Information Security Risk Auditor

UnitedHealth Group Inc

Houston, TX

JOB DETAILS
SALARY
$72,800–$130,000 Per Year
SKILLS
Analysis Skills, Audit Metrics, Auditing, Automation, CISA - Certified Information Systems Auditor, Communication Skills, Detail Oriented, Documentation, Facebook, HTML (HyperText Markup Language), Health Plan, Healthcare, ISO (International Organization for Standardization), Information/Data Security (InfoSec), International Electro-Technical Commission (IEC), Interviewing Skills, LinkedIn, Maintain Compliance, Metrics, Policy Evaluation, Printing, Process Improvement, Process Validation, Product Lifecycle, Regulations, Reporting Skills, Risk, Risk Management, Risk Management Framework (RMF), Sales, Sarbanes-Oxley Act (SOX), Security Analysis, Security Auditing, Sustainability, Test Plan/Schedule, Test Requirements, Training Tools, U.S. National Institute of Standards and Technology (NIST), USPS (United States Post Office), Validation Plan, Work From Home, YouTube
LOCATION
Houston, TX
POSTED
10 days ago

Information Security Risk Auditor at UnitedHealth Group

@Model.JobTitle

@ Requisition Number @ @if (Model.JobDetailsJobTypeId != JobDetailsIdType.None) {

@Model.JobDetailsJobLabelId.TrimEnd(':'): @Model.JobDetailsSelectedId

}

@ Job Category @ @if (Model.Job?.Categories != null) {

Job category: @Html.JobCategory(Model.Job.Categories)

}

@ Primary Location @ @if (Model.Job?.Locations != null && Model.Job.Locations.Any()) {

Primary location: @Html.JobFormattedLocation(Model.Job.Locations.Take(1).ToList())

}

@ Additional Locations @ @if (additionalLocations != null && additionalLocations.Any()) {

Additional locations: @string.Join(" | ", additionalLocations)

}

@ Date Posted @ @if (Model.JobDetailsJobDateFormat != JobDateFormat.NoDate) {

@Model.JobDetailsJobDatePosting.TrimEnd(':'): @(Model.JobDetailsSelectedDate .ToLocalTime() .ToString(Model.DisplayJobDateFormat))

}

@ Overtime Status @ @if (!string.IsNullOrWhiteSpace(overtimeStatus)) {

Overtime status: @overtimeStatus

}

@ Travel @ @if (!string.IsNullOrWhiteSpace(Model.Job.Travel)) {

Travel: @Model.Job.Travel

}

}","FormTypeId":null,"UrlLanguageCode":null,"PreviewType":0,"DateCreated":"2026-03-13T13:45:42.6045354","DateUpdated":"2026-03-26T16:05:02.1528153"}, "site");

Information Security Risk Auditor

Requisition number: 2350088 Job category: Technology Primary location: Houston, TX Date posted: 05/14/2026 Overtime status: Exempt Travel: No

Share this job

  • Facebook
  • X
  • LinkedIn
  • Email

Optum is a global organization that delivers care, aided by technology, to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best.Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale.Join us to start Caring. Connecting. Growing together.

The Associate Information Security Risk Auditor (Compliance Management Lifecycle) is an early-career contributor responsible for supporting the assessment and validation of security risk policies and their associated standards across their full lifecycle. This role focuses on evaluating policies and their standards and testing against their requirements to confirm adherence. When evaluating policies and control adequacy they may need to refer to regulatory obligations, and leading frameworks (e.g., NIST CSF, ISO/IEC 27001). The auditor works closely with policy, procedure and control owners, risk teams, and technology stakeholders to confirm remediation adequacy, identify gaps, validate evidence, and recommend improvements. Strong attention to detail, analytical skills, and the ability to communicate findings clearly are essential.

You will enjoy the flexibility to telecommute* from anywhere within the U.S. as you take on some tough challenges.

