Full Job Description
Req ID: 382626
We are currently seeking a HIPAA/Security Privacy Field Auditor to join our team in Little Rock, Arkansas (US-AR), United States (US).
Overview of job:
The Privacy Analyst, working closely with the Privacy Team and client, will be a key contributor in providing privacy services to the DHS Privacy Office. These services include: Carry out scheduled privacy reviews and on-site facility walkthroughs, evaluating the effectiveness of privacy programs, assessing risks, and vulnerabilities, identifying control gaps, reviewing reports for consistency and accuracy, managing remediation efforts. The candidate may also conduct independent privacy assessments or contribute to privacy independent verification and validation (IV&V) activities. Local candidates only, as this position is on client site from Little Rock, Arkansas.
Job Responsibilities Include:
• Carry out scheduled privacy reviews and on-site facility walkthroughs according to the audit plan.
• Identify and document findings; route field observations to the privacy and GRC teams as risk intelligence.
• Review field-observable safeguards and flag gaps.
• Independently verify that corrective and preventive actions resolve findings.
• Build and maintain working relationships across locations that give the privacy program visibility into field operations.
• Produce clear, consistent reporting on reviews, findings and field observations for privacy leadership.
• Other possible responsibilities may include:
o Identifying and documenting detailed remediation recommendations
o Understanding relevant laws and regulations for security and privacy requirements
o Assist on policy reviews under direction of the Privacy Officer
o Review documents, contracts and agreements to ensure compliance with regulatory requirements
o Participating in assessments
o Conduct independent research on behalf of the Privacy Officer
o Help record and track subpoena requests
o Research requests for changes in records for billing, SNAP, etc.
o Assist completing audits (IRS, SS, FBI, FOIA, etc.)
o Prepare reports for DHS C level leadership
o Review policy to assist DHS in identifying and implementing privacy best practices
o Perform data cleaning analysis to identify data quality approach
o Determine appropriate data to analyze and prepare required reports
Basic Qualifications:
• Minimum six years combined experience working with:
• PHI in a healthcare or human-services setting, such as health information management (HIM), compliance, release of information, or clinical operations.
• HIPAA Privacy and Security Rules
• Conducting structured reviews and documenting findings clearly and consistently.
• Undergraduate degree or 6 or more years relevant experience
• Reside or relocate themselves to the Little Rock AR or central AR area.
Preferred Skills:
• Hold one or more privacy certifications such as IAPP, CHPC, CIPP, and/or CISA
• Experience working with State DHS Privacy and/or Security
• Comprehensive understanding of security and privacy controls
• Exceptional analytical, communication, and collaboration skills
• Thorough understanding of HIPAA, NIST and CMS Certification Frameworks
• Advanced client and vendor relationship management
• Building working relationships across a distributed, multi-site organization.
Where required by law, NTT DATA provides a reasonable range of compensation for specific roles. The starting pay range for this onsite role is $81,936 - $122,904. This range reflects the minimum and maximum target compensation for the position across all US locations. Actual compensation will depend on a number of factors, including the candidate's actual work location, relevant experience, technical skills, and other qualifications. This position may also be eligible for incentive compensation based on individual and/or company performance.
This position is eligible for company benefits including medical, dental, and vision insurance with an employer contribution, flexible spending or health savings account, life and AD&D insurance, short and long term disability coverage, paid time off, employee assistance, participation in a 401k program with company match, and additional voluntary or legally-required benefits.