OneOncology is a company focused on improving cancer care through a patient-centric and technology-driven model. The Sr. QA Engineer (DevOps) will execute technical work supporting DevOps and QA initiatives, ensuring compliance with security standards and improving processes for community oncologists and their patients.
Responsibilities:
- Lead & perform technical evidence gathering for audits & compliance reviews, ensuring accuracey, completeness & audit readiness
- Own the creation and governance of system documentation, including PHI data stores and data flows
- Execute release certifications and tracking of certification requirements, including MIPS reporting
- Partner with leadership to help shape & evolve the compliance strategy , including the integration of AI into the program
- Drive cross-functional implementation and validation of compliance requirements across systems and workflows
- Architect & maintain automated test suites to validate compliance requirements - Pre-production environments, Production smoke testing
- Lead audit readiness and execution efforts for external frameworks (e.g., HITRUST, SOC 2), including auditor engagement and response coordination
- Continuously improve compliance processes, tooling and documentation to improve efficiency, scalability and control effectiveness
- Additional responsibilities as assigned to help drive our mission of improving the lives of everyone living with cancer
Requirements:
- 5+ years of experience in a technical role supporting HIPAA and HITRUST environments (e.g. support desk, SRE, or software engineering)
- Proven ability to produce clear, accurate compliance documentation for both technical and non-technical audiences (policies, checklists, audit evidence, deployment guides)
- Extensive experience leading & supporting external audits (HITRUST, SOC 2, or similar), including ownership of evidence collection, control validation and auditor coordination
- Preferred certifications: CCSFP (HITRUST), CISA, CISM, CISSP