Salary
💰 $112,800 - $169,000 per year
About the role
- Develop, implement, and execute third-party management programs ensuring third parties adhere to appropriate controls and risks are managed.
- Work across all business departments and teams to build a strong security framework and think strategically about the new regulations and compliance obligations to help build and convey value propositions with stakeholders.
- Oversee execution of technical audits and audit activities, including HITRUST, TX-RAMP and HIPAA
- Contribute to and assist with annual regulatory compliance reviews, and other compliance assessments across the business, and implement risk mitigation plans, particularly HITRUST.
- Perform duties as the senior privacy official.
- Identify, review, and monitor compliance issues and opportunities for enhancing organizational compliance.
- Provide guidance to internal stakeholders and provide input to ensure the healthcare regulatory compliance program is designed to run in a manner to comply with laws, regulations, and industry standards.
- Liaise with functions across the organization to ensure education on policy and process and provide procedural support for the general operation of the compliance program and its related activities to prevent illegal, unethical, or improper conduct.
- Work with all levels of the compliance and legal teams on compliance policy decisions, procedures, and issues.
- Identify potential weaknesses in the compliance program and proactively suggest improvements to address them.
- Assist with monitoring and auditing activities conducted by the compliance program.
- Draft, update, and implement Compliance Program policies.
Requirements
- Detailed knowledge of HIPAA and/or healthcare compliance regulations standards and best practices.
- Broad knowledge of GRC Frameworks: HITRUST, CCPA, NIST 800-53, ISO27001, StateRAMP, etc.
- Has (productive) paranoia about ensuring we continue to be compliant with industry regulations.
- Excellent project management skills; including, but not limited to, coordination, communication, adherence to budget and completion goals, prioritization, and troubleshooting.
- Strong written and verbal communication skills with the ability to present to various levels within the company, as well as external professional audiences.
- Strong prioritization skills with the ability to work on multiple projects and a variety of complicated tasks.
- Strong interdepartmental collaboration skills with the willingness to engage across teams.
- Ability to analyze processes and determine if adequate controls are in place and appropriate for the related activity.
- Apply effective leadership skills to promote a compliance-oriented culture within the organization.
- Attention to detail.
- Ability to identify and mitigate potential risks for the company.
- Exceptional program management skills including how to plan, set, and manage to reasonable timelines, while delivering projects that align to the business strategy and priorities.