HIPAA Security Rule Analyst
Xtreme Solutions Inc · San Bernardino, CA · 3 wk ago
On-siteInformation TechnologyContract
About the role
Evaluates County Fire and HCC Department compliance with HIPAA Security Rule Administrative (164.308), Physical (164.310), and Technical (164.312) Safeguards.
Responsibilities
- Review IT administrative policies, governance structures, and security roles/job descriptions for compliance gaps.
- Evaluate physical safeguards — buildings, equipment, intake areas — against 164.310 requirements.
- Review technical safeguards including access provisioning, mobile/remote access controls, and third-party data protections.
- Document control gaps at the IT-unit or County-wide level, as applicable.
Requirements
- 4+ years of HIPAA Security Rule compliance or healthcare IT security experience.
- Strong knowledge of 45 CFR 164.308/.310/.312 and NIST SP 800-53 mapping.
Qualifications
- CHPS (Certified in Healthcare Privacy and Security) or HCISPP certification (preferred).
Schedule
Onsite for physical/technical safeguard verification at Arrowhead Regional Medical Center (Colton), County Fire (San Bernardino), and administrative offices in San Bernardino and Colton; remote for policy review and reporting.