1

Hipaa Ocr Jobs (NOW HIRING)

$150 - $200/hr

Position Summary The HIPAA Privacy Lead serves as the enterprise HIPAA Privacy SME for AHG's U.S ... OCR, state privacy law, FTC) and report program status to the CCO. Qualifications Required * 5+ ...

Direct the enterprise HIPAA Privacy & Security Program in partnership with the Chief Information Security Officer (Cyber Security), including breach risk assessments, OCR response, patient rights ...

New

Privacy Analyst

Montgomery, AL · On-site

$82K - $97K/yr

Participate in audits conducted by SSA, IRS, HHS, CMS, OCR, State Examiner's Board, and other oversight agencies. Knowledge, Skills & Abilities * Working knowledge of HIPAA Privacy Rule and Breach ...

... OCR, NLP, or predictive modeling to automation use cases. * Understanding healthcare RCM workflows (e.g., billing, coding, claims, denial management). * Knowledge of HIPAA and healthcare security ...

Software Engineer

Oak Brook, IL · On-site

$90K - $120K/yr

... OCR, NLP, or predictive modeling to automation use cases. * Understanding healthcare RCM workflows (e.g., billing, coding, claims, denial management). * Knowledge of HIPAA and healthcare security ...

... OCR, NLP, or predictive modeling to automation use cases. * Understanding healthcare RCM workflows (e.g., billing, coding, claims, denial management). * Knowledge of HIPAA and healthcare security ...

$80 - $100/hr

... OCR, NLP, or predictive modeling to automation use cases. * Understanding healthcare RCM workflows (e.g., billing, coding, claims, denial management). * Knowledge of HIPAA and healthcare security ...

next page

Showing results 1-20

Hipaa Ocr information

See salary details

$31K

$161.2K

$206K

How much do hipaa ocr jobs pay per year?

As of Sep 8, 2026, the average yearly pay for hipaa ocr in the United States is $161,189.00, according to ZipRecruiter salary data. Most workers in this role earn between $105,000.00 and $205,000.00 per year, depending on experience, location, and employer.

What is HIPAA OCR?

HIPAA OCR stands for the Office for Civil Rights within the U.S. Department of Health and Human Services (HHS), which is responsible for enforcing the Health Insurance Portability and Accountability Act (HIPAA) Privacy, Security, and Breach Notification Rules. The OCR investigates complaints, conducts compliance reviews, and provides education to ensure that individuals’ health information is properly protected. The office plays a vital role in safeguarding patient data and ensuring that healthcare organizations follow federal privacy standards.

What are some common challenges faced by professionals working in HIPAA OCR compliance roles?

Professionals in HIPAA OCR (Office for Civil Rights) compliance roles often face challenges such as staying updated with evolving federal regulations, interpreting complex privacy and security rules, and ensuring organization-wide adherence to compliance standards. They must also manage risk assessments, respond to incidents or breaches, and facilitate training for staff to prevent violations. Effective communication and collaboration with IT, legal, and clinical teams are essential to address potential vulnerabilities and maintain a culture of compliance.

What are the key skills and qualifications needed to thrive as a HIPAA OCR compliance specialist, and why are they important?

To thrive as a HIPAA OCR Compliance Specialist, you need expertise in healthcare privacy laws, risk assessment, and regulatory compliance, often supported by a degree in healthcare administration or law and relevant compliance certifications. Familiarity with compliance management software, audit tools, and federal reporting systems is typically required. Strong analytical thinking, attention to detail, and effective communication skills are essential for interpreting regulations and guiding organizational compliance. These abilities are crucial for ensuring that healthcare organizations protect patient privacy and avoid costly violations.

What is the difference between Hipaa Ocr vs Medical Coder?

AspectHipaa OcrMedical Coder
CertificationsHIPAA certifications, OCR compliance trainingCertified Coding Specialist (CCS), Certified Professional Coder (CPC)
Work EnvironmentHealthcare organizations, compliance departmentsHospitals, clinics, insurance companies
Industry UsageEnsures privacy and security of health dataAssigns medical codes for billing and records

Hipaa Ocr professionals focus on ensuring healthcare data privacy and compliance with HIPAA regulations, often working within compliance departments. Medical coders, on the other hand, assign codes to medical records for billing purposes. While both roles require healthcare knowledge, Hipaa Ocr emphasizes data security and privacy, whereas medical coding centers on accurate record-keeping and billing.

What other helpful pages are available for Hipaa Ocr?

Other pages related to Hipaa Ocr:

Infographic showing various Hipaa Ocr job openings in the United States as of September 2026, with employment types broken down into 92% Full Time, and 8% Part Time. Highlights an 83% In-person, and 17% Remote job distribution, with an average salary of $161,189 per year, or $77.5 per hour.

HIPAA Privacy Lead - Policy, Risk & Compliance

Allia Health Group

Houston, TX • On-site

$150 - $200/hr

Other

Medical, Dental, Vision, Retirement, PTO

Posted 10 days ago


Job description

If you are unable to complete this application due to a disability, contact this employer to ask for an accommodation or an alternative application process.

Full-Time Houston, TX, US

6 days ago Requisition ID: 1358

About Allia Health Group

Allia Health Group (AHG) is a multi-brand healthcare holding company whose subsidiaries include Southend Pharmacy, Brello, HelloWellness, and AlliaCare. AHG is building a formal compliance program spanning HIPAA Privacy & Security, SOC 2 attestation, and broader healthcare regulatory compliance across a fast-moving, multi-entity structure.

