What are the responsibilities and job description for the EHR Security Analyst – Cerner / Oracle Health position at InfoLabs inc?
EHR Security Analyst (Cerner / Oracle Health) — Hybrid, Richmond VA
Location: Governor St, Richmond, VA 23219
Work Arrangement: Hybrid
Interview: Phone screen in-person
Client: VDH
About the role
VDH is hiring an EHR Security Analyst to own access control and security administration on the Oracle Health / Cerner Millennium platform. This is hands-on work — not policy review, not high-level compliance oversight. You'll be in OHPAC daily, mapping VDH job positions to security groups, automating provisioning and offboarding, running internal audits, and supporting end users when access issues hit.
You'll work directly with the EHR Security Officer, the EHR Application team, the ISO team, the EHR Core team, and the HIPAA compliance officer.
What you'll do
- Define and maintain user access policies, security profiles, and role-based permissions in Cerner Millennium
- Map VDH positions to Millennium Positions, Preferences, and OHPAC Security Groups
- Build and automate provisioning and offboarding workflows with IT and the EHR Core team
- Run internal security audits; support external audits end-to-end
- Monitor user behavior in P2Sentinel, surface trends, investigate incidents
- Write and maintain EHR security policies, procedures, and downtime documentation
- Participate in Cerner / OHPAC upgrades, security patches, and system maintenance
- Provide Tier 1 support to EHR end users on access and security issues
- Stay current on healthcare security threats, HIPAA / HITECH updates, and Cerner platform changes
What you need (all required)
- 5 years hands-on Oracle Health / Cerner Millennium EHR security
- 5 years troubleshooting Cerner / OHPAC security and access issues
- 5 years Application Support experience
- 5 years working with healthcare IT infrastructure — networking, firewalls, database security
- 3 years HIPAA, HITECH, and Meaningful Use regulatory work
- 3 years Active Directory, SSO, MFA, and identity management
- 3 years writing Discern reports and CCL (Cerner Command Language)
- Strong written and verbal communication — you'll work with compliance officers, IT teams, and end users daily
- Ability to juggle competing priorities in a fast-paced environment
- Real commitment to customer service across users with varying technical backgrounds
Nice to have
- P2Sentinel hands-on experience
- Prior work inside a state health agency or large hospital system
- Experience through full Cerner upgrade cycles
Interview process
Phone screen first, then in-person interview at the Richmond office.