Director, IT Compliance and System Resiliency

Location: Remote-US, California US

Notice

This position is no longer open.

Job Number: 4946

Workplace Type: Fully Remote

Position Title: Director, IT Compliance and System Resiliency

External Description:

Position Summary:

The Director, IT Compliance is an experienced IT assurance, IT audit or IT risk lead or manager whose career includes a broad range of hands-on experience working with a variety of financial applications and IT environments preferably within healthcare companies, including experience with PCAOB regulations, SOC1&2, ITGC's, SOX, HIPAA, HITRUST, PCI compliance and reporting, and internal controls over financial reporting.

General Duties/Responsibilities (May include but are not limited to):

·       Build, scale, and manage our IT Compliance team to support our needs as a distributed company

·       Be the IT Compliance Expert at Alignment

·       Conduct evaluations of IT risks and controls associated with both on-premise and cloud infrastructure, and processes relating to SOX, HIPAA, ISO, and NIST.

·       Responsible for developing, implementing, and executing a Business Continuity and related Disaster Recovery plan and infrastructure

·       Evaluate 3rd party data exchange relationships to ensure that data protection controls and documentation gaps are satisfactorily addressed.

·       Facilitate regular meetings with business and IT stakeholders to track the progress of ongoing compliance and security remediation and planning efforts.

·       Participate in security tooling and compliance automation implementation efforts.

·       Update, establish and implement information security policy, standards and processes

·       Act as a subject matter expert in understanding regulatory and IT risks, and how compensating controls or mitigating processes affect that risk.

·       Facilitate resolution of IT audit, compliance, and information security-related issues and conduct periodic readiness testing of controls.

·       Manage a team of compliance professionals and drive to achieve excellent compliance outcomes.

·       Provide technical guidance to other DTS team members in managing compliant processes, build and run states.

·       Assist in designing and oversight of technical compliance using vulnerability scans, penetration testing, application, and infrastructure code reviews, etc.

·       Evaluate, propose, and leverage resources and solutions where appropriate that are scalable and cost-effective including in-house, on-premises, cloud, hybrid, hosted, staffing, and sourcing solutions.

·       Lead regular meetings with all members of the IT Compliance team

  • Triage and manage priorities of the IT Compliance team
  • Represent the IT Compliance team in different company functions
  • Create and execute a plan to develop and mature our IT Compliance capabilities and Infrastructure
  • Collaborate with all functions of the company to ensure IT Compliance needs are addressed.
  • Coordinate enterprise activities in response to third-party audits

Supervisory Requirements:

Oversees any assigned staff. Responsibilities include: recruiting, selecting, orienting, and training employees; assigning workload; planning, monitoring, and appraising job results; and coaching, counseling, and disciplining employees.

Minimum Requirements:

To perform this job successfully, an individual must be able to perform each essential duty satisfactorily.  The requirements listed below are representative of the knowledge, skill, and/or ability required.  Reasonable accommodations may be made to enable individuals with disabilities to perform essential functions.

 

·       Minimum Experience:

o   Minimum of 10 years of hands-on experience in information technology required; demonstrating a steady growth of skills and responsibility around IT internal controls and processes.

o   Minimum of 7 years of HITRUST, SOC 1 & 2, ITGC, GDPR, ISO27001, and SOX IT Audit experience, including knowledge and experience with PCAOB regulations and requirements.

·       Education/Licensure:

o   Bachelor’s degree in a related field, or a minimum of 10 years of related experience.

·       Other:

o   Familiarity with control standards such as PCAOB/SOX, ISO 27001/2, SOC2, COBIT, HIPAA, PCI, NIST, CSA.

o   Excellent oral and written communication skills; ability to present and discuss technical information in a way that establishes rapport and trust.

o   Preferred

                                                               i.      Experience with Microsoft Azure or AWS.

                                                             ii.      Prior experience in Healthcare or a related HIPAA-regulated industry.

                                                           iii.      Experience with audit or compliance within DevOps-oriented activities.

                                                           iv.      One or more related GRC certifications or accreditations. (e.g., CBCP, CRISC, HITRSUT Practitioner, CISA, CIA, SANS, CISM, or CISSP)

                                                             v.      Experience with SaaS, IaaS and other cloud-based platforms and tools.

                                                           vi.      Creation of software development, release and change control processes and reporting.

                                                          vii.      Ability to design and fit agile controls and lead IT audit engagements across many teams.

                                                        viii.      Ability to multi-task and set workload priorities in a fast-paced and changing environment.

  • Work Environment:
    • The work environment characteristics described here are representative of those an employee encounters while performing the essential functions of this job.  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Essential Physical Functions:

The physical demands described here are representative of those that must be met by an employee to successfully perform the essential functions of this job.  Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

 

  • While performing the duties of this job, the employee is regularly required to talk or hear. The employee regularly is required to stand, walk, sit, use hand to finger, handle or feel objects, tools, or controls; and reach with hands and arms.
  • The employee frequently lifts and/or moves up to 10 pounds. Specific vision abilities required by this job include close vision and the ability to adjust focus.

City: Remote-US

State: California

Location City: Remote-US

Location State: California

Community / Marketing Title: Director, IT Compliance and System Resiliency

Company Profile:

By leveraging our world-class technology platform, innovative care delivery models, deep physician partnerships and our serving heart culture, Alignment Health is revolutionizing health care for seniors! From member experience professionals and clinicians, to data scientists and operations leaders, we have built a talented and passionate team that is deeply committed to our mission of transforming health care for the seniors we serve. Ready to join us?

At Alignment, delivering exceptional care to seniors starts with ensuring an exceptional experience for our over 1,300 employees. At the center of our employee experience is a culture where employees at all levels and across all teams are encouraged to share their unique ideas and perspectives. After all, when you can bring your authentic self to work, whether that’s in a clinical setting, our corporate office or a home office, creativity and innovation flourish! Another important part of the Alignment culture is a belief in continuous learning and growth. As a result, in this fast-growing company, you will find ample support to grow your skills and your career – with us.

EEO Employer Verbiage:

 

Please note: All clinical positions are contingent upon successful engagement with Alignment Health’s COVID-19 Vaccination program (fully vaccinated with documented proof or approved exception/deferral).

Alignment Health is an Equal Opportunity/Affirmative Action Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, age, protected veteran status, gender identity, or sexual orientation.

*DISCLAIMER: Please beware of recruitment phishing scams affecting Alignment Health and other employers where individuals receive fraudulent employment-related offers in exchange for money or other sensitive personal information. Please be advised that Alignment Health and its subsidiaries will never ask you for a credit card, send you a check, or ask you for any type of payment as part of consideration for employment with our company. If you feel that you have been the victim of a scam such as this, please report the incident to the Federal Trade Commission at https://reportfraud.ftc.gov/#/. If you would like to verify the legitimacy of an email sent by or on behalf of Alignment Health’s talent acquisition team, please email [email protected].