Sr. IT Auditor Consultant, Hospital Medical Device IT Controls

4 weeks ago


Phoenix, United States ITmPowered, LLC Full time

Sr. IT Auditor Consultant, Hospital Medical Device IT Controls Be on the frontlines of Technology Risk in the emerging area of Medical Device Cybersecurity A large national hospital network can have over 350,000 connected medical devices. Many of these interconnected devices (hospital imaging equipment, patient monitoring, IV pumps, blood spinners.) and connected hospital facilities devices (elevators, door locks, ID Card readers) are exposed publicly and vulnerable to cyber-attack. To help protect this large IoMT network, our client is implementing a customized set IT Controls to secure their Medical Devices, Healthcare Technology Management Operations, and Hospital Facilities connect IT devices. About the Role: The Sr. IT Auditor Consultant will serve on behalf of the Technology Risk Management organization performing IT Controls Assessments for a set of 20 custom IT controls in this Hospital Medical Device Cybersecurity Program. Plan and perform full lifecycle audits (scope, plan, fieldwork, reporting) assessing Audit IT Controls Design prior to implementation and IT Controls Execution once implemented. Helping the Med Device Cybersecurity team where they have controls gaps and findings and understand how effective IT controls should be implemented. WHAT YOU'LL ACCOMPLISH As a part of the Technology Risk Office this role will be conducting IT Controls Assessments (IT Audits) of roughly 20 customized Medical Device cybersecurity IT Controls being implemented enterprise wide. Conduct full IT Controls Risk Assessments on each of 20+ custom Med Device cybersecurity IT Controls twice. First by testing Controls Design (does it make sense) prior to implementation and Second testing Controls Execution (is control actually working) once the controls are implemented. Spearhead IT Controls Assessments end to end (scoping, planning, fieldwork/controls testing, and reporting) Scope and Plan IT Controls Assessment engagements. Lead Kickoff meetings, set expectations and schedule. Clearly document IT Controls processes narratives (step 1, 2, 3...) of planned or current IT Control processes. Fieldwork - Conduct detailed IT Controls Testing, gather, and document detailed IT Controls test results supported by clear evidentiary artifacts. Reporting - Write full IT Controls Assessment (IT Audit) Reports - Assessment Scope, Audit details, controls inspection / testing results, IT Controls Assessment Findings with clearly communicated Risk severity, likelihood, impact, and Controls deficiency Risk Remediation Recommendations and Corrective Action Plans. Plan & conduct complex IT Audit Controls Assessments for Hospital Medical Device cybersecurity through full device lifecycle (device procurement, intake, implementation, operations, maintenance, decommissioning) Assess IT Risk Controls for Hospital Med Device Cybersecurity Controls across IAM, logical access, password vaulting, network security, logging and monitoring, vulnerability management, change management, etc.) WHAT WE'RE LOOKING FOR Bachelor's degree. BS/BA in IT, CS, MIS or related field preferred. or equivalent work experience. 3-5 years leading IT Audits end to end (scoping, planning fieldwork/controls testing, reporting). CISA certification and CISSP, CCSP, CEH, CRISA, Security+ or similar, related certification. Solid expertise in documenting processes IT Audit narratives (step 1, 2, 3...) of planned or current processes. Solid understanding of IT Controls and controls frameworks, NIST 800-53, RMF, CSF, HITRUST, etc. Understanding of HIPAA and other regulatory frameworks (e.g., HIPAA, PCI, SOX, GDPR, etc.) Experience advising and providing guidance on effective IT Controls Implementation. Preferred experience: Prior experience in a hospital provider environment managing electronic medical devices equipment. 1-3 years' experience electronic medical device management, operations, or cybersecurity in a hospital. Med Device Certifications: CHTM, CBET, CABT, CRES, or Med Device cybersecurity certifications. Familiarity in Hospital Medical Device Management CMMS systems - Nuvolo or similar. Ideal : Experience in Hospital Med Device Management then shifted to IT Audit / Technology Risk Mgmt. LOGISTICS: Work remotely anywhere in Domestic US. Preferred locations Colorado or Georgia. COVID-19 Vaccine and Booster Required - OR must provide valid medical exemption from doctor in advance. Must be able to successfully pass a 12-panel drug screen, 10-year background check, employment verification. You will need to be a current US Citizen or valid Green Card holder. No need for visa now or in future. This role is not able to offer visa transfer or sponsorship now or in the future. W2 only - No sub vendors. Sponsorship NOT available. Must have direct contact information on resume (phone / email) to be considered.



  • Phoenix, United States HSAG Full time

    Are you passionate about improving the quality of healthcare? Are you ready to leverage your talents to make healthcare better for everyone? Do you want the opportunity to give back to your community? Do you want to have fun at work? Then join the growing team at Health Services Advisory Group (HSAG) that is transforming the delivery of...


  • Phoenix, United States HSAG Full time

    Are you passionate about improving the quality of healthcare? Are you ready to leverage your talents to make healthcare better for everyone? Do you want the opportunity to give back to your community? Do you want to have fun at work? Then join the growing team at Health Services Advisory Group (HSAG) that is transforming the delivery of healthcare in the...


  • Phoenix, United States HSAG Full time

    Are you passionate about improving the quality of healthcare? Are you ready to leverage your talents to make healthcare better for everyone? Do you want the opportunity to give back to your community? Do you want to have fun at work? Then join the growing team at Health Services Advisory Group (HSAG) that is transforming the delivery of...


  • Phoenix, United States HSAG Full time

    Are you passionate about improving the quality of healthcare? Are you ready to leverage your talents to make healthcare better for everyone? Do you want the opportunity to give back to your community? Do you want to have fun at work? Then join the growing team at Health Services Advisory Group (HSAG) that is transforming the delivery of healthcare in...


