
Privacy & Security Enterprise Engagement Officer
Posted 5 days ago

Posted 5 days ago
This is a fully remote position, open to applicants in California, +3 more states.
• Act as a partner and consultant between enterprise stakeholders and Enterprise Privacy & Security Risk Management (EPSRM).
• Convert privacy, security, AI, business continuity, regulatory, and contractual requirements into operational controls, processes, governance activities, and actionable guidance.
• Collaborate with Health Plans, Health Care Enterprises, Shared Services, Compliance, and Market Technology Leads.
• Conduct impact assessments on new requirements and lead cross-functional working groups.
• Determine resource requirements and spearhead complex enterprise-wide initiatives to ensure audit-ready compliance.
• Identify, evaluate, and facilitate solutions for privacy, security, AI, business continuity, risk, control gaps, and compliance challenges.
• Assist with regulatory audits, assessments, readiness reviews, compliance evidence validation, and control-effectiveness evaluations.
• Support market expansion, contract renewals, RFP responses, tabletop exercises, and operational readiness activities.
• Collaborate with Legal, Procurement, business stakeholders, Government Affairs, and regulatory entities.
• Keep abreast of Centene’s business operations, technology ecosystems, vendors, and supporting processes.
• Develop and uphold RACIs, decision frameworks, reporting mechanisms, project tracking, and executive communications.
• Track industry, regulatory, and enforcement trends through professional associations, regulatory forums, roundtables, ISACs, and comment activities.
• Promote ongoing enhancement of Enterprise Engagement practices.
• Carry out additional responsibilities as assigned and adhere to all policies and standards.
• Must be authorized to work in the U.S. without requiring employment-based visa sponsorship now or in the future.
• Bachelor's Degree in Information Security, Information Systems, Risk/Compliance, Business Law, or a related field; or equivalent experience is required.
• A minimum of 5 years of experience in privacy/security, risk, or compliance within the managed care, payer/health plan industry is required.
• At least 3 years of experience in identifying, analyzing, and communicating security or privacy control requirements in the context of health plan operations, processes, and systems is required.
• Experience in interpreting regulatory, contractual, and compliance requirements and translating them into operational controls, risk management processes, business capabilities, and remediation strategies in highly regulated environments is required.
• Proven experience in leading complex, cross-functional projects or workstreams involving multiple stakeholders, including the development of executive communications, risk assessments, status reporting, and corrective action plans is required.
• Working knowledge of HIPAA/HITECH, state privacy laws, AI governance, business continuity and resilience requirements, NIST 800-53, CMS MARS-E/ARC-AMPE, HITRUST, SOC 2, NCQA, and ISO 27001 is required.
• CISSP or CISM certification is required upon hire.
• A Master's Degree in a related field is preferred.
• Juris Doctor (JD) is preferred.
• CIP, AIGP, CRISC, CISA, or equivalent certifications are preferred.
• Competitive salary.
• Health insurance coverage.
• 401K retirement plan.
• Stock purchase plans.
• Tuition reimbursement.
• Paid time off in addition to holidays.
• Flexible work options available, including remote, hybrid, field, or office schedules.
• Additional incentive programs may be included in overall compensation, subject to eligibility.
Primer
Akamai Technologies
Mashreq
Alice
Get handpicked remote jobs straight to your inbox weekly.