Lead GRC (Healthcare)

  • Free
  • Published date: April 22, 2025
    • Massachusetts, United States

Position: Lead GRC(Healthcare)

Location: Boston, MA
Job Type: Long term Contract

Job Summary:

We are seeking a highly skilled Governance, Risk, and Compliance (GRC) Lead with expertise in the healthcare industry to oversee risk management, regulatory compliance, and IT governance. This role ensures adherence to HIPAA, HITRUST, GDPR, NIST, and other healthcare regulations while driving security best practices. The GRC Lead will work closely with IT, security, legal, and compliance teams to develop and enforce policies that protect patient data and ensure regulatory compliance.

Key Responsibilities:

Governance & Strategy

  • Develop and implement GRC frameworks and policies aligned with healthcare compliance standards.

  • Oversee IT governance practices, ensuring alignment with business and regulatory requirements.

  • Lead risk assessment programs and ensure effective risk mitigation strategies.

  • Collaborate with stakeholders to integrate GRC best practices across IT and business functions.

Risk Management

  • Conduct risk assessments, audits, and security evaluations to identify and mitigate vulnerabilities.

  • Develop and implement incident response plans, disaster recovery (DR), and business continuity plans (BCP) to ensure operational resilience.

  • Monitor and assess third-party vendors for security risks and compliance gaps.

  • Work with cybersecurity teams to ensure data protection measures are effective.

Compliance & Regulatory Management

  • Ensure compliance with HIPAA, HITRUST, NIST, GDPR, SOC 2, PCI-DSS, ISO 27001, and other industry regulations.

  • Lead and prepare for regulatory audits and assessments conducted by external agencies.

  • Develop training programs to educate employees on security, compliance, and privacy regulations.

  • Maintain documentation related to policies, procedures, risk registers, and compliance reports.

Required Qualifications:

  • 10+ years of experience in GRC, healthcare IT compliance, or risk management.

  • Strong knowledge of HIPAA, HITRUST, NIST, GDPR, SOC 2, PCI-DSS, ISO 27001 frameworks.

  • Experience with GRC tools (Archer, ServiceNow GRC, MetricStream, etc.).

  • Proficiency in risk assessments, audits, policy creation, and regulatory reporting.

  • Ability to work cross-functionally with legal, IT security, and compliance teams.

  • Excellent communication, analytical, and leadership skills.

Preferred Qualifications:

  • Certifications: CISA, CISM, CRISC, CISSP, or HITRUST Certified CSF Practitioner.

  • Experience with cloud security and compliance in healthcare (AWS, Azure, GCP).

  • Background in third-party risk management and vendor compliance.


Reference : Lead GRC (Healthcare) jobs

Useful information

  • Avoid scams by acting locally or paying with PayPal
  • Never pay with Western Union, Moneygram or other anonymous payment services
  • Don't buy or sell outside of your country. Don't accept cashier cheques from outside your country
  • This site is never involved in any transaction, and does not handle payments, shipping, guarantee transactions, provide escrow services, or offer "buyer protection" or "seller certification"


post to multiple job boards
Now take benefits of multiple job boards and search engine posting.
Try it.

Related listings

  • Commercial Plumber

    Technology (Florida) April 19, 2026 Free

    Experienced Commercial Plumber – Boynton/Palm Beach County, FL Commercial Plumber (2–3 Yrs Exp) – GREAT PAY + OT | Hiring Now Work on “Ground-Up Commercial Construction” | Full-Time | Growth Opportunities | Full Benefits. Job Overview: We are activel...

  • Customer Experience Coordinator

    Technology (Nevada) April 19, 2026 Free

    Job description: Crimson Key Concierge is seeking a highly organized, reliable, and confident individual to join our team as a VIP Client Services & Operations Administrator. This role combines client communication, booking coordination, and daily op...

  • Field sales Executive

    Technology (Andhra Pradesh) March 20, 2026 Free

    Job Title: Field Sales Executive (0–3 Years) 📍 Location: [Hyderabad] 💼 Experience: 0–3 Years 🎓 Qualification: Any Graduate 🔹 Job Summary: We are looking for a dynamic and self-motivated Field Sales Executive to drive m...