HIPAA Security Analyst

2 weeks ago


Rockville, United States Scubyt Full time

Title: HIPAA Security Analyst

Location: Rockville, MD (ONSITE)

Start date— ASAP

Duration – One contractor for approximately 6-9 months

Locals preferred


100% Remote for right candidate




THE ASSIGNMENT OF WORK IS CONTINGENT UPON:

Selection of an acceptable task order proposal resulting from this task order proposal

Request.

Selected candidate may be required to complete a successful Background Investigation.

Selected candidate may be requested to provide further documentation of education

credentials and/or certifications.

Selected candidate may be required to participate in an in-person or Microsoft Teams video

interview.


Job Description:

A HIPAA Security Analyst ensures that an organization complies with the HIPAA Security Rule when handling electronic protected health information (ePHI). The HIPAA Security Analyst is expected to be well organized, detail oriented, understand and demonstrate compliance documentation writing vocabulary, have current and relevant IT technology experience with a strong security focus, work comfortably under pressure, and deliver on tight deadlines. This position is responsible for establishing a structured approach to aligning cyber/information security with business objectives, compliance standards in support of HIPAA Assessments needs and organizational information security practices.


  • Support Information Security and Risk Management by maintaining and enforcing the Information Security and risk management framework/methodology, including execution of risk analysis and risk mitigation strategies.
  • Manage the process of gathering, analyzing, and assessing the current and future threat landscape, as well as providing the CISO with a realistic overview of risks and threats in the enterprise environment.
  • Exhibit best-practice risk management skills through effective internal risk controls, risk monitoring, risk assessment, and improvement of risk management processes.
  • Document and maintain the enterprise security risk governance methodology and risk management policy, process, and procedure.
  • Organize and perform the enterprise security risk assessment and gap analysis for all technologies, products, and functions introduced, including maintaining risk project work plans to measure and manage progress.
  • Track and document all internal risk reviews, assessments, risk acceptances, and security exceptions in a GRC tool.
  • Work with the Senior Healthcare CISO/OHCIO to ensure a convergence of business, technical, and security requirements; liaise with stakeholders to align the existing technical installed base and skills with future architectural requirements.
  • Develop a strong working relationship with the CISO to assess security compliance requirements, the effectiveness of security policies, and legal, regulatory, and audit requirements.
  • Serve as the information security liaison and subject matter expert for all relevant EMR and PHI-related security risks.
  • Participate in all relevant audits and risk assessment activities (whether operational risk, legal/compliance risk, reputational risk, or information security risk).
  • Aid in the planning and execution of risk remediation activities including the identification of practical, cost-effective solutions.
  • Facilitate team meetings between stakeholders, project leaders, and the Information Technology teams.
  • Attend regular team, management, and project meetings and provide both verbal and written reports to the Leadership Team as required. This includes coordinating with and supporting the Senior CISO.

Keep informed on current threats and industry regulations.



Mandatory Qualifications:

Healthcare industry experience required with understanding of EMR systems and data privacy issues related to PHI

  • Familiarity with other compliance frameworks such as HIPAA, HITRUST, HITECH, FedRAMP, FISMA, SOC, PCI, ISO, etc. is preferred.
  • Experience with reviewing IT solution requirements and security controls implementation
  • A strong understanding of the business impact of security tools, technologies, and policies.
  • Strong working knowledge of HIPAA, Joint Commission, CMS, and other regulatory legislation pertinent to the healthcare industry
  • Knowledge and experience working with a GRC Software tool
  • Experience in conducting and responding to information security assessments and audits.
  • Strong analytical skills and the ability to resolve complex security vulnerabilities and design compensating controls
  • Must possess a high degree of integrity and trust along with the ability to work independently
  • Must be able to work independently as well as work as part of a fast-moving team
  • Must be able to work at various locations, when necessary, along with working site visits to conduct assessment meetings




Educational Level:

A bachelor's degree in information systems CISSP, CISA, CRISC or other relevant security qualification



Years of Experience: 5+ years’ experience in an information/cyber security, risk, and compliance role to include advising executives, IT management, and other stakeholders on compliant strategies and solutions.




