We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Information Security Risk Analyst

Corewell Health
United States, Michigan, Grand Rapids
Nov 26, 2025

This is a 1-year, temporary position that will be supporting Cloud Transformation, Priority Next, PHPNI, and other strategic projects throughout 2026. Open to hiring candidates that live around our east (Southfield) or west (Grand Rapids) regions due to the hybrid nature of this role.

Job Summary

The Information Security Risk Analyst will support the Information Security Risk Management team in executing vendor risk reviews, managing Information Security policy exceptions, and contributing to the development and automation of risk processes. This role is critical in helping Corewell Health identify, evaluate, and mitigate information security risks across internal systems and third-party vendors. The analyst will work closely with business units, digital services, and external partners to ensure compliance with regulatory standards and internal policies.

Essential Functions
  • Conduct internal and vendor Information Security risk reviews using the Health Insurance Portability and Accountability Act (HIPAA) and NIST Cyber Security Frameworks.
  • Support the Information Security policy exception process, including intake, documentation, and coordination of approvals through Integrated Risk Management (IRM) platform.
  • Assist in the development and refinement of risk action plans, tracking remediation efforts, and reporting on residual risk.
  • Collaborate with stakeholders to gather technical and business context related to risk reviews and policy exceptions.
  • Looks for opportunities to learn from more experienced Security Analysts.
  • Actively participates in safety initiatives and risk mitigating measures where appropriate and completes all position and unit safety related competencies and requirements on a timely basis.
  • Performs other duties as assigned.
Qualifications

Required

  • Bachelor's degree in Information Systems, Cybersecurity, or related field
  • 2 or more years of experience in information security, risk management, compliance, or other relevant experience
  • Familiarity with risk frameworks (NIST CSF, HIPAA, etc.)
  • Detailed knowledge of system security principles and technology

Preferred

  • Experience working with risk automation platforms such as ServiceNow Integrated Risk Management
  • Healthcare experience, preferably at a covered entity
  • Knowledge of cloud security and hybrid IT environments
About Corewell Health

As a team member at Corewell Health, you will play an essential role in delivering personalized health care to our patients, members and our communities. We are committed to cultivating and investing in YOU. Our top-notch teams are comprised of collaborators, leaders and innovators that continue to build on one shared mission statement - to improve health, instill humanity and inspire hope. Join a nationally recognized health system with an ambitious vision of continued advancement and excellence.

How Corewell Health cares for you
  • Comprehensive benefits package to meet your financial, health, and work/life balance goals. Learn more here.

  • On-demand pay program powered by Payactiv

  • Discounts directory with deals on the things that matter to you, like restaurants, phone plans, spas, and more!

  • Optional identity theft protection, home and auto insurance, pet insurance

  • Traditional and Roth retirement options with service contribution and match savings

  • Eligibility for benefits is determined by employment type and status

Primary Location

SITE - Corewell Health Place - 100 Corewell Drive NW - Grand Rapids

Department Name

PMO - Strategic Projects

Employment Type

Full time

Shift

Day (United States of America)

Weekly Scheduled Hours

40

Hours of Work

8:00 a.m. to 5:00 p.m.

Days Worked

Monday to Friday

Weekend Frequency

N/A

CURRENT COREWELL HEALTH TEAM MEMBERS - Please apply through Find Jobs from your Workday team member account. This career site is for Non-Corewell Health team members only.

Corewell Health is committed to providing a safe environment for our team members, patients, visitors, and community. We require a drug-free workplace and require team members to comply with the MMR, Varicella, Tdap, and Influenza vaccine requirement if in an on-site or hybrid workplace category. We are committed to supporting prospective team members who require reasonable accommodations to participate in the job application process, to perform the essential functions of a job, or to enjoy equal benefits and privileges of employment due to a disability, pregnancy, or sincerely held religious belief.

Corewell Health grants equal employment opportunity to all qualified persons without regard to race, color, national origin, sex, disability, age, religion, genetic information, marital status, height, weight, gender, pregnancy, sexual orientation, gender identity or expression, veteran status, or any other legally protected category.

An interconnected, collaborative culture where all are encouraged to bring their whole selves to work, is vital to the health of our organization. As a health system, we advocate for equity as we care for our patients, our communities, and each other. From workshops that develop cultural intelligence, to our inclusion resource groups for people to find community and empowerment at work, we are dedicated to ongoing resources that advance our values of diversity, equity, and inclusion in all that we do. We invite those that share in our commitment to join our team.

You may request assistance in completing the application process by calling 616.486.7447.

Applied = 0

(web-df9ddb7dc-vp9p8)