Navigating Care is part of OneOncology, which aims to enhance cancer care through a patient-centric and technology-driven approach. They are seeking a Senior QA Engineer (DevOps) to support DevOps and QA initiatives, ensuring compliance with security standards and enhancing processes within the Engineering organization.
Responsibilities:
- Lead & perform technical evidence gathering for audits & compliance reviews, ensuring accuracey, completeness & audit readiness
- Own the creation and governance of system documentation, including PHI data stores and data flows
- Execute release certifications and tracking of certification requirements, including MIPS reporting
- Partner with leadership to help shape & evolve the compliance strategy , including the integration of AI into the program
- Drive cross-functional implementation and validation of compliance requirements across systems and workflows
- Architect & maintain automated test suites to validate compliance requirements - Pre-production environments, Production smoke testing
- Lead audit readiness and execution efforts for external frameworks (e.g., HITRUST, SOC 2), including auditor engagement and response coordination
- Continuously improve compliance processes, tooling and documentation to improve efficiency, scalability and control effectiveness
- Additional responsibilities as assigned to help drive our mission of improving the lives of everyone living with cancer
Requirements:
- 5+ years of experience in a technical role supporting HIPAA and HITRUST environments (e.g. support desk, SRE, or software engineering)
- Proven ability to produce clear, accurate compliance documentation for both technical and non-technical audiences (policies, checklists, audit evidence, deployment guides)
- Extensive experience leading & supporting external audits (HITRUST, SOC 2, or similar), including ownership of evidence collection, control validation and auditor coordination
- Preferred certifications: CCSFP (HITRUST), CISA, CISM, CISSP