Enterprise Engagement Lead Analyst
Core
Translates complex regulatory, legislative, and contractual requirements into actionable risk-informed analysis and advisory-ready outputs for Enterprise Privacy & Security Risk Management.
Role type
Second Line of Defense (2LoD) Enterprise Engagement Lead Analyst
Builds
Executive-ready insights, requirement inventories, mappings, traceability artifacts, and risk analyses
Domain
Healthcare regulatory compliance, privacy, security, and AI governance
Deliverable
dashboards & analysis
Required skills
Analyzing regulatory/legislative/contractual requirements, impact assessments, regulatory change management, developing playbooks/SOPs, executive communication, influencing cross-functional stakeholders
Preferred skills
Healthcare regulatory frameworks (CMS, HIPAA, Medicaid), security/privacy control frameworks (NIST, ISO 27001), risk-informed decision-making in 2LoD models
Technologies
NIST 800-53, ISO 27001, CMS/MARSE/ARC-AMPE, NCQA
Responsibilities
Review and interpret contracts/laws/regulations to determine obligations, translate requirements into structured enforceable obligations, perform impact assessments for new requirements, deliver risk-informed insights and updates, develop executive-ready outputs, support development of playbooks and SOPs
Seniority
Senior, hands-on IC with advisory capacity