Interviews:

Please note that both remote and in-person interviews may be required for this opportunity.



  • Rockville, United States Scubyt Full time

    Title: HIPAA Security AnalystLocation: Rockville, MD (ONSITE)Start date— ASAPDuration – One contractor for approximately 6-9 monthsLocals preferredTHE ASSIGNMENT OF WORK IS CONTINGENT UPON:Selection of an acceptable task order proposal resulting from this task order proposalRequest.Selected candidate may be required to complete a successful Background...


  • Rockville, MD, United States Scubyt Full time

    Title: HIPAA Security AnalystLocation: Rockville, MD (ONSITE)Start date— ASAPDuration – One contractor for approximately 6-9 monthsLocals preferred100% Remote for right candidateTHE ASSIGNMENT OF WORK IS CONTINGENT UPON:Selection of an acceptable task order proposal resulting from this task order proposalRequest.Selected candidate may be required to...


  • Rockville, Maryland, United States Scubyt Full time

    Job Title: HIPAA Security Compliance SpecialistJob Summary:Scubyt is seeking a skilled HIPAA Security Compliance Specialist to ensure compliance with the HIPAA Security Rule when handling electronic protected health information (ePHI). The ideal candidate will be well-organized, detail-oriented, and have strong security knowledge.Key Responsibilities:Support...


  • Rockville, United States NTT DATA Full time

    NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Senior Security Control Assessor tto join our team in Rockville, Maryland, USA.NTT DATA is seeking a highly motivated, flexible,...


  • Rockville, United States Cherokee Federal Full time

    Privacy and Security Program Lead Please Note : This position is pending a contract award. If you are interested in a future with Cherokee Federal, APPLY TODAY! Although this is not an approved position, we are accepting applications for this future and anticipated need. This position requires being a US Citizen, lawful resident alien, or citizen of...

  • CSOC Tier 2 Analyst

    2 months ago


    Rockville, United States CSEngineering Full time

    CSOC Tier 2 Analyst**Immediate Requirement****Onsite**CSEngineering is looking to add a CSOC Tier 2 Analyst to our growing team! As the Cyber Security Operations Center (CSOC) Tier 2 Team Lead, you are responsible for overseeing and managing the activities of the Tier 2 Team in our client's Security Operations Center. Your role involves leading a team of...

  • CSOC Tier 2 Analyst

    2 months ago


    Rockville, United States CSEngineering Full time

    CSOC Tier 2 Analyst**Immediate Requirement****Onsite**CSEngineering is looking to add a CSOC Tier 2 Analyst to our growing team! As the Cyber Security Operations Center (CSOC) Tier 2 Team Lead, you are responsible for overseeing and managing the activities of the Tier 2 Team in our client's Security Operations Center. Your role involves leading a team of...


  • Rockville, United States TechnoGen Full time

    Data Analyst with CollebraLocation: Bethesda, MD (Need locals, hybrid role)Long Term ProjectNeed to clear Public Trust ClearancePrevious HRSA experience is strongly preferred Education: BA/BS (or equivalent years of experience) Security Clearance Level: Public Trust HOW A DATA ANALYST WILL MAKE AN IMPACT: Conduct market research and define industry best...


  • Rockville, MD, United States NTT DATA Full time

    NTT DATA strives to hire exceptional, innovative and passionate individuals who want to grow with us. If you want to be part of an inclusive, adaptable, and forward-thinking organization, apply now.We are currently seeking a Senior Security Control Assessor tto join our team in Rockville, Maryland, USA.NTT DATA is seeking a highly motivated, flexible,...


