CybersecurityJobs.io
← Back to all jobs

Job Description

The Virginia Department of Health (VDH) is seeking an EHR Security Analyst and Technical Support Analyst to support EHR security, access management, and end user assistance for the enterprise EHR environment. This role is onsite in Richmond, VA and includes tier 1 support along with configuration, provisioning, and security monitoring responsibilities for Cerner-based security controls.

Location

  • Richmond, VA (onsite)

Role Focus

This position supports the security, access, and user provisioning requirements of the EHR environment, including technical and functional support for EHR security configuration. Responsibilities include managing security roles, authentication, auditing, and access-related troubleshooting, including Cerner EHR security.

Key Responsibilities

  • Map and maintain EHR position definitions, including Millenium Positions, Preferences, and OHPAC Security groups in alignment with VDH Positions.
  • Review and process EHR access requests according to established policies, procedures, organizational standards, and role-based access requirements.
  • Create, modify, and terminate user access based on approved requests and established processes.
  • Monitor and enforce appropriate use of EHR access control positions and policies to ensure users receive the correct access level for their roles and job functions.
  • Coordinate with the EHR Security Officer, IT Technical team, Support Team, and EHR Core team to define and automate user provisioning and offboarding procedures.
  • Monitor and conduct internal security audits of the EHR application to identify and mitigate risks and vulnerabilities.
  • Partner with the EHR Security Officer to develop and maintain security policies, procedures, and guidelines for the application.
  • Work with the EHR Security Officer, ISO Office, and EHR Core team to define and complete security documentation and downtime procedures following VDH Security guidelines.
  • Respond to and investigate security incidents related to the EHR application, ensuring timely resolution and proper stakeholder reporting.
  • Collaborate with EHR implementation and optimization teams to ensure security measures are integrated into deployments for new features, updates, and third-party applications.
  • Stay current on emerging EHR security threats, technologies, and best practices, and recommend security environment improvements based on industry trends.
  • Monitor user behavior using tools such as P2Sentinel to identify trends and possible incidents.
  • Assist with internal and external audits with the EHR Security Officer and EHR Core team.
  • Participate in Cerner and OHPAC upgrades, security patches, and system maintenance to support ongoing security.
  • Participate in the Domain Strategy for the EHR application.
  • Keep up to date on security updates, best practices, and regulatory changes.

Required Experience

  • Three plus years of IT experience.
  • Three plus years of healthcare IT experience.
  • Strong understanding of Millenium and OHPAC security positions.
  • Strong understanding of EHR systems.
  • Understanding of HIPAA, HITECH, meaningful use, and other healthcare security regulations.
  • Experience with Active Directory (AD), single sign-on (SSO), multi-factor authentication (MFA), and identity management solutions.
  • Strong analytical, problem-solving, and troubleshooting skills for Cerner/OHPAC security and access issues.
  • Excellent communication and collaboration skills with IT teams, compliance officers, and end users.
  • Familiarity with healthcare IT infrastructure, including networking, firewalls, and database security.
  • Knowledge of Discern and ccl.

Technologies

  • Cerner
  • OHPAC
  • Millenium
  • Millenium Positions
  • OHPAC Security groups
  • P2Sentinel
  • Active Directory (AD)
  • Single sign-on (SSO)
  • Multi-factor authentication (MFA)
  • Identity management solutions
  • Discern
  • ccl

Minimum Experience

  • 3 years minimum experience

Similar Jobs