As a Healthcare Process Risk Senior Associate, you will have the opportunity to grow while contributing to our clients' business needs. You will help clients understand their business risks and address those risks in both proactive and responsive contexts within the Internal Audit practice, with the resources, environment, and support to help you excel.
The ideal candidate will possess healthcare industry expertise and a proven track record in internal audit, enterprise risk management, and regulatory compliance within hospitals, academic medical centers, and healthcare systems. Experience should include evaluating the effectiveness of controls and processes related to revenue cycle management, billing operations, compliance programs, and broader organizational risks.
The ideal candidate will also demonstrate curiosity and aptitude for leveraging emerging technologies, data analytics, artificial intelligence, automation, and Governance, Risk, and Compliance (GRC) solutions to enhance audit quality, efficiency, coverage, and client outcomes.
From day one, you will be empowered by the broader Cyber & Risk team to help clients make the decisions that advance their vision while helping you achieve more, confidently.
Your day-to-day may include:
- Review operational, financial, and administrative processes to assess risk, internal controls, and the overall effectiveness and efficiency of the processes.
- Obtain an understanding of clients' businesses, objectives, strategies, operations, processes, IT systems, service providers, and controls.
- Actively participate in client engagements from planning through completion, including scoping, fieldwork, reporting, and follow-up activities. Common engagements include, but are not limited to, co-sourced and outsourced internal audit services, operational and compliance audits, enterprise risk management assessments, internal control evaluations, risk assessments, governance reviews, and assisting clients with the design, enhancement, and implementation of effective internal control frameworks and business processes.
- Support the engagement Manager, Senior Manager, and/or Director with project management activities, including preparing and managing engagement plans, timelines, budgets, and status reports.
- Supervise, train, and mentor Associates and Interns on engagements, assess performance, and provide timely feedback.
- Develop and execute internal audit workplans and control testing procedures based on the engagement scope, client environment, and relevant risk factors.
- Leverage data analytics, automation tools, and AI-enabled audit techniques to improve testing efficiency, expand audit coverage, identify anomalies, and generate more timely risk insights.
- Contribute to the development and use of AI agents and other technology-enabled solutions that automate or enhance audit planning, evidence review, control testing, documentation, continuous monitoring, and reporting activities.
- Use and help enhance GRC solutions to support risk assessments, audit planning, workpaper documentation, issue management, control monitoring, workflow management, and reporting.
- Apply knowledge of risk and control trends to evaluate the significance of findings and develop practical, risk-based recommendations.
- Collaborate with the project team and client stakeholders to deliver services in accordance with project leadership and client expectations.
- Perform other duties as assigned.
You have the following technical skills and qualifications:
- Bachelor's degree in Accounting, Finance, Information Technology, Management Information Systems, Business Intelligence, or a related field required.
- CIA, CPA, Six Sigma, or another relevant professional certification preferred.
- Revenue Cycle: Proven experience supporting or managing projects related to revenue cycle optimization, including billing, coding, reimbursement, and claims processing, with a focus on improving financial performance and operational efficiency.
- Healthcare Provider Experience: Minimum of three years of experience working directly in internal audit with healthcare providers, including hospitals, academic medical centers, and healthcare systems, with a strong understanding of their operational challenges, risks, and regulatory environments.
- Familiarity with the Regulatory Landscape: Strong understanding of key healthcare regulations and initiatives, including the No Surprises Act, hospital price transparency requirements, and guidance issued by the Office of Inspector General (OIG), as well as the ability to adapt to evolving regulatory requirements.
- Experience assessing the design and operating effectiveness of enterprise and operational risk management programs, governance processes, internal control frameworks, and business process controls as part of internal audit, compliance, risk management, and assurance engagements.
- Strong understanding of the COSO Internal Control - Integrated Framework (2013), the Institute of Internal Auditors' International Professional Practices Framework (IIA IPPF), and leading practices related to governance, risk management, and internal controls.
- Demonstrated curiosity and aptitude for applying artificial intelligence, automation, and data analytics to internal audit activities. Experience using AI-enabled tools or creating AI agents to automate or enhance testing, documentation, monitoring, or reporting is highly desirable but not required.
- Ability to effectively use GRC solutions and identify opportunities to improve or enhance how those platforms support internal audit, risk assessment, issue management, control monitoring, workflow, and reporting. Experience with platforms such as ServiceNow, AuditBoard, Diligent, Archer, MetricStream, Workiva, or similar solutions is preferred but not required.
- Ability to execute multiple engagements and manage competing priorities in a rapidly growing team environment.
- Exceptional client service, communication, analytical, organizational, and project management skills.
- Strong computer skills, including proficiency in Microsoft Visio and Microsoft 365 applications, with the ability to quickly learn and apply emerging digital tools.
- Ability to travel as needed.
The base salary range for this position is between $101,200 and $140,760. Placement within the pay range is at Grant Thornton's discretion, and it is based on multiple factors, including but not limited to, job -related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate.
#Hybrid
#LI-LG1