Senior (5+ years of experience)
Summary of the Role
As a Healthcare IT Auditor, you will be responsible for ensuring that the information technology systems used within healthcare organizations comply with laws, regulations, and standards. You will conduct detailed audits, assess risks and controls, and recommend improvements to promote security, confidentiality, and efficiency in healthcare IT operations.
Required Skills
Critical thinking and analytical skills
Strong attention to detail
Knowledge of healthcare IT systems and electronic health records (EHR)
Familiarity with risk management principles
Proficiency in IT audit techniques and compliance software tools
Effective communication and presentation skills
Leadership and team management abilities
Incident response and investigation skills
Knowledge of cybersecurity best practices
Time management and project coordination
Qualifications
Bachelor's degree in Information Technology, Healthcare Administration, or related field.
5+ years of experience in IT audit or compliance, preferably within the healthcare industry.
Professional certifications such as Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), or Certified Healthcare Information Security and Privacy Practitioner (HCISPP) are highly desirable.
In-depth knowledge of HIPAA, HITECH, and other healthcare related laws and regulatory standards.
Experience with IT audit methodologies and frameworks such as COBIT and ITIL.
Strong understanding of network infrastructure, database management, and data privacy practices.
Excellent analytical and problem-solving skills.
Proficient in using audit software and IT systems specific to healthcare.
Ability to handle confidential information with discretion and integrity.
Strong communication and interpersonal skills, capable of leading and educating teams.
Responsibilities
Conduct comprehensive audits of healthcare IT systems to ensure compliance with HIPAA and other relevant regulations.
Evaluate the effectiveness of IT controls and security measures in place and identify areas for improvement.
Collaborate with healthcare management to review and assess the potential risks to electronic personal health information (ePHI).
Prepare detailed audit reports and communicate findings to senior management.
Recommend best practices and corrective actions to mitigate identified risks.
Guide healthcare organizations in implementing IT controls and compliance measures.
Stay abreast of the latest developments in healthcare IT laws and regulations.
Participate in the development and delivery of IT audit training programs for staff within the organization.
Lead incident response investigations when breaches of healthcare IT security occur.
Work with cyber security teams to ensure the ongoing protection of ePHI across all platforms and systems.