Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Senior IT Audit Analyst image - Rise Careers
Job details

Senior IT Audit Analyst

Company :

Highmark Health

Job Description : 

JOB SUMMARY

This job establishes and cultivates relationships with assigned areas related to information technology, security, system implementations, and data privacy, to assist in the development of the annual Internal Audit plan and the planning and execution of audit activities to determine whether Highmark Health and its subsidiaries' network of risk management, control, and governance processes, as designed and operated by management, are adequate and functioning.  Executes to ensure the IT Assurance and Advisory programs aligned with the overall Internal Audit strategy.  Assesses whether the processes and controls provide reasonable assurance that information technology and security risks are identified and managed, and that significant financial, operational, and protected information is secure, accurate, reliable, and processed timely. Determines and recommends improvements in the implementation of business process and systems changes and project management controls. Prepares reports for management summarizing the results of the audit and/or project, including providing recommendations on improvement opportunities. Interfaces and assists the independent auditors during external audit assessments, where necessary.  Must comply with the Health Insurance Portability Accountability Act of 1996 (HIPAA) as it pertains to disclosures of protected health information (PHI) as described in the Notice of Privacy Practices and Privacy Policies and Procedures. As a component of job roles and responsibilities, employees in this role may have access to covered information, cardholder data, or other confidential customer information which must be protected at all times.  In connection with this responsibility, employees in this role must adhere to all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy.

ESSENTIAL RESPONSIBILITIES

  • Facilitates the planning and execution of  information technology, security, system implementations, and data privacy audit activities across the Highmark Health enterprise, while maintaining independence and adhering to professional industry standards.
  • Creates a positive working environment through the building of solid relationships with team members. Assist with workloads of all team members; adjustment and redistribution of assignments accordingly to promote quality, team capabilities, and  meeting client expectations.
  • Assist in the establishment appropriate budgets and time frames to close-out and finalize audits / projects, including the identification and assessment of issues, development of audit reports, and review of supporting documentation and workpapers in accordance with Departmental standards.
  • Identify and assess the organization’s key information technology, security, and data privacy risk areas; assist the IA management team by contributing to the development of the annual internal audit plan. 
  • Manage and mentor other internal audit resources through the execution of their work, providing constructive feedback and assistance.
  • Provide technical and operational assistance to functional business areas in development, refinement, and documentation of IT controls, leveraging data analytics to faciliate effective and efficient audit work.
  • Serve as departmental IT subject matter expert and enhance internal knowledge of IT controls and IT auditing concepts
  • Other duties as assigned or requested.

EDUCATION

Required

  • Bachelor's Degree in Accounting, Finance, Business Administration, Information Technology, Computer Science, or related field, or relevant experience and/or education as determined by the company in lieu of bachelor's degree.

Preferred

  • Master’s Degree in Accounting, Finance, Business Administration, Information Technology, Computer Science or related field

EXPERIENCE

Required

  • 5 years in Information Systems auditing OR

  • 5 years in auditing and an Information Systems related discipline, such as Information Security, Change Management, Systems Development, etc

Preferred

  • Familiarity with a wide variety of computer application platforms, including but not limited to: Oracle, SQL Server, DB2, RACF, Linux, and Windows.
  • Cybersecurity/ IT risk assurance expertise
  • Experience with Archer Governance, Risk, and Compliance (GRC) suite of products

LICENSES OR CERTIFICATIONS

Required

  • None

Preferred

  • Certified Information System Audit (CISA)
  • Certified Internal Audit (CIA)
  • Certified Public Accountant (CPA)

SKILLS

  • Knowledge of internal audit functions, particularly as applied to information technology and data security
  • Ability to apply auditing (GAAS), accounting  (GAAP) and/or IS industry standards to the evaluation of systems environments and processes (i.e., data center operations, information security, input, output and processing controls, back-up and recovery, business contingency planning, systems development, and the implementation of advanced technologies)
  • Effective resource and project planning, decision making, results delivery, team building, and staying current with relevant technology and innovation
  • Oral and written communication skills when interfacing and collaborating with clients, peers, and management to develop solutions, emphasizing a client-based focus to understand and respond appropriately to business requirements
  • Strong relationship building skills
  • Self-starter with the ability to work under pressure independently and as part of a team
  • Ability to think strategically and act proactively to create strong trust and confidence with business units
  • Ability to interact, build credibility and long-term relationships with senior management to understand the company’s culture, strategic direction, and goals.
  • Ability to manage multiple projects, meet deadlines while ensuring quality and exceeding client expectations. ​

