Senior Risk and Compliance Analyst
Highmark Health
Job Title
This job works collaboratively to support of all risk and compliance assessment activities of Highmark Health across a broad range of frameworks including NIST, HITRUST, PCI, HIPAA, SOC, MAR, CMS, JCAHO, etc. The incumbent will partner with the organizational risk and business partners, the technology organization, and global delivery teams to meet Highmark Health's mission requirements in a manner consistent with the enterprise risk appetite. This individual must have a proactive mindset and approach, and feel comfortable working in a highly matrixed environment.
Essential Responsibilities
- Plan and conduct risk assessment activities according to the appropriate framework, including but not limited to NIST, HITRUST, PCI, HIPAA, SOC, MAR, CMS, JCAHO, in order to identify, assess, prioritize, evaluate and address financial, information security, privacy, and other areas of risk.
- Review and interpret inherent risk assessment results, engagement risks, and develop assurance plans (e.g., on-site audit, contract review, financials assessment, purchasing data analysis) to address relevant risk areas and to ensure proper controls are implemented.
- Lead development of project plans to support risk assessment and decisioning in coordination with business owners and other stakeholders within task-based budgets.
- Interface with business areas, technical staff, project teams, and third parties to execute cross-functional risk assurance projects. Lead the communication of assessment results and findings with multiple stakeholder groups and provides consultation and direction throughout.
- Interpret complex data flow/ information sharing activities, customer integrations, and information safeguards into simplified and high-level terminology and/or process/data flows. Maintains risk management reporting dashboards in RSA Archer applications in order to keep information complete, accurate, and current. Prepare and assist with the delivery of risk assurance reports to management.
- Ensure risk questionnaires and other risk assessments are distributed and completed on-time and prepares initial impact assessments. Ensure compliance requirements are met across the Enterprise. Assist in training and mentoring team members on multi-faceted engagements, platform customer dependencies, and interpretation of complex contract agreements.
- Collaborate with lead in providing input and consultation on risk and assurance reporting. Collaborate and consult with other areas (e.g., Procurement, Privacy, Information Security, Legal) throughout the engagement lifecycle. Assist in providing timely feedback on interpretations regarding authoritative guidance.
- Proactively reviews updates made to departmental desk-level procedures, risk assessment methodology, assessment procedures, questionnaires, training, etc. and is responsible for monitoring compliance with departmental metrics, internal control activities, contractual obligations, regulatory requirements, and responding to customer inquiries / audits.
- Other duties as assigned or requested
Education
Required
- Bachelor's Degree in Accounting, Finance, Business Administration/Management, Information Technology, Pre-Law, or related field
Substitutions
- 6 years of related and progressive experience in lieu of Bachelor's degree
Preferred
- Master's Degree in Accounting, Finance, Business Administration/Management, Information Technology, Pre-Law, or related field
Experience
Required
- 5 years in Audit and Compliance
- To Include:
- 3 years of Business Process Design
- 3 years of Project Management
Licenses or Certifications
Required
- None
Preferred (any of the following)
- Certified Public Accountant (CPA)
- Certified Information Systems Analyst (CISA)
- Certified Information Privacy Professional (CIPP)
- Certified Information Systems Security Professional (CISSP)
Skills
- Demonstrate expert knowledge of business and technology processes, risk and control frameworks, and assessment methodologies, particularly as applied to healthcare (payer and provider) business processes.
- Knowledge of relevant regulatory guidelines, vendor management, sourcing and procurement, and completing assessments of vendors
- Excellent resource and project planning capabilities, decision making skills, history of results-oriented delivery, and effective team building across a cross-campus and diverse team of management and staff.
- Strong written and verbal communication skills for diverse audiences (senior management, board, peer, and team).
- Strong relationship building skills and ability to influence with and without authority in a matrixed organization.
- Leadership qualities with an ability to motivate and inspire a group of individuals to achieve superior results.
- High capacity to think analytically, interpret information / observations, apply judgment and make effective, strategic decisions.
Language (Other than English):
None
Travel Requirement:
0% - 25%
Physical, Mental Demands and Working Conditions
Position Type
Office-based
Teaches / trains others regularly
Occasionally
Travel regularly from the office to various work sites or from site-to-site
Rarely
Works primarily out-of-the office selling products/services (sales employees)
Never
Physical work site required
Yes
Lifting: up to 10 pounds
Constantly
Lifting: 10 to 25 pounds
Occasionally
Lifting: 25 to 50 pounds
Rarely
Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job. Compliance Requirement : This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies. As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times. In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company's Handbook of Privacy Policies and Practices and Information Security Policy. Furthermore, it is every employee's responsibility to comply with the company's Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.
Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.
We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.
For accommodation requests, please contact HR Services Online at View email address on click.appcast.io
California Consumer Privacy Act Employees, Contractors, and Applicants Notice
Highmark Health- ...Senior Compliance Analyst (MS), AML (Anti-Money Laundering) The Opportunity: The AML/KYC Senior Analyst supports the day-to-day execution of... ...responsibility for identifying documentation gaps, escalating risk triggers, and maintaining high-quality case documentation...SeniorSummer workWork at officeFlexible hours
- ...works collaboratively to support of all risk and compliance assessment activities of Highmark... ...(CPA) Certified Information Systems Analyst (CISA) Certified Information Privacy... ...communication skills for diverse audiences (senior management, board, peer, and team)....SeniorContract workFor contractorsWork at officeLocal area
$48k - $115.5k
...Consumer Compliance Monitoring Coordinator Location: 800 Philadelphia Street Indiana, Pa... ...identification and quantification of compliance risk considering the size, level, and... ...relationships with Business Unit Compliance Analysts, Business Unit Managers and staff to...SeniorFor contractorsMonday to Friday- ...also offer unique benefits such as Student Debt Forgiveness and Pet Insurance. About ACA: ACA Group is the leading governance, risk, and compliance (GRC) advisor in financial services. We empower our clients to reimagine GRC and protect and grow their business. Our...SuggestedWork experience placementSummer workWork at officeFlexible hours
- ...Compliance Analyst - Supervision This position uses independent judgement and discretion to ensure all Registered Representatives adhere... ...Insurance. About ACA: ACA Group is the leading governance, risk, and compliance (GRC) advisor in financial services. We empower...SuggestedWork experience placementSummer workWork at officeFlexible hours
$55k - $65k
...legacy and a shared passion for what's next, this is the right place to build a fulfilling career. Join us as a Vendor Risk Management Compliance Analyst Brown Brothers Harriman is currently recruiting a Vendor Risk Management ("VRM") Compliance Analyst to join...Work at officeLocal areaRemote work- DICK'S Sporting Goods is seeking a Compliance Analyst to support the Corporate Compliance Program. In this role, you will manage policy governance, track regulatory activities, and support the operationalization of compliance programs. The ideal candidate will have a Bachelor...
- ...management, oversight of safety programs, and relevant certifications. Responsibilities include reviewing safety programs and ensuring compliance with safety regulations. The position offers comprehensive medical, dental, vision benefits, a retirement plan, and professional...Senior
- ...projects and initiatives related to the risk case management and intake activities of... ...Guidance team;. Translate and communicate compliance requirements into business and technical... ...the organization.During an audit, engage senior Business Unit leadership and removing barriers...SeniorFor contractorsWork at officeLocal area
- ...Sr. Compliance Officer Duration: 12+ months (possible extension) Location: Pittsburgh, PA 15258 Onsite role (4 days a week) Responsibilities... ...audit ready evidence, and partnering with business, legal, and risk teams to ensure sustained compliance without slowing delivery....Contract workFor subcontractor
- ...Senior Regulatory Affairs Specialist Be a part of mission-driven work in a critical,... ...clear guidance on regulatory requirements, risks, and timelines. Interface with regulatory... ..., and formal correspondence. Ensure compliance with applicable U.S. and international...SeniorPermanent employmentContract workLocal area
- ...BANK INVESTMENT RISK SPECIALIST SENIOR The PNC Financial Services Group, Inc. seeks a Bank Investment Risk Specialist Senior in Pittsburgh... ...methods to evaluate risk exposures and support compliance with risk-based capital framework; (6) managing and reconciling...Senior
- ...Senior Vice President, Counsel - Asset Servicing At BNY, our culture allows us to run our company better and enables employees... ...in an advisory or oversight capacity, such as those in Risk, Audit, Compliance, etc. Manage outside counsel, reviewing work for appropriateness...SeniorContract workWorldwideFlexible hours
- ...Senior Vice President, Counsel - Asset Servicing At BNY, our culture allows us to run our company better and enables employees... ...in an advisory or oversight capacity, such as those in Risk, Audit, Compliance, etc. Manage outside counsel, reviewing work for appropriateness...SeniorContract workWorldwideFlexible hours
- ...build and advance a strong foundation in internal audit, risk management, and SOX compliance while contributing to meaningful work that drives... ...The Internal Audit & Advisory Services Associate/Senior Associate will be responsible for supporting, and at the...SeniorInternshipWork at officeLocal area
$104k - $147k
