{"21720553":{"jobPath":"/jobs/21720553/social-worker-outpatient-mental-health","source":"naylor","job":"21720553","jobTitle":"Social Worker- Outpatient Mental Health"},"21720696":{"jobPath":"/jobs/21720696/dental-hygienist","source":"naylor","job":"21720696","jobTitle":"Dental Hygienist"},"21719667":{"jobPath":"/jobs/21719667/physician-advisor-care-management-and-cdi","source":"naylor","job":"21719667","jobTitle":"Physician - Advisor (Care Management and CDI)"},"21719720":{"jobPath":"/jobs/21719720/patient-care-tech-ii","source":"naylor","job":"21719720","jobTitle":"Patient Care Tech II"},"21719400":{"jobPath":"/jobs/21719400/marriage-and-family-therapist-lmft","source":"naylor","job":"21719400","jobTitle":"Marriage and Family Therapist (LMFT)"},"21719924":{"jobPath":"/jobs/21719924/nuclear-med-technologist","source":"naylor","job":"21719924","jobTitle":"Nuclear Med Technologist"},"21719725":{"jobPath":"/jobs/21719725/lymphedema-occupational-therapist","source":"naylor","job":"21719725","jobTitle":"Lymphedema Occupational Therapist"},"21719922":{"jobPath":"/jobs/21719922/manager-clinic-operations-1","source":"naylor","job":"21719922","jobTitle":"Manager Clinic Operations 1"},"21719503":{"jobPath":"/jobs/21719503/certified-medical-assistant-i-per-diem-amg-oncology-head-and-neck-surgery-morristown-nj","source":"naylor","job":"21719503","jobTitle":"Certified Medical Assistant I, Per Diem, AMG Oncology-Head and Neck Surgery, Morristown, NJ"},"21719508":{"jobPath":"/jobs/21719508/mental-health-assistant-full-time-days-3-x-shifts-overlook-medical-center-nj","source":"naylor","job":"21719508","jobTitle":"Mental Health Assistant - Full Time, Days 3 x Shifts, Overlook Medical Center, NJ"},"21720808":{"jobPath":"/jobs/21720808/phlebotomist-mobile","source":"naylor","job":"21720808","jobTitle":"Phlebotomist Mobile"},"21720628":{"jobPath":"/jobs/21720628/occupational-therapist","source":"naylor","job":"21720628","jobTitle":"Occupational Therapist"},"21720569":{"jobPath":"/jobs/21720569/physician-director-oncology-and-chronic-disease-research","source":"naylor","job":"21720569","jobTitle":"Physician - Director - Oncology and Chronic Disease Research"},"21719696":{"jobPath":"/jobs/21719696/patient-care-tech-i","source":"naylor","job":"21719696","jobTitle":"Patient Care Tech I"},"21720500":{"jobPath":"/jobs/21720500/physician-psychiatrist","source":"naylor","job":"21720500","jobTitle":"Physician- Psychiatrist"},"21720565":{"jobPath":"/jobs/21720565/social-worker-hud-vash","source":"naylor","job":"21720565","jobTitle":"Social Worker (HUD-VASH)"},"21720488":{"jobPath":"/jobs/21720488/registered-nurse-emergency-department","source":"naylor","job":"21720488","jobTitle":"Registered Nurse (Emergency Department)"},"21719655":{"jobPath":"/jobs/21719655/supervisor-maintenance-plant-ops-other-full-time","source":"naylor","job":"21719655","jobTitle":"Supervisor Maintenance-Plant Ops Other-Full Time"},"21719512":{"jobPath":"/jobs/21719512/certified-medical-assistant-i-full-time-days-amg-blair-medical-associates-morristown-nj","source":"naylor","job":"21719512","jobTitle":"Certified Medical Assistant I- Full Time, Days, AMG Blair, Medical Associates Morristown NJ"},"21719774":{"jobPath":"/jobs/21719774/certified-nursing-assistant-pcu","source":"naylor","job":"21719774","jobTitle":"Certified Nursing Assistant PCU"},"21719796":{"jobPath":"/jobs/21719796/respiratory-therapist-seasonal-prn-nights-ocala","source":"naylor","job":"21719796","jobTitle":"Respiratory Therapist Seasonal PRN Nights Ocala"},"21719614":{"jobPath":"/jobs/21719614/nuclear-medicine-technologist-radiology-op-part-time","source":"naylor","job":"21719614","jobTitle":"Nuclear Medicine Technologist-Radiology OP-Part Time"},"21720758":{"jobPath":"/jobs/21720758/staff-cardiologist-general","source":"naylor","job":"21720758","jobTitle":"Staff Cardiologist (General)"},"21720639":{"jobPath":"/jobs/21720639/social-worker-program-coordinator","source":"naylor","job":"21720639","jobTitle":"Social Worker (Program Coordinator)"},"21719593":{"jobPath":"/jobs/21719593/patient-access-representative-admitting-part-time","source":"naylor","job":"21719593","jobTitle":"Patient Access Representative-Admitting-Part Time"}}
The Director of Healthcare Governance, Risk, and Compliance, reporting to the CISO, is responsible for developing, implementing, and overseeing comprehensive governance, risk management, and compliance programs within a healthcare organization. This includes establishing and maintaining frameworks that ensure adherence to federal, state, and local laws, regulations, and industry standards (e.g., HIPAA, HITECH). The director will work across different departments to integrate GRC principles into all areas of the organization, fostering a culture of patient safety, data privacy, and ethical conduct.
