ForgeApply · Job listing
Cybersecurity Engineer II
Ensemble Health Partners
See all 368 open roles at Ensemble Health Partners →
Tailor your resume for this Ensemble Health Partners job in about a minute.
ForgeApply tailors your resume and cover letter to this exact posting, then hands you a ready-to-submit application for Ensemble Health Partners's site. Free trial, no card required.
About this role
Thank you for considering a career at Ensemble!
Ensemble is a leading provider of technology-enabled revenue cycle management solutions for health systems, including hospitals and affiliated physician groups. They offer end-to-end revenue cycle solutions as well as a comprehensive suite of point solutions to clients across the country.
Ensemble keeps communities healthy by keeping hospitals healthy. We recognize that healthcare requires a human touch, and we believe that every touch should be meaningful. This is why our people are the most important part of who we are. By empowering them to challenge the status quo, we know they will be the difference!
O.N.E Purpose: • Customer Obsession: Consistently provide exceptional experiences for our clients, patients, and colleagues by understanding their needs and exceeding their expectations.
• Embracing New Ideas: Continuously innovate by embracing emerging technology and fostering a culture of creativity and experimentation.
• Striving for Excellence: Execute at a high level by demonstrating our “Best in KLAS” Ensemble Difference Principles and consistently delivering outstanding results.
The Opportunity:
The Engineer II, Cybersecurity (GRC Engineer) supports Ensemble Health Partners' Governance, Risk, and Compliance (GRC) program by combining cybersecurity compliance expertise with hands-on technical execution. This role is responsible for the day-to-day management of the cybersecurity risk register, control automation initiatives, compliance monitoring, audit evidence collection, and administration of GRC platforms.
The GRC Engineer partners with security, engineering, and business stakeholders to maintain and strengthen the organization's compliance posture across multiple frameworks, support third-party risk management activities, and translate technical risk into actionable business recommendations. This position plays a critical role in reducing manual compliance activities through automation while ensuring audit readiness and continuous compliance across cloud, infrastructure, and enterprise technology environments.
Essential Job Functions: • Own and maintain the cybersecurity risk register, including identifying, assessing, tracking, quantifying, and reporting cybersecurity risks. • Differentiate meaningful business risks from theoretical compliance gaps and provide practical remediation recommendations. • Support incident response activities from a governance, risk, and compliance perspective, ensuring proper documentation, audit evidence collection, and reporting throughout the incident lifecycle. • Assist with investigations of suspected improper activity and recommend corrective and remediation actions. • Respond to GRC-related incidents and service requests within established service level agreements (SLAs). • Design, implement, and maintain automated control monitoring and evidence collection processes to reduce manual audit activities and support continuous compliance. • Participate in technology and IT initiatives to evaluate systems and processes against applicable regulatory and security frameworks before implementation. • Provide governance, risk, compliance, and control integration requirements for new projects and technologies. • Ensure infrastructure, cloud, and security control changes align with established security frameworks and CIS benchmarks. • Collaborate with engineering teams to identify and remediate control deficiencies and compliance gaps. • Identify opportunities to improve operational efficiencies through automation and process optimization. • Maintain compliance documentation, including risk assessments, control narratives, policies, procedures, and audit evidence repositories. • Partner with cybersecurity analysts, architects, engineers, and business stakeholders to ensure effective security controls are implemented across enterprise systems, cloud platforms, and IT environments. • Support regulatory, audit, and compliance initiatives while maintaining audit readiness across the organization. • Demonstrate customer obsession, innovation, and operational excellence in support of organizational goals and compliance objectives.
Employment Qualifications: • Associate Degree in Cybersecurity, Information Technology, Information Systems, Computer Science, or a related field; or equivalent combination of education and relevant experience.
Experience: • 3 to 5 years of experience in cybersecurity, information security, governance, risk management, compliance, IT audit, or related disciplines. • Experience supporting cybersecurity risk management programs, compliance initiatives, audits, and security control assessments. • Experience working with security frameworks, governance processes, and technical controls in enterprise environments.
Preferred Certifications: One or more of the following certifications is preferred: • CompTIA Security+ • CRISC (Certified in Risk and Information Systems Control) • CISA (Certified Information Systems Auditor) • Other relevant cybersecurity, risk, audit, or compliance certifications may be considered.
Preferred Knowledge, Skill and Abilities: • Governance, Risk, and Compliance (GRC) program administration. • Cybersecurity risk assessment and risk register management. • Security control design, implementation, and monitoring. • Compliance framework management and audit support. • Control automation and continuous compliance monitoring. • Audit evidence collection and documentation management. • Third-party risk management and vendor assessments. • Security incident documentation and compliance reporting. • CIS Benchmarks and security configuration standards. • Collaboration across cybersecurity, engineering, infrastructure, cloud, and business teams. • Ability to communicate technical security risks to non-technical stakeholders. • Strong analytical, problem-solving, documentation, and process improvement skills. • Must be inquisitive and demonstrate openness to i
Tailor your resume for this Ensemble Health Partners role before you apply.
Tailor my resume for this jobSimilar jobs
- Cyber Security Engineer II — Worldpay · ATLANTA, GEORGIA | DENVER, COLORADO | CINCINNATI, OHIO
- Cyber Security Engineer II — JM · Work From Home (Remote) US
- Cybersecurity Engineer-II — Accenturefederalservices · Tyson's Corner, VA
- Cyber Security Engineer III — American University · Spring Valley Campus (Washington, DC)
- Cyber Security Engineer III — Commerce Bank · MO - Kansas City Downtown/Plaza - Kansas City - KC Downtown Trust Building (922 Walnut) (64106)
- Cybersecurity Engineer — Accenturefederalservices · Arlington, VA
- Cybersecurity Engineer — Workday · USA.VA.Reston | Atlanta, GA | Boulder, CO
- Cybersecurity Engineer — 10alabs · Remote
More like this: Security & Cybersecurity Jobs · Remote Security & Cybersecurity Jobs · Browse all jobs
Free ATS checker · How to Tailor Your Resume to a Job Description (Step by Step)