...Senior Vice President, Operational Risk Coverage We're seeking a future team member for the role of Senior Vice President, Operational Risk Coverage to join our Risk & Compliance team. This role is located in New York City, NY. About the team: BNY Corporate Trust...SeniorTemporary workWork experience placement$20 per hour
...We're seeking a future team member for the role of Senior Vice President, Market and Client Risk Management Manager to join our Corporate Trust team.... ...executing deal documents or services in transactions in compliance with regulatory guidelines (where applicable), and BNY...SeniorContract workWork experience placementWork at officeWorldwideFlexible hours- ...Senior Angular Engineer Date: May 26, 2026 Location: Durham, NC, US Pittsburgh, PA, US Company: ACA Group ACA Group ("ACA") is the leading governance, risk, and compliance (GRC) advisor in financial services. We empower our clients to reimagine GRC and protect...SeniorWork at office
- ...Job Title : IT Risk Compliance Specialist Department: Information Technology Location: Pittsburgh, PA Reports To: CIO Company Statement: Montauk Renewables, Inc. (NASDAQ: MNTK) is a renewable energy company specializing in the management, recovery,...Full timeFlexible hours
- ...Senior Risk Management Analyst The Senior Risk Management Analyst assists in facilitating an effective risk framework through partnership with business, operations, and other staff units, as well as external stakeholders. The Senior Risk Management Analyst will have...Senior
$65k - $133.1k
...contribute to the company's success. As a Product Manager Senior within PNC's Retail Lending organization, you will be based... ...Develops product-specific marketing initiatives. Supports risk management, compliance and audit needs as part of the first line of defense....SeniorFull timeTemporary workPart timeWork experience placementWork at office$91k - $321.5k
...Specialty/Competency: IFS - Risk & Quality (R&Q) Industry/Sector: Not Applicable... ...to 20% At PwC, our people in risk and compliance focus on maintaining regulatory compliance... ...Contract Specialist - Managed Services - Senior Manager, you will lead initiatives in enterprise...SeniorFull timeContract workH1b$100k - $231.4k
...contribute to the company's success. As a Line of Business Risk Manager Senior within PNC's Technology organization, you will be based in... ...working with the businesses and other risk partners (e.g., Compliance, Credit, Legal, Audit). Monitors changes in internal and external...SeniorFull timeTemporary workPart timeWork experience placementWork at office- ...contribute to the company's success. As a Compliance Program Analyst within PNC's Human Resources... ...necessary data to identify compliance risks. Under supervision, may assist in suggesting... ...resolutions. Escalates identified risks to senior team members. Assesses activity for...Full timeTemporary workPart timeWork experience placementWork at office
- ...sports team, apply to join our team today! OVERVIEW: The Compliance Analyst will assist the Director of Global Compliance with the... ...Insights • Assist in identifying and containing compliance risks and proactively fostering a compliance culture. Assist with industry...
- ...results, and delivering preventative maintenance services. Job Description Perform multi-point vehicle inspections to ensure compliance with emissions standards and state regulations. Document inspection results and maintain accurate records. Communicate pass...Full timeLocal areaFlexible hours
$48.97k - $73.82k
Salary $48,968.00 - $73,817.00 Annually Location Allegheny County, PA Job Type Civil Service Permanent Full-Time Job Number CS-2026-49836-71040 Department Department of Transportation Division TR Drvr Lcnsng Opening Date...Permanent employmentFull timeWork at officeLocal areaImmediate start- ...performing services as a Lube Technician. Job Responsibilities: Perform multi-point Inspection of automotive vehicles to ensure compliance to emission standards and governmental regulations and maintain detailed records of vehicles inspected. Communicate whether...Full timeTemporary workLocal areaFlexible hours
- Driver License Examiner As a Driver License Examiner for the Department of Transportation in Allegheny County, you help ensure that every new driver meets safety standards. This position provides an opportunity to use clear communication, attention to detail and strong...Full timeWork at officeLocal areaImmediate start
- ...Senior Principal Digital Engineer We are seeking a highly experienced Senior Principal Digital Engineer to join our team supporting the modernization of Digital Engineering (DE) and Model-Based Systems Engineering (MBSE) for Naval Nuclear Laboratory (NNL) programs...SeniorFor contractors
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Risk and Compliance Analyst. Be the first to apply!
- operational risk consultant Pittsburgh, PA
- it risk analyst Pittsburgh, PA
- operational risk specialist Pittsburgh, PA
- risk analyst Pittsburgh, PA
- senior quantitative risk analyst Pittsburgh, PA
- risk officer Pittsburgh, PA
- risk consultant Pittsburgh, PA
- coding compliance specialist Pittsburgh, PA
- regulatory affairs specialist Pittsburgh, PA
- regulatory compliance associate Pittsburgh, PA


