Compliance HIPAA Privacy Analyst
Listed on 2026-02-01
-
Healthcare
Healthcare Administration, Healthcare Compliance
Get AI‑powered advice on this job and more exclusive features.
Are you looking for a purpose‑driven career? At Metrocare, we serve our neighbors with developmental or mental health challenges by helping them find lives that are meaningful and satisfying.
Metrocare is the largest provider of mental health services in North Texas, serving over 55,000 adults and children annually. For over 50 years, Metrocare has provided a broad array of services to people with mental health challenges and developmental disabilities. In addition to behavioral health care, Metrocare provides primary care centers for adults and children, services for veterans and their families, accessible pharmacies, housing, and supportive social services.
Alongside clinical care, researchers and teachers from Metrocare’s Altshuler Center for Education & Research are advancing mental health beyond Dallas County while providing a critical workforce to the state.
The HIPAA Privacy Analyst operates under the general supervision of the Privacy Program Manager and assists in the implementation and management of ongoing activities related to Metrocare’s privacy compliance program. The analyst applies professional judgment and decision‑making skills regarding applicable federal and state healthcare laws, rules, and regulations. Responsibilities include supporting the organization’s privacy compliance program in accordance with HIPAA and other applicable state and federal regulations, ensuring adherence to privacy policies and procedures through audits, investigations, training, and ongoing monitoring, and leading breach notification protocols.
Familiarity with the MyAvatar Electronic Medical Records System is essential.
- Auditing and Monitoring:
- Conduct regular and targeted audits of medical records, focusing on privacy compliance, including use and disclosure of PHI.
- Conduct site assessments monitoring activities related to privacy.
- Work collaboratively with department stakeholders for operational needs and compliance with local, state, and federal regulations.
- Utilize MyAvatar to monitor access and activity logs, identify potential unauthorized access, and ensure proper documentation.
- Prepare and present audit findings to leadership, including recommendations for corrective action.
- Investigations:
- Investigate complaints and potential breaches of patient privacy, including inappropriate access or disclosure of PHI.
- Document findings and support the breach determination process, including risk assessments and breach notification decisions.
- Training and
Education:- Develop and present HIPAA and privacy training for newly hired employees and annual refresher training for all staff.
- Customize training modules based on audit findings and regulatory changes.
- Provide targeted education sessions following policy violations or compliance gaps.
- Compliance Program Support:
- Lead or assist in organizing Compliance and Ethics Week events and educational activities.
- Review and update privacy policies and procedures to ensure ongoing compliance with regulatory requirements.
- Maintain awareness of updates to HIPAA and other relevant privacy regulations and ensure implementation of necessary changes.
- Breach Notification and Policy Enforcement:
- Assist in coordinating timely and compliant breach notifications to affected individuals, regulatory bodies, and business partners.
- Maintain breach logs and assist in preparing reports for internal leadership and external agencies as required.
- Performs other duties as assigned.
- Conduct job responsibilities in accordance with ethical standards of conduct, state contract, appropriate professional standards, and applicable state/federal laws.
- Analytical skills, professional acumen, business ethics, thorough understanding of continuous improvement processes, problem solving, respect for confidentiality, and excellent communication skills.
- Familiarity with healthcare laws, regulations, and standards is a plus.
- In‑depth knowledge of HIPAA Privacy and Security Rules, and breach notification requirements.
- Experience using MyAvatar EMR system.
- Strong analytical skills with experience…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).