Primary Responsibilities:

  • Control testing/ Action Plan Validation

  • Lead assessments of controls, action plans, processes

  • Validate that evidence accurately measures control effectiveness

  • Maintain audit-ready documentation and assist in tracking metric adherence and reporting accuracy

  • Compliance & Evidence Review

  • Perform periodic reviews of controls and procedures to test for control effectiveness

  • Escalate control effectiveness gap delays in remediation

  • Support alignment verification against frameworks (e.g., NIST CSF, ISO 27001) and obligations (e.g., SOX, SOC 2)

  • Stakeholder Support & Reporting

  • Prepare draft summary assessment results for management review

  • Participate in governance meetings and provide input on control validation status

  • Assist in control design efforts including inputs to governance routines and policy requirements

  • Core Responsibilities

  • Conduct independent control and process validation

  • Support policy refresh reviews

  • Ensure audit documentation and evidence traceability are complete and accurate

  • Collaborate with risk and compliance teams to track remediation progress

Contribute to process improvement initiatives, including automation opportunities

  • Core Competencies
  • Risk Knowledge: Understanding of risk management and control frameworks and regulatory frameworks (NIST, ISO, SOX)
  • Risk & Compliance Awareness: Ability to assess metric-to-control mapping and evidence adequacy
  • Analytical Skills: Strong attention to detail in reviewing metric data and audit evidence
  • Communication: Ability to prepare clear reports and communicate effectively
  • Tool Familiarity: Experience with GRC platforms and metric reporting tools

You"ll be rewarded and recognized for your performance in an environment that will challenge you and give you clear directions on what it takes to succeed in your role as well as provide development for other roles you may be interested in.

Required Qualifications:

  • Associate"s degree (or higher) in Information Security, Risk Management, Business, or related field
  • 3+ years of experience in information security auditing, compliance, or risk management as policy governance and control effectiveness
  • 1+ years of experience working collaboratively across teams in a matrixed environment
  • Intermediate level of experience with control design and operation, GRC tools, and evidence collection processes

Preferred Qualifications:

  • Bachelor"s degree in Information Security, Risk Management, Business, or related field
  • Certifications such as CISA, CRISC
  • All Telecommuters will be required to adhere to UnitedHealth Group"s Telecommuter Policy.

Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you"ll find a far-reaching choice of benefits and incentives. The salary for this role will range from $72,800 to $130,000 annually based on full-time employment. We comply with all minimum wage laws as applicable.

Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records.

Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.

At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location, and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups, and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.

UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.

UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.

#RPO #GREEN

Apply Internal apply

Bookmark job

Benefits

Our mission of helping people live healthier lives extends to our team members. Learn more about our range of benefits designed to help you live well.

Life

Resources and support to focus on what matters most to you, in every facet of your life.

Emotional

Education, tools and resources to help you reduce and manage stress, build resilience and more.

Physical

Health plans and other coverage to support wellness for you and your loved ones.

Financial

Benefits for today and to help you plan for the future, including your retirement.

Learn more

  • Learn more

  • Learn more

  • Learn more

  • Discover our family of businesses See how we're structured to help build a modern, high-performing health system.

Learn more

  • Explore our hiring process Learn what to expect when you pursue an opportunity with us.

Learn more

  • Benefits that support your well-being Explore opportunities from coast to coast.

Learn more

  • Learn more

  • Learn more

  • Learn more

  • Lorem Ipsum Lorem Ipsum is simply dummy text of the printing

Learn more

  • Lorem Ipsum Lorem Ipsum is simply dummy text of the printing

Learn more

  • Lorem Ipsum Lorem Ipsum is simply dummy text of the printing

Learn more

  • How we're transforming care Find out how we're making care smarter and more personalized.

Learn more

  • Committed to sustainability Take a look at all the ways we're working for a healthier, more sustainable future.

Learn more

  • One team improving health care Here's how we're making the health system more connected and easier to navigate.

