University of Colorado · 5 months ago
Security and Compliance Manager
The University of Colorado Anschutz Medical Campus is seeking a Security and Compliance Manager to safeguard its operations and cloud-based solutions. This role involves managing compliance with state and federal regulations, leading HIPAA compliance efforts, and overseeing security activities to ensure the organization meets rigorous regulatory requirements.
EducationHigher EducationUniversities
Responsibilities
Under the supervision of the DFA, work with Compass staff to support the HIPAA compliance program for Compass cloud systems, including researching, justifying, and documenting compliance controls
Develop and update applicable system and compliance policies and procedures
Draft, update, and evaluate internal and external contracts and agreements, including but not limited to: memorandums of understandings (MOUs), business associate agreements (BAAs), statements of work (SOWs), or master service agreements (MSAs)
Coordinate processes for data request delivery with the Security and Compliance Committee including reviewing, editing, modifying, validating documentation to match Internal Review Board (IRB) documentation, and coordinate follow up between data owners, requestors/customers, data analysts, and Business Intelligence (BI) developers
Manage security and compliance activities, including vulnerability scans and penetration tests, analysis and risk justification of findings, and responding to incidents and issues
Provide security and compliance input and feedback to Compass management and engineers for technical designs and strategies in support of cloud technology, data warehouse, and infrastructure platforms
Analyze and document risk analysis and risk assessments for system, architecture designs, applications, or software for use within Health Data Compass (HDC)
Lead, investigate, and document security and privacy incidents, as needed, in accordance with Compass policies and procedures
Manage, coach, and mentor Compass Staff and students to develop professionally, while ensuring goals and performance expectations are met
Qualification
Required
Bachelor's degree in Security Administration, Information Systems, Information Security, Computer Science, Biological or Health Sciences, law or related field
At least three (3) years working within healthcare industry or federal health agency (e.g. hospital, federal government)
At least two (2) years' experience with privacy or compliance within regulated environments (e.g. federal government, HIPAA, FISMA, ITAR etc.)
Previous supervisory experience in a similar environment
Preferred
Masters or doctorate degree in security administration, information systems, information security, computer science, biological or health sciences, law, or related field
A Juris Doctor or Doctorate degree in security administration, information systems, information security, computer science, biological or health sciences, law, or related field
Experience with NIST 800-53, NIST 800-171 or ISO 27000 frameworks
Experience with DICOM - PACS deidentification and compliance
Benefits
Medical: Multiple plan options
Dental: Multiple plan options
Additional Insurance: Disability, Life, Vision
Retirement 401(a) Plan: Employer contributes 10% of your gross pay
Paid Time Off: Accruals over the year
Vacation Days: 22/year (maximum accrual 352 hours)
Sick Days: 15/year (unlimited maximum accrual)
Holiday Days: 10/year
Tuition Benefit: Employees have access to this benefit on all CU campuses
ECO Pass: Reduced rate RTD Bus and light rail service
Company
University of Colorado
University of Colorado offers higher education and serving as the catalysts in business, arts, health, and community growth.
H1B Sponsorship
University of Colorado has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (184)
2024 (124)
2023 (163)
2022 (115)
2021 (86)
2020 (95)
Funding
Current Stage
Late StageTotal Funding
$0.5MKey Investors
US Department of EnergyUS Department of Commerce, Economic Development Administation
2023-07-27Grant
2023-01-26Grant
2021-04-06Grant· $0.5M
Recent News
Bizjournals.com Feed (2025-11-12 15:43:17)
2026-01-23
Sports Business Journal
2025-12-28
Company data provided by crunchbase