Director, Governance Risk & Compliance

NextGen Healthcare
Remote, GA
Remote
Full-time

Description

Responsible for the day-to-day operation and reporting obligations of the Information Security Management Program, the management of its employees, and strategic alignment of the program.

  • Development, implementation and maintenance of information privacy and security practices and procedures.
  • Ensure alignment of privacy & security policies, procedures and practices.
  • Perform ongoing compliance monitoring activities; establish and maintain a mechanism to track access to protected health information.
  • Oversee, direct, and deliver information privacy and security training and awareness programs to educate the workforces.
  • Coordinate and supervise privacy and security incident investigations.
  • Coordinate information risk assessments to ensure protected health information is adequately protected.
  • Establish, implement, and lead incident response team to contain, investigate and prevent breaches of protected health information.
  • Work collaboratively with research and development to ensure privacy by design and satisfaction of client regulatory obligations in product features.
  • Work with personnel involved in all aspects of releasing protected health information to ensure full coordination and coordination with privacy and security practices and procedures.
  • Maintain appropriate confidentiality consent, authorization forms, information notices, and materials reflecting current organization and regulatory practices and requirements.
  • Maintain current knowledge of applicable federal and state privacy and security laws and accreditation standards. Monitor advancements in information privacy technologies to ensure organizational adaptation and compliance.

Education Required :

  • Bachelor’s degree in Computer Science, Programming, Engineering, or similar field.
  • Or, any combination of education and experience which would provide the required qualifications for the position.

Experience Required :

  • 5+ years’ experience in IT, audit, compliance or education program that covers audit, compliance, cybersecurity, healthcare
  • Experience with one or more of the following frameworks : COSO, NIST Cybersecurity Framework, RMF, ISO, COBIT
  • Experience working in an environment with one or more of the following : Health Insurance Portability and Accountability Act (HIPAA), Sarbanes-Oxley Act (SOX), Security Operation Center (SOC), Payment Card Industry (PCI), GRC, Health.

Knowledge, Skills & Abilities :

  • Knowledge of : Security vulnerability tools; architecture security planning; cloud architecture, security tools, reporting, audit and compliance, and frameworks;
  • crisis operations, risk management, and crisis communication; audit and compliance procedures and best practices; framework adoption;

access control systems and physical security systems / components; Microsoft Office Suite.

  • Skill in : Working as member of a team; communicating effectively; establishing and maintaining effective working relationships.
  • Ability to : Design secure networks, systems, and application architectures; work in a fast-paced environment; stay organized, prioritize workload, multi-task, and meet deadlines.

Mentor and train colleagues on security protocols to raise awareness of security hygiene to lower threat risk.

The company has reviewed this job description to ensure that essential functions and basic duties have been included. It is intended to provide guidelines for job expectations and the employee's ability to perform the position described.

It is not intended to be construed as an exhaustive list of all functions, responsibilities, skills and abilities. Additional functions and requirements may be assigned by supervisors as deemed appropriate.

This document does not represent a contract of employment, and the company reserves the right to change this job description and / or assign tasks for the employee to perform, as the company may deem appropriate.

NextGen Healthcare is an equal opportunity employer. We celebrate diversity and are committed to creating an inclusive environment for all employees.

30+ days ago
Related jobs
Promoted
VirtualVocations
Alpharetta, Georgia

A company is looking for a Director of Governance Risk and Compliance. ...

Promoted
Public Company Accounting Oversight Board
Atlanta, Georgia

This role will be the primary conduit for all OT Risk and Compliance, including: Internal Controls over Financial Reporting (ICFR), General Technology Controls, audits, and as a Risk Liaison to PCAOB's Enterprise Risk Management Office. The PCAOB has a full-time, regular position for a Lead Governan...

Promoted
VirtualVocations
Alpharetta, Georgia

A company is looking for a Director of Information Security, Risk, and Compliance. ...

Promoted
Slalom Consulting
Atlanta, Georgia

Extensive experience in developing and implementing Governance, Risk, and Compliance (GRC) frameworks in the HCLS industry, with a strong focus on AI-driven insights and proactive governance. Principal - Governance, Risk, and Compliance (GRC) Leader. Use predictive analytics, automated compliance mo...

Promoted
Sirius XM Radio, Inc.
Atlanta, Georgia

The Senior Analyst, Governance, Risk, and Compliance will be a key individual contributor in our Governance, Risk, and Compliance team. The team member will play a key role in maintaining our compliance program, partnering with process owners, external auditors, and other stakeholders in order to pe...

Saviynt
Atlanta, Georgia

Owner for the Saviynt Solution for the Application Access Governance product which deals with Governance Risk and Compliance for critical applications such as SAP, EPIC, Oracle EBS, Workday, Salesforce etc. The Application Access Governance (AAG) Sales Director (individual contributor) will serve as...

TransUnion LLC
Alpharetta, Georgia

Provide end to end coordination of projects for the Risk and Compliance teams in the areas of; Corporate Investigations, Risk Management, Compliance, Compliance Advisory, Compliance Program management including providing oversight of plans and tracking actions to completion. Draft and coordinate ris...

Kimberly-Clark
Roswell, Georgia

As the Global Sustainability Risk and Compliance Leader, you will lead the strategy for our global Environmental and Sustainability risk and compliance requirements, including regulatory influencing strategy. Proactively manages the dynamic sustainability risk and compliance landscape appropriate to...

Boston Consulting Group
Atlanta, Georgia

Our offerings include, but also extend beyond: Compliance and Crisis Response, Advanced Risk Analytics, Balance Sheet Management, Credit Risk Management, Commodity Market Risk, Operational Risk Management, Cybersecurity and Digital Risk, Supply Chain Risk, Climate and ESG Risk. The Risk & Compliance...

Sirius XM
Atlanta, Georgia

The Senior Analyst, Governance, Risk, and Compliance will be a key individual contributor in our Governance, Risk, and Compliance team. The team member will play a key role in maintaining our compliance program, partnering with process owners, external auditors, and other stakeholders in order to pe...