Learn more

  • Learn more

Load more

Connect with us

  • Facebook
  • Instagram
  • YouTube
  • LinkedIn

Do not sell or share my personal information Social responsibility Fraudulent activity Cookie management Site map

Privacy Policy Family & Medical Leave Act (PDF) Equal Employment Law Poster (PDF) SMS Terms & Conditions (PDF) Employee Polygraph Protection Act (PDF) E-Verify Participation Poster (PDF) Pay Transparency Nondiscrimination Provision (PDF) Immigrant and Employee Right to Work Poster (PDF) Health Plan Notices (PDF) County of LA Fair Chance Ordinance (PDF)

2026 UnitedHealth Group. All rights reserved.

UnitedHealth Group is committed to working with and providing reasonable accommodations to individuals with physical and mental disabilities. If you need special assistance or accommodation for any part of the application process, please call 1-866-566-8715 to be connected to Recruitment Services. Recruitment Services hours of operation are 7 a.m. to 7 p.m. CT, Monday through Friday.

UnitedHealth Group is a registered service mark of UnitedHealth Group, Inc. The UnitedHealth Group name with the dimensional logo, as well as the dimensional logo alone, are both service marks for the UnitedHealth Group, Inc.

UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations. UnitedHealth Group is a drug-free workplace. Candidates are required to pass a drug test before beginning employment.

×

Fraudulent Activity Notice

We have received recent reports of fraudulent LinkedIn messages and emails alleging or claiming to be sent from UnitedHealth Group, UnitedHealthcare, or Optum Executives.

The fraudulent LinkedIn messages and emails, which do not originate from any Executives LinkedIn account or of UnitedHealth Group's email domains, or those of any of its operating divisions, supposedly conducts an interview via a Zoom meeting, offers a work from home job at Optum, emails an application, sends a fake check by next day delivery through USPS and asks recipients to pay a vendor a large dollar amount. These counterfeit-check cashing schemes exist and use a variety of deceptions to get people to cash these fraudulent checks.

UnitedHealth Group will never request you to pay a vendor or pay a fee of any sort to explore employment opportunities with our company.

If you wish to verify the legitimacy of any email alleging or claiming to have been sent by or on behalf of UnitedHealth Group Executives or Recruiters, please call 1-800-561-0861 between 7 a.m. and 7 p.m. CT, Monday - Friday, for assistance.

×

Our Commitment to Communities

At UnitedHealth Group, we are committed to giving back to the communities where we live and work, across the nation and around the world. Through charitable contributions and volunteering, our people are deeply and personally involved in building healthier communities.

Learn how we are giving back to our communities

About the Company

U

UnitedHealth Group Inc

UnitedHealth Group is a health care and well-being company that’s dedicated to improving the health outcomes of millions worldwide. We are comprised of two distinct and complementary businesses, UnitedHealthcare and Optum, working to build a better health system for all. Here, your contributions matter as they will help transform health care for years to come. Make an impact with a diverse team that shares your passion for helping others.

What we do

Gain insights on how we work to help people live healthier lives and help make the health system work better for everyone by watching this video.

https://www.youtube.com/watch?v=5PbNyi2IDkY

Caring. Connecting. Growing together.

Being a part of UnitedHealth Group means working to improve health outcomes for everyone, including yourself. Here is how:

Caring. Your total health and well-being are important to us. Whatever matters most to you — we have resources to help you be your best at work and at home. The benefits range from free Peloton courses to financial counseling. Learn more about what we offer.

Connecting. We recognize our collective power to make an impact across our communities because we believe the health of any society is measured by the overall health of its people. Learn more about our culture.

Growing together. UnitedHealth Group is full of inspiring career stories, and we offer a lifetime of opportunities. Discover all the ways you can learn, grow and develop.

COMPANY SIZE
10,000 employees or more
INDUSTRY
Healthcare Services
FOUNDED
1977
WEBSITE
http://careers.unitedhealthgroup.com/