Highmark Health Logo

Highmark Health

Senior IT Audit Analyst

Posted 25 Days Ago
Be an Early Applicant
50 Locations
68K-126K Annually
Senior level
50 Locations
68K-126K Annually
Senior level
The Senior IT Audit Analyst establishes relationships for IT audits, conducts audits on risks and controls, and mentors internal resources.
The summary above was generated by AI

Company :Highmark HealthJob Description : 

JOB SUMMARY

This job establishes and cultivates relationships with assigned areas related to information technology, security, system implementations, and data privacy, to assist in the development of the annual Internal Audit plan and the planning and execution of audit activities to determine whether Highmark Health and its subsidiaries' network of risk management, control, and governance processes, as designed and operated by management, are adequate and functioning.  Executes to ensure the IT Assurance and Advisory programs aligned with the overall Internal Audit strategy.  Assesses whether the processes and controls provide reasonable assurance that information technology and security risks are identified and managed, and that significant financial, operational, and protected information is secure, accurate, reliable, and processed timely. Determines and recommends improvements in the implementation of business process and systems changes and project management controls. Prepares reports for management summarizing the results of the audit and/or project, including providing recommendations on improvement opportunities. Interfaces and assists the independent auditors during external audit assessments, where necessary.  Must comply with the Health Insurance Portability Accountability Act of 1996 (HIPAA) as it pertains to disclosures of protected health information (PHI) as described in the Notice of Privacy Practices and Privacy Policies and Procedures. As a component of job roles and responsibilities, employees in this role may have access to covered information, cardholder data, or other confidential customer information which must be protected at all times.  In connection with this responsibility, employees in this role must adhere to all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy.

ESSENTIAL RESPONSIBILITIES

  • Facilitates the planning and execution of  information technology, security, system implementations, and data privacy audit activities across the Highmark Health enterprise, while maintaining independence and adhering to professional industry standards.
  • Creates a positive working environment through the building of solid relationships with team members. Assist with workloads of all team members; adjustment and redistribution of assignments accordingly to promote quality, team capabilities, and  meeting client expectations.
  • Assist in the establishment appropriate budgets and time frames to close-out and finalize audits / projects, including the identification and assessment of issues, development of audit reports, and review of supporting documentation and workpapers in accordance with Departmental standards.
  • Identify and assess the organization’s key information technology, security, and data privacy risk areas; assist the IA management team by contributing to the development of the annual internal audit plan. 
  • Manage and mentor other internal audit resources through the execution of their work, providing constructive feedback and assistance.
  • Provide technical and operational assistance to functional business areas in development, refinement, and documentation of IT controls, leveraging data analytics to faciliate effective and efficient audit work.
  • Serve as departmental IT subject matter expert and enhance internal knowledge of IT controls and IT auditing concepts
  • Other duties as assigned or requested.

EDUCATION

Required

  • Bachelor's Degree in Accounting, Finance, Business Administration, Information Technology, Computer Science, or related field, or relevant experience and/or education as determined by the company in lieu of bachelor's degree.

Preferred

  • Master’s Degree in Accounting, Finance, Business Administration, Information Technology, Computer Science or related field

EXPERIENCE

Required

  • 5 years in Information Systems auditing OR

  • 5 years in auditing and an Information Systems related discipline, such as Information Security, Change Management, Systems Development, etc

Preferred

  • Familiarity with a wide variety of computer application platforms, including but not limited to: Oracle, SQL Server, DB2, RACF, Linux, and Windows.
  • Cybersecurity/ IT risk assurance expertise
  • Experience with Archer Governance, Risk, and Compliance (GRC) suite of products

LICENSES OR CERTIFICATIONS

Required

  • None

Preferred

  • Certified Information System Audit (CISA)
  • Certified Internal Audit (CIA)
  • Certified Public Accountant (CPA)

SKILLS

  • Knowledge of internal audit functions, particularly as applied to information technology and data security
  • Ability to apply auditing (GAAS), accounting  (GAAP) and/or IS industry standards to the evaluation of systems environments and processes (i.e., data center operations, information security, input, output and processing controls, back-up and recovery, business contingency planning, systems development, and the implementation of advanced technologies)
  • Effective resource and project planning, decision making, results delivery, team building, and staying current with relevant technology and innovation
  • Oral and written communication skills when interfacing and collaborating with clients, peers, and management to develop solutions, emphasizing a client-based focus to understand and respond appropriately to business requirements
  • Strong relationship building skills
  • Self-starter with the ability to work under pressure independently and as part of a team
  • Ability to think strategically and act proactively to create strong trust and confidence with business units
  • Ability to interact, build credibility and long-term relationships with senior management to understand the company’s culture, strategic direction, and goals.
  • Ability to manage multiple projects, meet deadlines while ensuring quality and exceeding client expectations. ​

Language (Other than English):

None

Travel Requirement:

0% - 25%

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS

Position Type

Office-based

Teaches / trains others regularly

Frequently

Travel regularly from the office to various work sites or from site-to-site

Rarely

Works primarily out-of-the office selling products/services (sales employees)

Never

Physical work site required

No

Lifting: up to 10 pounds

Constantly

Lifting: 10 to 25 pounds

Occasionally

Lifting: 25 to 50 pounds

Rarely

Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.
Compliance Requirement: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.

As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.  In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy. 
Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.

Pay Range Minimum:

$67,500.00

Pay Range Maximum:

$126,000.00

Base pay is determined by a variety of factors including a candidate’s qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations.  The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.

For accommodation requests, please contact HR Services Online at [email protected]

California Consumer Privacy Act Employees, Contractors, and Applicants Notice

Top Skills

Archer Governance
Compliance Suite
Db2
Linux
Oracle
Racf
Risk
SQL Server
Windows

Similar Jobs

9 Days Ago
Remote
52 Locations
Mid level
Mid level
Artificial Intelligence • Computer Vision • HR Tech • Machine Learning • Software
The Media Account Manager will develop new business, manage client accounts, and optimize media strategies in recruitment advertising.
Top Skills: Data AnalysisJob Board ManagementMedia SolutionsProgrammatic CampaignsRecruitment Advertising
Yesterday
5 Locations
96K-210K Annually
Mid level
96K-210K Annually
Mid level
Information Technology • Consulting • Defense
As a Digital Network Exploitation Analyst, you will analyze network data, develop intelligence reports, collaborate with teams, and enhance cybersecurity techniques.
Top Skills: AlgorithmsComputer ScienceComputer/Network SecurityData StructuresInformation AssuranceNetwork AdministrationPenetration TestingProgramming MethodologiesSystems EngineeringVulnerability Analysis
3 Days Ago
Wrangell, AK, USA
25-32
Junior
25-32
Junior
Healthtech • Telehealth
The IT Specialist I assists with Help Desk activities, troubleshooting user issues, installing and maintaining software and hardware, and supporting video conferencing.
Top Skills: A+MicrosoftNetwork+

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account