Language (Other than English):

None

Travel Requirement:

0% - 25%

PHYSICAL, MENTAL DEMANDS and WORKING CONDITIONS

Position Type

Office-based

Teaches / trains others regularly

Frequently

Travel regularly from the office to various work sites or from site-to-site

Rarely

Works primarily out-of-the office selling products/services (sales employees)

Never

Physical work site required

No

Lifting: up to 10 pounds

Constantly

Lifting: 10 to 25 pounds

Occasionally

Lifting: 25 to 50 pounds

Rarely

Disclaimer: The job description has been designed to indicate the general nature and essential duties and responsibilities of work performed by employees within this job title. It may not contain a comprehensive inventory of all duties, responsibilities, and qualifications required of employees to do this job.

Compliance Requirement: This job adheres to the ethical and legal standards and behavioral expectations as set forth in the code of business conduct and company policies.


As a component of job responsibilities, employees may have access to covered information, cardholder data, or other confidential customer information that must be protected at all times.  In connection with this, all employees must comply with both the Health Insurance Portability Accountability Act of 1996 (HIPAA) as described in the Notice of Privacy Practices and Privacy Policies and Procedures as well as all data security guidelines established within the Company’s Handbook of Privacy Policies and Practices and Information Security Policy. 

Furthermore, it is every employee’s responsibility to comply with the company’s Code of Business Conduct. This includes but is not limited to adherence to applicable federal and state laws, rules, and regulations as well as company policies and training requirements.

Pay Range Minimum:

$67,500.00

Pay Range Maximum:

$126,000.00

Base pay is determined by a variety of factors including a candidate’s qualifications, experience, and expected contributions, as well as internal peer equity, market, and business considerations.  The displayed salary range does not reflect any geographic differential Highmark may apply for certain locations based upon comparative markets.

Highmark Health and its affiliates prohibit discrimination against qualified individuals based on their status as protected veterans or individuals with disabilities and prohibit discrimination against all individuals based on any category protected by applicable federal, state, or local law.

We endeavor to make this site accessible to any and all users. If you would like to contact us regarding the accessibility of our website or need assistance completing the application process, please contact the email below.

For accommodation requests, please contact HR Services Online at HRServices@highmarkhealth.org

California Consumer Privacy Act Employees, Contractors, and Applicants Notice

Average salary estimate

$96750 / YEARLY (est.)
min
max
$67500K
$126000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Senior IT Audit Analyst, Highmark Health

Welcome to Highmark Health! We’re excited to share that we are on the lookout for a talented Senior IT Audit Analyst to join our team, working from the comfort of your home in Pennsylvania. This role is crucial as it involves establishing and nurturing relationships across various areas related to technology, security, and data privacy. Your expertise will help shape our annual Internal Audit plan and oversee audit activities that assess the effectiveness of our risk management and governance processes. You will be diving deep into assessing whether our IT controls provide reassurance that our systems are secure, accurate, and functioning as intended. Your analytical skills will be crucial in recommending improvements and preparing insightful reports for management. As a mentor, you’ll also guide other auditors, sharing your knowledge of advanced technologies and audit practices. The ideal candidate will have at least five years of experience in Information Systems auditing or related fields, with a strong educational background, preferably including a Master’s degree. We value teamwork, communication, and the ability to foster a collaborative environment, so if you’re someone who loves building relationships and thriving in a dynamic environment, this position is for you. Come join Highmark Health and be an essential part of our mission to improve health care delivery.

Frequently Asked Questions (FAQs) for Senior IT Audit Analyst Role at Highmark Health
What are the key responsibilities of a Senior IT Audit Analyst at Highmark Health?

The Senior IT Audit Analyst at Highmark Health is responsible for planning and executing IT, security, and data privacy audits. Key responsibilities include executing the Internal Audit strategy, assessing controls and processes, recommending improvements, and preparing management reports. Additionally, this role involves managing and mentoring audit staff and maintaining relationships with both internal and external stakeholders.

Join Rise to see the full answer
What qualifications are needed for the Senior IT Audit Analyst position at Highmark Health?

