A complete application in a minute — tailored resume and cover letter, ready to send.
Highmark Inc. is seeking a Regulatory Compliance Analyst to support intake, implementation, and assurance across HIPAA, HITRUST, PCI, CMS, and related frameworks. You will partner with risk and technology teams to meet enterprise risk appetite and coordinate with a global delivery network.
Ideal candidates bring 3+ years with regulators/auditors and strong communication skills for senior leaders, plus familiarity with healthcare regulatory guidelines and risk assessments.
Company : Highmark Inc.
This job is responsible for supporting the work of the department projects and initiatives related to the regulatory intake, implementation, and assurance activities of Highmark Health in support of a broad range of frameworks and oversight bodies including NIST, HITRUST, PCI, HIPAA, SOC, MAR, CMS, JCAHO, NCQA, the BCBSA, etc. The incumbent will partner with the Senior Analyst and Lead analyst to support their work with the organizational risk and business partners, the technology organization, and global delivery teams to meet Highmark Health’s mission requirements in a manner consistent with the enterprise risk appetite. The incumbent must have a proactive mindset and approach, and feel comfortable working in a highly matrixed environment.
Required Bachelor's degree in Accounting, Finance, Business Administration/Management, Information Technology, Pre-Law, Computer, Information Science, or related field Substitutions 6 years of related and progressive experience in lieu of Bachelor's degree Preferred None
Required 3 years of interacting with regulators, auditors, and/or oversight bodies 3 years of increasing accountability and/or progressive role, preferably in an audit or compliance discipline in a healthcare or healthcare related industry Preferred None
Required None Preferred (any of the following) Certified Public Accountant (CPA) Certified Information Systems Auditor (CISA)
Knowledge of business and technology processes, risk and control frameworks, and assessment methodologies, particularly as applied to healthcare (payer and provider) business processes Knowledge of relevant regulatory guidelines, vendor management, sourcing and procurement, and completing risk-based assessments Strong written and verbal communication skills for diverse audiences (senior management, board, peer, and team) Demonstrates relationship building skills and ability to influence with and without authority in a matrixed organization. written and verbal communication skills for diverse audiences (senior management, board, peer, and team) Capacity to think analytically, interpret information / observations, apply judgment and make effective, strategic decisions Language (Other than English): None
0% - 25%
Position Type Office-based Teaches / trains others regularly Frequently Travel regularly from the office to various work sites or from site-to-site Rarely Works primarily out-of-the office selling products/services (sales employees) Never Physical work site required Yes Lifting: up to 10 pounds Constantly Lifting: 10 to 25 pounds Occasionally Lifting: 25 to 50 pounds Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job. Compliance Requirement: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies. As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy. Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements. Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law. California Consumer Privacy Act Employees, Contractors, and Applicants Notice Highmark Health is a national, blended health organization that includes one of America’s largest Blue Cross Blue Shield insurers and a growing regional hospital and physician network. Based in Pittsburgh, Pa., Highmark Health’s 35,000 employees serve millions of customers nationwide through the nonprofit organization’s affiliated businesses, which include Highmark Inc., Allegheny Health Network, HM Insurance Group, United Concordia Dental, HM Health Solutions and HM Home & Community Services. Highmark Health’s businesses proudly serve a broad spectrum of health-related needs including health insurance, health care delivery, population health management, dental solutions, reinsurance solutions, and innovative, technology solutions.