  • Rockville, Maryland, United States Ally Behavior Centers Full time

    Job OverviewAlly Behavior Centers is seeking a highly skilled Board Certified Behavior Analyst to join our team of professionals dedicated to delivering exceptional ABA therapy to children with autism. As a key member of our interdisciplinary team, you will provide leadership and organizational management in client programming, behavior interventions, staff...

  • Treasury Analyst

    2 months ago


    Rockville, United States DRB Group Full time

    Job Purpose:The Treasury Analyst will play a key role in managing DRB Enterprises corporate cash flow, optimizing liquidity, and supporting the execution of financing strategies. This position demands strong financial expertise, exceptional problem-solving abilities, and effective collaboration across departments. Reporting directly to the Corporate Director...

  • Program Analyst

    2 weeks ago


    Rockville, United States Skyward IT Solutions Full time

    **This position is contingent on contract award**We are Skyward.That is, a love for people, for improvement, for human advancement through information technology. We are a people-centered business with a desire to serve others. We are diverse and unified; creative and collaborative; a collection of complementary, not competing talents. And though on the...

  • Business Analyst

    1 month ago


    Rockville, United States Technogen, Inc. Full time

    Technical Business Analyst (with .NET) Location: Rockville, MD - Hybrid/Remote but occasional visit is required. DMV areas candidate preferred.Duration- Long termEnd Client: Healthcare- FederalPay rate: Market/DOEActive Public trust clearance/Or clearablePrior experience with HRSA, HHS and other government exp.Key Responsibilities- Bridge the gap between...


  • Rockville, United States Gunnison Consulting Group Inc Full time

    We are seeking a motivated and customer-oriented professional to support our SAMHSA client.Duties and responsibilities include:The Lead AWS Security Engineer will join a dynamic team of cloud, security, and compliance experts. This role requires an individual with proven leadership in designing, implementing, and managing secure AWS-based solutions. The...


  • Rockville, United States Disability Solutions Full time

    Job Description Westat is an employee-owned corporation providing research services to agencies of the U.S. Government, as well as businesses, foundations, and state and local governments. Westat's research, technical, and administrative staff of more than 2,000 is located at our headquarters in Rockville, Maryland, near Washington, DC.Westat is committed to...


  • Rockville, Minnesota, United States Leidos Full time

    At Leidos, we are seeking a highly skilled Senior Statistical Analyst and Machine Learning Engineer to join our fast-paced data science team in the Northern Virginia area. This is a unique opportunity to apply your expertise in statistical modeling, machine learning, and data visualization to support critical national security projects.Job OverviewAs a...


  • Rockville, Minnesota, United States BAE Systems USA Full time

    About the OpportunityBAE Systems is seeking a Business Intelligence Analyst Intern to join our Program Management Office. As a member of our team, you will have the opportunity to work on impactful projects, engage in career development opportunities, and network with our business leaders and other students in the program.The focus of this position will be...


  • Rockville, United States FEDSYNC Full time

    About FedSync:Since our inception, FedSync has been driven by the core values of Accountability, Integrity, Teamwork, Value, Innovation, and Quality. These values define who we are. Our vision is to partner with the brightest, most forward-thinking individuals to deliver solutions that anticipate the needs of tomorrow. Our mission is to provide the federal...

  • Quality Analyst

    3 weeks ago


    Rockville, United States Skyward IT Solutions Full time

    We are Skyward.That is, a love for people, for improvement, for human advancement through information technology. We are a people-centered business with a desire to serve others. We are diverse and unified; creative and collaborative; a collection of complementary, not competing talents. And though on the surface we remain relaxed, beneath, a torrent of...

  • Help Desk Analyst

    3 weeks ago


    Rockville, United States Skyward IT Solutions Full time

    **This position is contingent on contract award**We are Skyward.That is, a love for people, for improvement, for human advancement through information technology. We are a people-centered business with a desire to serve others. We are diverse and unified; creative and collaborative; a collection of complementary, not competing talents. And though on the...