Demo

Associate Info Security Risk Auditor

UnitedHealth Group
San Antonio, TX Full Time
POSTED ON 6/12/2026
AVAILABLE BEFORE 7/12/2026

Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will directly improve health outcomes by connecting people with the care, pharmacy benefits, data and resources they need to feel their best. Here, you will find a culture guided by inclusion, talented peers, comprehensive benefits and career development opportunities. Come make an impact on the communities we serve as you help us advance health optimization on a global scale. Join us to start Caring. Connecting. Growing together.

   

The Enterprise Information Security (EIS) team is responsible for cybersecurity across our organization. We support our business and members by reducing risk, rapidly responding to threats, focusing on business resiliency and securing new acquisitions.

 

The Associate Information Security Risk Auditor (Policy Governance Lifecycle) is an entry-level to early-career contributor responsible for supporting assessments of the enterprise's information security policy and standards lifecycle. This role assists in evaluating policy governance processes, reviewing control implementation evidence, and monitoring compliance to ensure alignment with enterprise risk appetite, regulatory obligations, and leading frameworks (e.g., NIST CSF, ISO/IEC 27001). The associate works under guidance from senior auditors and collaborates with policy owners, control operators, and risk teams to identify gaps and recommend improvements. Strong attention to detail, willingness to learn, and clear communication skills are essential.

 

You will enjoy the flexibility to telecommute* from anywhere within the U.S. as you take on some tough challenges.

 

Key Responsibilities 

Policy Governance & Lifecycle Support

  • Assist in assessments of policy lifecycle processes (draft → approve → publish → monitor → retire)

  • Help maintain audit-ready documentation and track policy adherence metrics

  • Support validation that policies map to applicable frameworks and regulatory requirements

Compliance & Evidence Review

  • Perform basic compliance checks and assist in reporting adherence rates and exceptions

  • Review evidence supporting control effectiveness under supervision and escalate gaps for remediation

  • Support alignment verification against frameworks (e.g., NIST CSF, ISO 27001) and obligations (e.g., SOX, SOC 2)

Stakeholder Support & Reporting

  • Prepare draft audit reports and dashboards for management review

  • Participate in governance meetings as an observer and provide input when requested

  • Assist in awareness efforts related to policy requirements and accountability

Core Responsibilities

  • Support policy governance lifecycle audits and compliance reviews

  • Ensure documentation and evidence traceability are complete and accurate

  • Collaborate with risk and compliance teams to track remediation progress

  • Contribute to process improvement initiatives, including automation opportunities

Core Competencies

  • Governance Knowledge: Basic understanding of policy lifecycle and regulatory frameworks (NIST, ISO, SOX)

  • Risk & Compliance Awareness: Ability to learn and apply concepts of policy-to-control mapping and evidence adequacy

  • Analytical Skills: Strong attention to detail in reviewing compliance metrics and audit evidence

  • Communication: Ability to prepare clear reports and communicate effectively

  • Tool Familiarity: Exposure to GRC platforms and willingness to learn automation concepts

You'll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.

Required Qualifications: 

  • Bachelor's degree in Information Security, Risk Management, or Business, or related field

  • 6 months of experience in information security auditing, compliance, or risk management (internship experience acceptable)

Preferred Qualifications: 

  • Certifications such as CISA, CRISC

  • Familiarity with GRC tools and evidence collection processes

  • Ability to work collaboratively across teams in a matrixed environment

*All Telecommuters will be required to adhere to UnitedHealth Group's Telecommuter Policy.

 

   

Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. In addition to your salary, we offer benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with us, you'll find a far-reaching choice of benefits and incentives. The hourly pay for this role will range from $28.94 to $51.83 per hour based on full-time employment. We comply with all minimum wage laws as applicable. 

   

  

Pursuant to the San Francisco Fair Chance Ordinance, we will consider for employment qualified applicants with arrest and conviction records. 

   

   

Application Deadline: This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants. 

   

   

At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone-of every race, gender, sexuality, age, location, and income-deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups, and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes - an enterprise priority reflected in our mission.

    

    

   

UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.

   

    

UnitedHealth Group is a drug - free workplace. Candidates are required to pass a drug test before beginning employment.

   

   

   

#RPO, #GREEN

 

Salary : $29 - $52

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Associate Info Security Risk Auditor?

Sign up to receive alerts about other jobs on the Associate Info Security Risk Auditor career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$58,470 - $77,272
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$99,138 - $133,641
Income Estimation: 
$75,905 - $103,047
Income Estimation: 
$74,367 - $98,680
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$83,010 - $104,507
Income Estimation: 
$105,259 - $133,442
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at UnitedHealth Group

  • UnitedHealth Group Woonsocket, RI
  • "A Day in the Life" video Opportunities with Genoa Healthcare. A career with Genoa Healthcare means you're part of a collaborative effort to serve behavior... more
  • 2 Days Ago

  • UnitedHealth Group Washington, DC
  • UnitedHealth Group is a health care and well-being company that's dedicated to improving the health outcomes of millions around the world. We are comprised... more
  • 2 Days Ago

  • UnitedHealth Group Washington, DC
  • Explore opportunities with Home Care Plus, a part of LHC Group, a leading post-acute care partner for hospitals, physicians and families nationwide. As mem... more
  • 2 Days Ago

  • UnitedHealth Group Las Vegas, NV
  • Optum is a global organization that delivers care, aided by technology to help millions of people live healthier lives. The work you do with our team will ... more
  • 2 Days Ago


Not the job you're looking for? Here are some other Associate Info Security Risk Auditor jobs in the San Antonio, TX area that may be a better fit.

  • UT Health San Antonio San Antonio, TX
  • Job Description Under direct supervision, responsible for providing professional toxicological expertise to the public and healthcare professional callers ... more
  • 23 Days Ago

  • Event Risk Inc San Antonio, TX
  • Position Summary Event Risk is seeking Level III officers to join our team as a Uniformed Armed Security Associate. This part-time position offers a reliab... more
  • 4 Days Ago

AI Assistant is available now!

Feel free to start your new journey!