To qualify for the Senior IT Audit Analyst role at Highmark Health, candidates typically need a Bachelor's Degree in a relevant field such as Accounting, IT, or Computer Science, along with at least five years of experience in Information Systems auditing or related disciplines. Preferred qualifications include a Master’s degree and certifications like CISA or CPA, which can enhance one's knowledge and credibility in the field.

Join Rise to see the full answer
How does the Senior IT Audit Analyst contribute to risk management at Highmark Health?

The Senior IT Audit Analyst plays a vital role in risk management at Highmark Health by identifying IT and data privacy risks, assessing their impact, and developing strategies to mitigate those risks. This position involves working closely with different teams to ensure all processes comply with organizational standards and regulations, thus contributing to a robust risk management framework across the enterprise.

Join Rise to see the full answer
What skills are essential for a Senior IT Audit Analyst at Highmark Health?

Essential skills for a Senior IT Audit Analyst at Highmark Health include strong knowledge of internal auditing and IT controls, excellent communication and interpersonal skills, and the ability to think strategically. Proficiency in auditing standards and experience with various technology platforms are also important. Additionally, strong project management skills and the ability to mentor others are key to success in this role.

Join Rise to see the full answer
What is the work environment like for the Senior IT Audit Analyst at Highmark Health?

The work environment for a Senior IT Audit Analyst at Highmark Health is primarily remote, allowing for flexibility while maintaining strong collaboration with team members and various departments. This role requires independence, decision-making abilities, and a proactive approach to building relationships and delivering results effectively. A commitment to a positive team culture is highly valued.

Join Rise to see the full answer
Common Interview Questions for Senior IT Audit Analyst
Can you explain your experience with IT auditing?

In answering this question, detail your specific roles in previous audits, any particular methodologies you've applied, and the outcomes of your audit activities. Highlight particular projects where you identified risks, implemented controls, or made significant recommendations that improved processes.

Join Rise to see the full answer
What auditing standards do you apply in your work?

When discussing auditing standards, mention GAAS or GAAP and provide examples of how you've applied these standards in previous roles. Demonstrating knowledge of relevant regulations and your ability to adhere to them shows your professionalism and commitment to compliance.

Join Rise to see the full answer
How do you prioritize tasks when managing multiple audits?

You can structure your response by discussing how you evaluate the risk and impact of each audit, set deadlines, and use project management tools. Emphasize your ability to adapt and re-prioritize as needed while maintaining quality and meeting client expectations.

Join Rise to see the full answer
How do you keep up with industry trends and changes in regulations?

Illustrate your commitment to continuous learning through professional development resources, attending webinars, or participating in professional audit associations. Showing that you actively seek out information indicates your dedication to staying informed and enhancing your expertise.

Join Rise to see the full answer
Can you provide an example of a significant risk you identified in a past audit?

Be ready with a specific example that highlights your analytical skills. Explain the context, your assessment process, what actions were taken as a result, and the positive changes that followed. This demonstrates both your problem-solving skills and your proactive approach to risk management.

Join Rise to see the full answer
What tools do you use for data analysis in audits?

Mention specific data analytics tools like ACL, IDEA, or Excel, and describe how you've leveraged them to enhance your audit effectiveness, uncover insights, or use data effectively during your audit processes.

Join Rise to see the full answer
How do you handle conflict within your audit team?

Discuss your interpersonal skills and conflict-resolution strategies. Explain how you address conflicts constructively—such as facilitating open discussions or collaborating on solutions—demonstrating your ability to maintain a positive team dynamic and effective communication.

Join Rise to see the full answer
What role does communication play in your auditing process?

Highlight the importance of communication in keeping stakeholders informed, managing expectations, and collaborating with your team. Your answer should reflect how you ensure clarity in documentation and reporting, as well as how you effectively convey complex technical issues.

Join Rise to see the full answer
Describe a time when you had to adapt your audit approach to changing circumstances.

Provide a detailed example where you faced unexpected challenges during an audit, how you reassessed your strategies, and the adjustments you made to remain on track. This shows your flexibility and ability to adapt in dynamic environments.

Join Rise to see the full answer
What do you think is the biggest challenge facing IT auditors today?