Position Summary

The HIPAA Privacy Lead serves as the enterprise HIPAA Privacy SME for AHG's U.S. operations, owning day-to-day interpretation, application, and oversight of the HIPAA Privacy Rule. This individual-contributor role reports to the Chief Compliance Officer & Privacy Officer and formalizes work currently led directly by the CCO — BAA management, privacy risk assessment, policy development, de-identification governance, and workforce training — giving the Privacy program dedicated, sustained ownership as AHG grows.

This is a full-time remote position. Candidates must be available to work during standard business hours.

Key ResponsibilitiesPrivacy Program & Policy
  • Maintain and mature HIPAA Privacy policies and procedures across all covered entities and business associates (Southend Pharmacy, Brello, HelloWellness, and AHG Enterprise); advise business, clinical, and IT teams on PHI handling and privacy risk mitigation.
  • Partner with GRC to define, implement, and monitor HIPAA controls and align privacy requirements with AHG's broader regulatory frameworks, including the parallel SOC 2 effort.
  • Review project designs, system implementations, and process changes for HIPAA alignment, embedding privacy-by-design into clinic and enterprise operations.
  • Own the BAA inventory — drafting, tracking, and remediating gaps — and support AHG's de-identification framework (Safe Harbor / Expert Determination under §164.514), including tokenization and egress governance.
  • Partner with outside counsel on privacy legal questions, data architecture reviews, and open-items tracking.
  • Conduct HIPAA privacy risk assessments and breach risk analyses (four-factor framework); maintain the privacy risk register and drive remediation to closure.
  • Collaborate with Cyber & Privacy Operations during incidents on breach assessment, escalation/containment/notification decisions, and post-incident SOPs.
  • Serve as primary point of contact for privacy complaints, investigations, and regulatory inquiries, working closely with U.S. Privacy Legal Counsel.
  • Lead vendor risk assessments for third parties handling PHI, including HIPAA-specific due diligence.
Patient Rights & Data Governance
  • Oversee patient requests for access, amendments, restrictions, and confidential communications, ensuring timely, appropriate responses; maintain documentation demonstrating HIPAA compliance.
  • Partner with Engineering and Data Engineering to map PHI/PII data flows and review new systems, AI/agentic tools, and vendor integrations before launch.
  • Develop self-service tools and templates so teams can independently handle routine privacy requirements.
Training & Reporting
  • Design and deliver workforce HIPAA privacy and incident-management training; partner with clinical/operational leaders to embed HIPAA into day-to-day practice operations.
  • Represent AHG's privacy posture in regulatory, audit, and compliance forums; monitor regulatory developments (HHS/OCR, state privacy law, FTC) and report program status to the CCO.
Qualifications

Required

  • 5+ years of hands-on HIPAA Privacy compliance experience in a regulated environment, specifically within a Specialty Pharmacy or other Covered Entity.
  • Hands-on experience with PHI/PII data flow mapping, leading a HIPAA Annual Risk Assessment, and designing/delivering HIPAA Incident Management training.
  • Working knowledge of the HIPAA Privacy Rule, Security Rule interplay, BAA requirements (45 CFR §164.504(e), §164.314(a)), and de-identification standards (§164.514).
  • Demonstrated experience drafting or managing BAAs, data-sharing agreements, or privacy policies, and working directly with outside counsel and technical stakeholders.
  • Experience using compliance and governance platforms (e.g., OneTrust, NAVEX, RSA Archer, ServiceNow GRC, or similar), document management systems, and Microsoft Office Suite (Excel, Word, PowerPoint, and Outlook) to support HIPAA privacy and compliance programs.
  • Strong written communication — able to translate legal/regulatory requirements into plain, actionable guidance for business and technical teams.

Preferred

  • Certification such as CHC (Certified in Healthcare Compliance), CHPC (Certified in Healthcare Privacy Compliance), or CIPP/US.
  • Experience with pharmacy, DTC health/wellness brands, or multi-brand healthcare holding structures.
  • Familiarity with BigQuery, cloud data warehouses, or tokenization/de-identification tooling (e.g., Protegrity) sufficient to engage credibly with engineering.
  • Exposure to SOC 2 programs or working alongside a parallel SOC 2 effort.
What Success Looks Like (First 6–12 Months)
  • Working with the CCO, HIPAA Privacy policies drafted and awareness created across the business unit.
  • Intercompany BAAs identified, drafted, and executed, with the BAA inventory as source of truth.
  • Privacy risk register stood up and actively tracked with clear ownership and remediation dates.
  • De-identification framework operationalized with Engineering and Security, including a defensible position on tokenized/egress data.
  • Workforce privacy training launched; CCO able to delegate day-to-day privacy operations with confidence, freeing capacity for SOC 2 and broader Healthcare Compliance work.

What We Offer:

  • Full benefits package including medical, vision, dental, 401(k) with company match, PTO, Flex days, holidays, and more!

Allia Health Group does not provide employment visa sponsorship now or in the future. Applicants must be legally authorized to work in the United States without the need for current or future sponsorship.

Equal Opportunity Employer Statement

Allia Health Group is proud to be an Equal Opportunity Employer where we are committed to fostering a diverse and inclusive workplace. We are committed to cultivating a culture where all team members feel valued & respected. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender identity or expression, sexual orientation, national origin, genetic information, disability, age, veteran status, or any other characteristics protected by applicable law.

#J-18808-Ljbffr