  • Phoenix, United States HSAG Full time

    Are you passionate aboutimproving the quality of healthcare? Are you ready toleverage your talentsto make healthcare better for everyone? Do you want the opportunity togive backto your community? Do you want to havefun at work? Thenjointhe growing team at Health Services Advisory Group (HSAG) that is transforming the delivery of healthcare in the United...


  • Phoenix, United States HSAG Full time

    Are you passionate about improving the quality of healthcare? Are you ready to leverage your talents to make healthcare better for everyone? Do you want the opportunity to give back to your community? Do you want to have fun at work? Then join the growing team at Health Services Advisory Group (HSAG) that is transforming the delivery of...


  • Phoenix, United States HSAG Full time

    Are you passionate aboutimproving the quality of healthcare? Are you ready toleverage your talents to make healthcare better for everyone? Do you want the opportunity togive back to your community? Do you want to havefun at work? Thenjoin the growing team at Health Services Advisory Group (HSAG) that is transforming the delivery of healthcare in the...

  • Lead Auditor

    1 month ago


    Phoenix, United States EPM Scientific Full time

    Medical Device Auditor Job type: Permanent Location: Home Based (USA) Travel 3-5 nights a week. A leading global Medical Device Notified Body is currently seeking to hire a Medical Device Auditor to join their growing team in the North America. You will play a key role in the company’s growth strategy and success of their business. Additionally, you will...


  • Phoenix, United States Nestlé IT Full time

    Sr. Specialist Network EngineerPlease read the following job description thoroughly to ensure you are the right fit for this role before applying.Nestlé Information Technology is the digital arm of the world's largest nutrition, health, and wellness company. With 150+ years in business, 2,000+ brands, and 270,000+ diverse team members-you're joining an...


  • Phoenix, United States CareerBuilder Full time

    Position Summary Sr. Software Design Controls Engineer thinks "outside the box" in the implementation of the Software Design Control and SDLC (software development lifecycle) programs at Caris Life Sciences, providing quality oversight, and ensuring compliance with all applicable regulations and incorporations of software industry best practices. The...


  • Phoenix, Arizona, United States Nestlé IT Full time

    Sr. Specialist Network EngineerNestlé Information Technology is the digital arm of the world's largest nutrition, health, and wellness company. With 150+ years in business, 2,000+ brands, and 270,000+ diverse team members-you're joining an organization that's revolutionizing food and championing global humanitarian efforts with technology at its...

  • Sr. IT Auditor

    4 weeks ago


    Phoenix, United States Bridgeway Professionals Inc Full time

    Our client is an industry leading company that is seeking an IT Controls Auditor to add to the Internal Audit team. In this key role, you will support SOX compliance, IT audits, and risk assessments across their technology landscape. You will plan, execute, and report on IT audit projects, working closely with management and co-sourced partners. Identifying...


  • Phoenix, AZ, US, 85040 IT Full time

    Nestlé Information Technology is the digital arm of the world’s largest nutrition, health, and wellness company. With 150+ years in business, 2,000+ brands, and 270,000+ diverse team members—you’re joining an organization that’s revolutionizing food and championing global humanitarian efforts with technology at its core. Joining Nestlé IT means...

  • Senior Auditor

    2 months ago


    Phoenix, United States Sterling Freeman Full time

    Senior Auditor – Phoenix CPA Firm Job We're a regional leader - a firm where you can take your career further with industry leaders and state-of-the-art resources. Among those resources: top quality, customized continued professional education. You'll have access to many experts in the field to help you expand your breadth of knowledge. For depth, you'll...

  • Auditor

    2 weeks ago


    Phoenix, United States US Office of Inspector General Full time

    **Duties**: Conducts independent research on pertinent laws, legislative history, regulations, management controls, accounting principles and auditing standards applicable to the purpose, scope, and objectives of external Single Audits of recipients of Federal Awards. Provides technical advice and assistance to auditors and auditees on Single Audit quality...

  • Auditor

    1 month ago


    Phoenix, Arizona, United States Department Of Health And Human Services Full time

    Summary OIG is ranked as the #1 agency in HHS by the Partnership for Public Service's "The Best Places to Work in the Federal Government" 2021 ratings.For more information about the HHS Office of Inspector General, go to This position is located in the Department of Health and Human Services, Office of Inspector General, Office of Audit Services.Duties ...

  • Ex-FDA Auditor

    2 months ago


    Phoenix, United States SQA Services Full time

    Job DescriptionJob DescriptionAre you passionate about quality in the life sciences area? Do you want to work with the most prestigious names in pharma, bio, animal health and similar regulated environments? If you have an eye for detail and want to help assure quality of life, then this is the role for you!What to expect:You will be part of a global quality...

  • Ex-FDA Auditor

    1 week ago


    Phoenix, United States SQA Services Full time

    Job DescriptionJob DescriptionAre you passionate about quality in the life sciences area? Do you want to work with the most prestigious names in pharma, bio, animal health and similar regulated environments? If you have an eye for detail and want to help assure quality of life, then this is the role for you!What to expect:You will be part of a global quality...


  • Phoenix, AZ, United States Nestlé IT Full time

    Sr. Specialist Network EngineerNestlé Information Technology is the digital arm of the world's largest nutrition, health, and wellness company. With 150+ years in business, 2,000+ brands, and 270,000+ diverse team members-you're joining an organization that's revolutionizing food and championing global humanitarian efforts with technology at its...


  • Phoenix, United States Caris Life Sciences Full time

    Position SummarySr. Software Design Controls Engineer thinks "outside the box" in the implementation of the Software Design Control and SDLC (software development lifecycle) programs at Caris Life Sciences, providing quality oversight, and ensuring compliance with all applicable regulations and incorporations of software industry best practices. The position...