Share your perspective on current challenges such as cybersecurity threats, regulatory changes, or the rapid advancement of technology. Discuss how being proactive and staying informed can help address these challenges, showcasing your awareness of the broader industry context.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
Highmark Health Remote PA, Working at Home - Pennsylvania
Posted 13 days ago

Join enGen as a Lead Software Engineer and lead the development of innovative software applications within a dynamic team environment.

Photo of the Rise User
Highmark Health Hybrid Pittsburgh PA, 15222, PAP, Penn Avenue Place
Posted 13 days ago

Looking for a strategic Lead Financial Analyst to deliver actionable financial insights and lead reporting initiatives at enGen.

Photo of the Rise User
Posted 11 days ago

We are looking for a proactive Security Engineer (DevSecOps) to drive security initiatives in a dynamic, cloud-native environment.

Photo of the Rise User
Devsinc Remote No location specified
Posted 12 days ago

Devsinc seeks a talented DBA Specialist to manage and optimize our database systems while ensuring high performance and security.

Photo of the Rise User
Posted 6 days ago

Become an integral part of McLane Global as a Microsoft D365 F&O Functional Developer, focusing on designing and optimizing technical solutions to meet business needs.

Kentro Remote No location specified
Posted 10 days ago

Kentro is looking for an experienced Sr. System Administrator to advance their mission and support IT operations for the VA.

Photo of the Rise User

Join Peraton as a Red Team Penetration Tester and play a crucial role in enhancing cybersecurity for the U.S. military.

Photo of the Rise User
CAI Hybrid United States
Posted 13 days ago

We are seeking a Senior SAP Analyst to help our clients maximize their SAP investment and enhance system efficiency.

Photo of the Rise User
Posted 4 days ago

Join Visa as an Associate Cybersecurity Analyst and contribute to their mission of providing secure and reliable payment solutions globally.

Photo of the Rise User

Looking for a Global Physical Security Specialist to join Cloudflare’s mission of building a better Internet through innovative security solutions.

To create a remarkable health experience, freeing people to be their best.

157 jobs
MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Full-time, remote
DATE POSTED
April 9, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
Someone from OH, Columbus just viewed Scrum Master at Sysco Costa Rica
Photo of the Rise User
54 people applied to Cybersecurity Intern at Dewberry
X
Someone from OH, Cincinnati just viewed Senior Java Engineer (Remote) at Xenon7
Photo of the Rise User
Someone from OH, Cincinnati just viewed Senior, Software Engineer- Java at Walmart
Photo of the Rise User
Someone from OH, Cincinnati just viewed Java, Javascript, Python, NodeJS Software Engineer at Walmart
Photo of the Rise User
6 people applied to Security Analyst at ANS
Photo of the Rise User
52 people applied to Security Analyst Jr at DEUNA
Photo of the Rise User
Someone from OH, Pickerington just viewed Senior Business Analyst (Salesforce) at Protolabs
H
Someone from OH, Akron just viewed Brand Marketing Manager at Huntington
R
Someone from OH, Hamilton just viewed Forklift Operator Warehouse at Ryder
Photo of the Rise User
Someone from OH, Cincinnati just viewed Ad Ops Specialist, Display at System1
Photo of the Rise User
Someone from OH, Cincinnati just viewed FQHC Billing & Collections Manager at OhioGuidestone
Photo of the Rise User
Someone from OH, Cleveland just viewed Enrollment Specialist- Remote at Adtalem Global Education
o
Someone from OH, Dayton just viewed Marketing and Communications Specialist at osu
Photo of the Rise User
Someone from OH, Columbus just viewed Construction Coordinator at Meijer
Photo of the Rise User
Someone from OH, Steubenville just viewed Legal & Compliance Internship at Smiths Group
Photo of the Rise User
Someone from OH, Warren just viewed Senior Front-End Developer at Worldly
Photo of the Rise User
Someone from OH, Tiffin just viewed Game Operations Specialist at Genius Sports
u
Someone from OH, Loveland just viewed Customer Service Agent - Part Time at uhaul
Photo of the Rise User
Someone from OH, Cleveland just viewed HR Manager at Shearer's Foods
Photo of the Rise User
Someone from OH, Columbus just viewed Mid Level, System Administrator - (ETS) at Delivery Hero
Photo of the Rise User
Someone from OH, Mason just viewed Inside Sales Co-Op at VEGA Americas