Associate IT Audit Analyst

Highmark Health
7dOnsite

About The Position

JOB SUMMARY This job is actively involved in the execution of audit activities related to information technology security, system implementations, and data privacy to determine whether Highmark Health and its subsidiaries' network of risk management, control, and governance processes, as designed and operated by management, are adequate and functioning. Assesses whether the processes and controls provide reasonable assurance that information technology and security risks are identified and managed, and that significant financial, operational, and protected information is secure, accurate, reliable, and processed timely. Determine and assist with the development of recommendations to improve the implementation of business process and systems changes and project management controls. Execute the IT Assurance and Advisory programs aligned with the overall Internal Audit strategy. Comply with the Health Insurance Portability Accountability Act of 1996 (HIPAA) as it pertains to disclosures of protected health information (PHI) as described in the Notice of Privacy Practices and Privacy Policies and Procedures. As a component of job roles and responsibilities, employees in this role may have access to covered information, cardholder data, or other confidential customer information which must be protected at all times. In connection with this responsibility, employees in this role must adhere to all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy.

Requirements

  • Minimum Bachelor’s degree in accounting, Finance, Business Administration, Information Technology, Computer Science or Related Field or relevant experience and/or education as determined by the company in lieu of bachelor's degree.
  • Experience with Information Systems auditing OR Experience in audit and an Information Systems related discipline, such as Information Security, Change Management, Systems Development, etc.
  • Knowledge of internal audit functions, particularly as applied to information technology and data security
  • Ability to apply auditing (GAAS), accounting (GAAP) and/or IS industry standards to the evaluation of systems environments and processes (i.e., data center operations, information security, input, output and processing controls, back-up and recovery, business contingency planning, systems development, and the implementation of advanced technologies)
  • Effective resource and project planning, decision making, results delivery, team building, and staying current with relevant technology and innovation
  • Oral and written communication skills when interfacing and collaborating with clients, peers, and management to develop solutions, emphasizing a client-based focus to understand and respond appropriately to business requirements
  • Strong relationship building skills
  • Self-starter with the ability to work under pressure independently and as part of a team
  • Ability to think strategically and act proactively to create strong trust and confidence with business units
  • Ability to interact, build credibility and long-term relationships with senior management to understand the company’s culture, strategic direction, and goals.
  • Ability to manage multiple projects, meet deadlines while ensuring quality and exceeding client expectations.

Nice To Haves

  • Familiarity with a wide variety of computer application platforms, including but not limited to: Oracle, SQL Server, DB2, RACF, Linux, and Windows.
  • Cybersecurity/ IT risk assurance expertise
  • Experience with Archer Governance, Risk, and Compliance (GRC) suite of products
  • Certified Information System Auditor (CISA)
  • Certified Internal Auditor (CIA)
  • Certified Public Accountant (CPA)

Responsibilities

  • Assist with identifying and assessing the organization’s key information technology, security, and data privacy risk areas.
  • Plan and executes information technology, security, system implementation, and data privacy audit activities across Highmark Health enterprise while maintaining independence and adhering to professional industry standards.
  • Produce high-quality audit work papers, ensuring satisfactory documentation of results.
  • Effectively communicate with customers, supervisors, and subject matter experts to deliver on requests and tasks in a timely manner, and to ensure clarity on project status, deadlines, and deliverables throughout the project lifecycle.
  • Assist with the process to close-out and finalize audits / projects, including the identification and assessment of issues, development of audit reports, and review of supporting documentation and workpapers in accordance with Departmental standards
  • Contribute with maintaining a positive working environment through the building of solid relationships with team members.
  • Coordinate with independent auditors in executing audit procedures for the organization, where necessary.
  • Other duties as assigned or requested.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service