Senior Privacy Analystfor our client located in Montgomery, AL. This position is onsite in Montgomery, AL, and requires in-person availability starting day 1.
Job Overview:The Senior Privacy Analyst supports the Agency Privacy Officer in the day-to-day operation of the Agency's privacy program. This position reviews, tracks, coordinates, and documents privacy-sensitive requests and incidents involving:
- Medicaid applicants, recipients, and beneficiaries
- Claims, eligibility, and enrollment information
- Provider and program integrity data
- Protected Health Information (PHI)
- Personally Identifiable Information (PII)
Privacy Request Management
Responsible for processing and reviewing
- Individual access requests
- Information-gathering requests
- Recipient-directed disclosures
- HIPAA authorizations
- Subpoenas and court/legal requests
- Privacy complaints
- Privacy incident reports
- Breach reporting activities
Privacy Compliance & Risk Assessment
- Apply HIPAA Privacy and Breach Notification requirements.
- Ensure compliance with Medicaid confidentiality requirements and applicable regulations.
- Review requests and incidents for privacy risks and compliance concerns.
- Verify identity and authority while adhering to minimum necessary standards.
- Follow established escalation procedures and privacy best practices.
- Conduct remote and onsite privacy assessments to verify compliance.
Program Support & Audit Participation
Assist in the development, implementation, maintenance, and documentation of the Agency's privacy program, including participation in federal and state audits conducted by organizations such as:
- Social Security Administration (SSA)
- Internal Revenue Service (IRS)
- U.S. Department of Health & Human Services (HHS)
- Centers for Medicare & Medicaid Services (CMS)
- Office for Civil Rights (OCR)
- State Examiner's Board
- Other regulatory and oversight agencies
Required Qualifications:- Working knowledge of HIPAA Privacy Rule and Breach Notification requirements.
- Working knowledge of Medicaid confidentiality requirements, particularly 42 CFR Part 431, Subpart F.
- Understanding of 42 CFR Part 2 considerations and related privacy requirements.
- Ability to review and evaluate:
- Subpoenas
- Court orders
- HIPAA authorizations
- Access requests
- Privacy incident reports
- Ability to assess documentation for completeness, compliance, and privacy risk.
- Ability to verify identity and authority without over-collecting or retaining unnecessary documentation.
- Strong analytical, documentation, and problem-solving skills.
- Ability to implement and monitor privacy best practices and compliance standards.
- Must have knowledge in the following areas:
- HIPAA Privacy Rule
- HIPAA Breach Notification Rule
- Medicaid Confidentiality Requirements
- 42 CFR Part 431, Subpart F
- 42 CFR Part 2
- PHI and PII Protection Standards
- Minimum Necessary Standard
- Identity and Authority Verification Requirements
- A drug-free workplace in accordance with the Drug-Free Workplace Act of 1988.
- Applicants who have a signed offer of employment or contractor agreement are subject to:
- the pre-employment testing protocol:
- background investigation
- drug screening
Our Employees:- Are actively working on next-generation technology projects with the U.S. Department of Veterans Affairs, CDC, and a wide array of Federal, State, and Local agencies throughout the United States
- Are eligible for wide-ranging benefits and perks, including but not limited to:
- Comprehensive Health Insurance with PPO and HDHP/HSA options
- Dental Insurance
- Vision Insurance
- Short/Long-Term Disability
- Group Life Insurance - Company Paid
- Voluntary Life Insurance
- 401(k) Plan with Employer Match
- Paid Time Off (Vacation/Sick)
- Holiday Pay - Company Paid Federal Holidays
- Professional Certification Incentive Plan
- Employee Referral Plan
- Technology Exposure
For additional information regarding Advanced Systems Design, please check out our WEBSITE or click HERE for all current job openings.