Join a team dedicated to supporting the crucial mission of improving health outcomes.
At Merative, you can apply your skills and grow new ones with colleagues who have deep expertise in health and technology. Merative provides data, analytics and software for the health industry. Our clients include providers, health plans, employers, life sciences companies and governments around the world. With industry-leading products and focused innovation, we help customers improve decision-making and performance so that together, we drive real progress in health. Learn more at merative.com
The Operations Audit and Compliance team member is responsible for ongoing monitoring and testing activities over the in-scope environments and applications in support of Merative's Truven Health Insights SSAE-18 SOC 1 & 2 audits, HITRUST certification and other compliance requirements. This position is responsible for working within the Operations Audit and Compliance Team and with other internal departments to ensure the quality and timely execution this monitoring/testing and communicating issues and exceptions to management and relevant stakeholders. These results will be relied upon by management and the external auditor for decision-making and attestations.
Position Summary
- Participates in monitoring and testing activities relating to SSAE-18 SOC 1 & 2, and other audits such as HITRUST and client audits, ensuring work and deliverables are completed and retained in accordance with agreed upon timeframes and departmental procedures, standards, and protocols.
- Participates in meetings with OAC and other internal teams to discuss monitoring and/or audit scoping, testing progress and results. Meets with external audit teams as needed.
- Communicates appropriately with all team members and external audit team.
- Ensures department procedures and standards documentation is accurate and updated regularly.
- Uses application and technical knowledge to suggest and devise improved monitoring and testing of controls.
- Identifies areas for process improvements and automation, making recommendations within the team and to other control owners.
Required Technical And Professional Expertise
- Familiarity with IT infrastructure concepts including network architecture, Linux and Windows administration including Active Directory, Microsoft Azure security and identity management, and basic database concepts.
- Proven experience with MS Office Suite (i.e. Word, Excel, Access, PowerPoint), including comfort and skill with Excel formulas and vlookups and Access database query design and modification
- Demonstrated ability to manage multiple tasks simultaneously and complete work within allocated time frames including daily repetitive tasks with required completion time frames.
- Experience developing workflow processes and procedures and creating comprehensive documentation
- Demonstrated expertise in summarizing and communicating ideas and methods to a variety of audiences.
- Excellent problem-solving skills, team building abilities, and attention to detail.
Preferred Skills And Experience
- 1+ years of audit and compliance related experience
- Knowledge of SSAE-18 SOC 1 & 2 regulations with an emphasis on testing requirements, auditing in administrative services
- Experience with ServiceNow, SalesForce and Sailpoint IdentityNow
- Advanced knowledge of Microsoft Azure Identity and Access Management and security scores and monitoring
- Experience with Sumologic, including query definition and the contents and scope of application and server logs.
It is the policy of Merative to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, HIV status, or any other characteristic protected by federal, state or local law. In addition, Merative will provide reasonable accommodations for qualified individuals with disabilities.