City/State
Virginia Beach, VAWork Shift
First (Days)Overview:
The Epic Senior Security Analyst is responsible for managing user access, security policies, and role-based permissions within the Epic electronic health record (EHR) system. This role ensures compliance with HIPAA, organizational security policies, and Epic best practices while supporting security design, audits, and troubleshooting access-related issues. The analyst collaborates with IT teams, Compliance Officers, Privacy, Information Security and Epic application analysts to maintain secure, efficient, and compliant system access.
Responsibilities
• Manage user access, templates, and security roles within Epic.
• Maintain and configure EMP records, SER security, and role-based access to align with job functions.
• Implement security best practices to protect patient data and comply with regulatory requirements.
• Conduct regular security audits and access reviews to ensure compliance with HIPAA and organizational policies.
• Work with compliance teams and auditors to address security risks and findings.
• Monitor system logs and security reports to detect and respond to unauthorized access or security breaches.
• Troubleshoot access issues, security permissions, and authentication problems within Epic.
• Provide user support, training, and documentation on security policies and access management.
• Assist in resolving user provisioning errors, break the glass access events, and role conflicts.
• Work with IT teams to integrate Active Directory, single sign-on (SSO), and identity management systems with Epic security.
• Coordinate with Epic application analysts and clinical departments to define appropriate security roles.
• Participate in Epic upgrades, security patches, and system maintenance to ensure ongoing security.
• Develop and maintain Epic security policies, procedures, and documentation.
• Identify opportunities for automation, process improvement, and enhanced security measures.
• Stay up to date with Epic security updates, best practices, and regulatory changes.
• 7-10 years of IT experience desired.
• Understanding of HIPAA, HITECH, and other healthcare security regulations.
• Experience with Active Directory (AD), single sign-on (SSO), multi-factor authentication (MFA), and identity management solutions.
• Strong analytical, problem-solving, and troubleshooting skills related to Epic security and access issues.
• Excellent communication and collaboration skills to work with IT teams, compliance officers, and end users.
Nice To Haves
• Experience with EMP, SER, and identity management is preferred.
• Experience with user provisioning, role-based access control (RBAC), and security model design is preferred.
We provide market-competitive compensation packages, inclusive of base pay, incentives, and benefits. The base pay rate for Full Time employment is:$91,416.00-$152,380.80. Additional compensation may be available for this role such as shift differentials, standby/on-call, overtime, premiums, extra shift incentives, or bonus opportunities.
.
Sentara Independence provides quality outpatient services to the surrounding community. The facility includes an ambulance-accessible emergency room that is supported by board-certified physicians. Sentara Independence houses state-of-the-art medical equipment and highly-skilled physicians and staff. Sentara Independence is now an extension of the quality services at Sentara Virginia Beach General Hospital including advanced imaging and physical therapy.
Sentara Health is an equal opportunity employer and prides itself on the diversity and inclusiveness of its close to an almost 30,000-member workforce. Diversity, inclusion, and belonging is a guiding principle of the organization to ensure its workforce reflects the communities it serves.
In support of our mission “to improve health every day,” this is a tobacco-free environment.
For positions that are available as remote work, Sentara Health employs associates in the following states:
Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington, West Virginia, Wisconsin, and Wyoming.

Morgan Stanley

Edges Wellness Center LLC

WSP in Canada

Digitalenta

Cox Automotive Inc.

Sentara Healthcare

Sentara Healthcare

Sentara Healthcare