
Privacy & Security Engagement Officer
Posted Aug 24

Posted Aug 24
This is a fully remote position, open to applicants in California, +3 more states.
• Collaborate with Health Plans or Shared Services to convert privacy, security, artificial intelligence, business continuity, and associated requirements into practical enterprise controls.
• Spearhead EPSRM engagement with Health Plans or Shared Services to guarantee that requirements are comprehended, executed, and monitored.
• Analyze and translate regulatory, contractual, and legal obligations into operational controls while guiding stakeholders on compliance expectations.
• Validate and oversee compliance evidence, deliverables, and audit preparedness, including interactions with regulators, clients, and internal/external auditors.
• Cultivate and sustain relationships with leadership, operational teams, and regulators to eliminate barriers, address issues, and promote consistent compliance practices.
• Monitor regulatory, legislative, and contractual changes, evaluate their impact on the organization, and communicate necessary actions.
• Supervise privacy, security, AI, and business continuity documentation, including plans, attestations, questionnaires, and related submissions.
• Improve enterprise engagement processes through standardized procedures, governance practices, templates, and a focus on continuous improvement.
• Assist with new market entries, RFP responses, contract renewals, and business expansion by providing EPSRM subject-matter expertise.
• Identify risks and control deficiencies, propose mitigation strategies, and enhance compliance maturity.
• Perform additional duties as assigned.
• Adhere to all policies and standards.
• Bachelor's Degree in Information Security, Information Systems, Risk/Compliance, Business, Law, or related compliance capabilities, or equivalent experience as a paralegal is required.
• A minimum of 7 years in privacy/security, risk, or compliance within the managed care, payer/health plan sector is required.
• At least 5 years of experience in identifying, analyzing, and communicating security or privacy control requirements related to health plan operations, processes, and systems is required.
• Experience in assessing and interpreting contract and regulatory requirements, translating them into control-based operational capabilities, and ensuring delivery across various stakeholders is required.
• Expertise in interpreting, implementing, and ensuring compliance with State & Federal Privacy, Cybersecurity & AI laws & regulations applicable to healthcare payors and related business entities (e.g., HIPAA/HITECH, CCPA/CPRA, CPA, CTDPA, CAIA, VPA, COPPA, TCPA, etc.) is required.
• CISSP / CISM Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) certification is required upon hire.
• Competitive pay.
• Health insurance.
• 401K and stock purchase plans.
• Tuition reimbursement.
• Paid time off plus holidays.
• Flexible work arrangements including remote, hybrid, field, or office schedules.
• Additional forms of incentives may be included in total compensation.
Agile Defense
Stripe
Guild Mortgage
Cambiar Education
Get handpicked remote jobs straight to your inbox weekly.