Key Responsibilities
- Developing and maintaining the organization's GRC framework, including policies, standards, and procedures for risk management, compliance, and information security. (e.g., NIST CSF, HITRUST). - Providing guidance and leadership to ensure that business objectives are met within the established governance framework. - Leading the identification, assessment, and mitigation of enterprise-wide risks, including operational, financial, reputational, legal, cybersecurity, and patient safety risks. - Developing and implementing risk assessment methodologies, mitigation strategies, and action plans. - Maintaining and reporting on the organization's risk register, tracking remediation activities, and providing insights to leadership. - Conducting vendor risk assessments and ensuring third-party compliance with security and privacy standards. - Ensuring compliance with all applicable healthcare laws, regulations, and industry standards (e.g., HIPAA, HITECH, NIST). - Developing and delivering compliance training programs to staff and leadership to promote awareness and adherence to ethical standards. - Overseeing internal and external audits, coordinating responses, and managing remediation efforts. - Staying current on evolving regulatory environments, security threats, and compliance best practices, and updating policies and procedures accordingly. - Collaborating with quality and safety teams to integrate GRC into patient care delivery, focusing on preventing avoidable harm and improving patient outcomes. - Supporting the development and implementation of patient safety initiatives.
Preferred Qualifications
- Bachelor's degree in a relevant field such as Healthcare Administration, Information Security, Law, Business Administration, or a related field. - Minimum of 5-10 years of experience in healthcare privacy, risk management, or compliance roles, with a focus on information security, privacy, and regulatory compliance. - CISSP, CISM, or equivalent certifications preferred. - In-depth knowledge of healthcare regulations and frameworks (e.g., HIPAA, NIST). - Experience conducting audits, risk assessments, and regulatory reporting in a healthcare environment.
Leadership Experience
- Proven experience leading complex consulting engagements, including CIO/CISO engagements-driving all phases of the client engagement lifecycle (project kickoff, interviews, document reviews, analysis, deliverable creation, executive briefing, and closeout). - Strong leadership and program management skills; able to interface with client leadership teams and provide direction to internal, client, and vendor teams. - Strong communication skills, including the ability to lead executive-level deliverable presentations and briefings. - Develop high-quality deliverables, such as reports, presentations, policies, procedures, and architectural diagrams.
Technical & Domain Expertise
- In-depth knowledge of cybersecurity frameworks (e.g., NIST CSF, ISO 27001, COBIT). - Strong understanding of network protocols, operating systems, cloud platforms (Azure, GCP), and security technologies (SIEM, EDR, firewalls, WAFs). - Expertise in one or more of the following cybersecurity domains (or related): Cyber Risk Management, Incident Response, Data Protection, OT Security, Vulnerability Management, Identity and Access Management, Cyber Resilience. - Experience with risk management methodologies and tools. - Familiarity with regulatory compliance standards (e.g., GDPR, HIPAA, PCI DSS, SOC 2)
Minimum Requirements
- Bachelor?s Degree or 4 years of work experience above the minimum qualification - 5 years of experience
Baylor Scott & White Health (BSWH) is the largest not-for-profit health care system in Texas and one of the largest in the United States. With a commitment to and a track record of innovation, collaboration, integrity and compassion for the patient, BSWH stands to be one of the nation’s exemplary health care organizations. Our mission is to serve all people by providing personalized health and wellness through exemplary care, education and research as a Christian ministry of healing. Joining our team is not just accepting a job, it’s accepting a calling!