialist

Softheon
Stony Brook, United StatesRemotefull_timeVerifiedPosted 29 Jun 2023

About the role

Softheon builds software and automation solutions for health insurers and government health agencies. Help shape the future of health tech while working from home with incredible benefits that reflect our commitment to expanding access to quality insurance. Work for a fast-growing, established, and profitable company where you can power what’s next in healthcare.


Position Summary:

The Senior ERM specialist is a key contributor to the success of the ERM work plan, focused on capturing input from various stakeholders/sources and generating insights to drive risk-based decision making within business processes and strategic initiatives.

This position will help drive the implementation and maturity of Enterprise Risk Management processes throughout Softheon.

This person will be responsible for identifying, analyzing and assessing risks across various departments, recommending risk mitigation strategies, while ensuring compliance with laws and regulations and promoting a culture of risk awareness throughout Softheon.


Requirements

Key Responsibilities

  • Driving execution of various deliverables that are distributed to senior leadership and other key external/internal stakeholders.
  • Perform risk analyses, identify trends, and create reporting for internal and external use, including for the Company’s Risk Management / Corporate Governance Committee
  • Analyze and interpret risk-related data, performance of service level Agreements for client and vendor and other relevant information in order to measure and monitor key risks.
  • Coordinate Incident Response activities including ad-hoc risk analysis (e.g., root cause, business impact).
  • Prepare Monthly Summary Risk Reports and present findings and recommendations to the Executive Compliance Committee; the Audit and Risk Committee; the Board; or other key stakeholders.
  • Identify and analyze emerging industry trends, both positive and negative, to enhance the company’s “early warning systems” and help develop proactive risk management strategies.
  • Conduct BCP risk assessments for various departments and functions, analyzing potential business impact (BIA) of unpredictable business interruptions such as natural disasters, security breach, legal claims, and market disruptions and evaluate the likelihood and impact of risks, as well as identifying related controls.
  • Ensure that the proper training, planning and testing have been carried out to facilitate the timely recovery to normal business operations, including relocation to an alternate facility,
  • Develop and provide staff training on risk management, BCP and disaster recovery. Coordinate recovery exercises including regularly scheduled application / business continuity testing. Develop and maintain a business recovery plan and procedure; reviews, revises, and expands existing plans and protocols.
  • Works with senior management and appropriate business units to prioritize DR/BCP critical systems and initiatives.
  • In conjunction with department and business lines, helps develop and implement, monitoring and management controls over risks (credit, liquidity, regulatory/compliance, reputational, strategic, legal and operational) and risk mitigation programs for the enterprise. Conduct annual risk assessments.
  • Perform analysis of proposed new vendors to ensure new initiatives commence in a manner that minimizes risk to the organization.
  • Conduct risk evaluations of third-party service providers (vendors, outside service providers) and ensure appropriate due diligence is performed to identify, mitigate, and maintain ongoing awareness of risks to the Company resulting from third party relationships.
  • Support business areas with day-to-day risk/compliance questions in regard to business processes
  • Reviews the risk issues reported across the organization.
  • Prepares various reports, including trend analysis, on the open risk issues for the department on a scheduled basis. Assures root causes are identified and documented.
  • Effectively utilizes the GRC system to record and report on key risk indicators and key performance indicators in regard to the work performed in conducting risk assessments.
  • Prepares quarterly reports on risk reviews and business continuity activities for management’s review and presentation to the Enterprise Risk Management Committee (ERMC)
Qualifications
  • Bachelor’s degree in Risk Management, Law, Business, healthcare administration, or another related field of study is required. Master’s is preferred.
  • 4 - 5 years of experience working in a related compliance role.
  • Strong knowledge of industry regulations, such as HIPAA, ACA, and

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Softheon

View company profile →