University of Colorado Anschutz Medical Campus Jobs

University of Colorado Anschutz Medical Campus

Applications Close:

13001 E 17th Pl, Aurora, CO 80045, USA

5 Star Employer Ranking

"Security and Compliance Manager"

Academic Connect
Applications Close

Security and Compliance Manager

Security and Compliance Manager

University of Colorado Anschutz Medical Campus

Department: Health Data Compass

Job Title: Security and Compliance Manager

Position #: 00798345 - Requisition #: 37537

Job Summary:

The Security and Compliance Manager plays a critical role in safeguarding Compass's operations and cloud-based solutions. This position is responsible for reviewing and managing agreements and contracts, developing and maintaining internal policies and procedures, and coordinating efforts to ensure compliance with all applicable state and federal regulations. The manager will lead activities to support HIPAA compliance and alignment with NIST 800 standards, ensuring our systems remain secure and audit-ready. Core responsibilities include evaluating internal and external agreements, creating and maintaining compliance documentation, and overseeing program activities to verify that Compass's technology and services meet rigorous regulatory and security requirements.

Key Responsibilities:

Business & Research Compliance (35%):

  • Under the supervision of the DFA, work with Compass staff to support the HIPAA compliance program for Compass cloud systems, including researching, justifying, and documenting compliance controls.
  • Develop and update applicable system and compliance policies and procedures.
  • Draft, update, and evaluate internal and external contracts and agreements, including but not limited to: memorandums of understandings (MOUs), business associate agreements (BAAs), statements of work (SOWs), or master service agreements (MSAs).
  • Coordinate processes for data request delivery with the Security and Compliance Committee including reviewing, editing, modifying, validating documentation to match Internal Review Board (IRB) documentation, and coordinate follow up between data owners, requestors/customers, data analysts, and Business Intelligence (BI) developers.

Health Data Compass Technology (40%):

  • Manage security and compliance activities, including vulnerability scans and penetration tests, analysis and risk justification of findings, and responding to incidents and issues.
  • Provide security and compliance input and feedback to Compass management and engineers for technical designs and strategies in support of cloud technology, data warehouse, and infrastructure platforms.
  • Analyze and document risk analysis and risk assessments for system, architecture designs, applications, or software for use within Health Data Compass (HDC).
  • Lead, investigate, and document security and privacy incidents, as needed, in accordance with Compass policies and procedures.

Administration (25%):

  • Manage, coach, and mentor Compass Staff and students to develop professionally, while ensuring goals and performance expectations are met.

This description is a summary only and describes the general level of work being performed, it is not intended to be all-inclusive. The duties of this position may change from time to time and/or based on business need. We reserve the right to add or delete duties and responsibilities at the discretion of the supervisor and/or hiring authority.

Work Location:
Hybrid - This role is eligible for a hybrid schedule of 3 days per week on campus and as needed for in-person meetings.

Why Join Us:

Health Data Compass (Compass) serves as the technology innovation hub for the Office of the Vice Chancellor for Health Affairs at CU Anschutz. Our team manages a Google Cloud-based data integration and analytics platform that powers clinical and translational research across the Anschutz Medical Campus. By providing secure, scalable data solutions, Compass enables researchers and clinicians to advance discoveries that improve patient care and outcomes.

Qualifications:

Minimum Qualifications:

  • Bachelor's degree in Security Administration, Information Systems, Information Security, Computer Science, Biological or Health Sciences, law or related field.
  • At least three (3) years working within healthcare industry or federal health agency (e.g. hospital, federal government).
  • At least two (2) years' experience with privacy or compliance within regulated environments (e.g. federal government, HIPAA, FISMA, ITAR etc.).
  • Previous supervisory experience in a similar environment.

Applicants must meet minimum qualifications at the time of hire.

Preferred Qualifications:

  • Masters or doctorate degree in security administration, information systems, information security, computer science, biological or health sciences, law, or related field.
  • A Juris Doctor or Doctorate degree in security administration, information systems, information security, computer science, biological or health sciences, law, or related field.
  • Experience with NIST 800-53, NIST 800-171 or ISO 27000 frameworks.
  • Experience with DICOM - PACS deidentification and compliance

Knowledge, Skills and Abilities:

  • Strong interpersonal and excellent written and verbal communication skills.
  • Organized, with strong attention to detail.
  • Ability to handle multiple simultaneous tasks and effectively.
  • Able to work independently, self-starter.
  • Ability to communicate effectively, both in writing and orally.
  • Ability to establish and maintain effective working relationships with employees at all levels throughout the institution.
  • Demonstrated commitment and leadership ability to advance diversity and inclusion.
  • Attention to detail and accuracy, with strong analytical and critical thinking skills.
  • Demonstrated effectiveness in a complex organizational environment

How to Apply:

For full consideration, please submit the following document(s):

  1. A letter of interest describing relevant job experiences as they relate to listed job qualifications and interest in the position
  2. Curriculum vitae / Resume
  3. Three to five professional references, including name, address, phone number (mobile number if appropriate), and email address

Questions should be directed to: Kelli Beightler, KELLI.BEIGHTLER@CUANSCHUTZ.EDU

Screening of Applications Begins:
Immediately and continues until position is filled.

Anticipated Pay Range:
The starting salary range (or hiring range) for this position has been established as HIRING RANGE $85,000-$105,000.

To apply, visit this link

10

Whoops! This job is not yet sponsored…

I own this job - Please upgrade it to a full listing

Or, view more options below

View full job details

See the complete job description, requirements, and application process

Stay on their radar

Join the talent pool for University of Colorado Anschutz Medical Campus

Join Talent Pool

Express interest in this position

Let University of Colorado Anschutz Medical Campus know you're interested in Security and Compliance Manager

Add this Job Post to FavoritesExpress Interest

Get similar job alerts

Receive notifications when similar positions become available

Share this opportunity

Send this job to colleagues or friends who might be interested

233 Jobs Found

University of Colorado Anschutz Medical Campus

13001 E 17th Pl, Aurora, CO 80045, USA
Staff / Administration
Add this Job Post to Favorites
Closes: Feb 23, 2026
View More