Talent.com
No longer accepting applications
Senior Privacy and Regulatory Counsel (Washington)

Senior Privacy and Regulatory Counsel (Washington)

SurescriptsWashington, DC, United States
15 hours ago
Job type
  • Full-time
Job description

Senior Privacy And Regulatory Counsel

Surescripts serves the nation through simpler, trusted health intelligence sharing, in order to increase patient safety, lower costs and ensure quality care. We deliver insights at critical points of care for better decisions from streamlining prior authorizations to delivering comprehensive medication histories to facilitating messages between providers.

The Senior Privacy and Regulatory Counsel provides critical corporate, regulatory, and commercial legal services to the organization and its in-house clients to manage privacy, regulatory and data use risks. Such legal services primarily concern the interpretation of laws, rules, regulations, and guidance documents that regulate the collection, use, sharing, and retention / deletion of health-related personally identifiable information (PII) (e.g., HIPAA, the FTC Act, state consumer privacy laws, and data breach reporting and notification laws), data rights, product / service / system counseling based on Privacy by Design, risk assessment and analysis, risk remediation, and drafting and negotiating privacy and data protection provisions of agreements with partners, customers, and vendors, as well as other healthcare regulatory laws.

This role is accountable for privacy and regulatory legal expertise and counseling, and contributes to the strategic design of the privacy program, partnering with and counseling the Chief Legal Officer, Privacy Officer and Chief Information Security Officer, and other key stakeholders including the Product Innovation, Data & Analytics, and Growth departments, enabling the Executive Team to make informed, risk-based decisions regarding legal risk and strategy.

Responsibilities include :

  • Provide legal support and advise across a myriad of regulations including HIPAA, Information Blocking Rules, Anti-Lead complex legal services arising from business priorities and data rights associated with the handling of deidentified data, PII / Protected Health Information (PHI).
  • Provide legal and strategic advice to the Chief Legal Officer, Privacy Officer and VP, Legal Affairs to ensure compliance and manage risk to PII / PHI.
  • Partner with other members of the Legal Affairs team, product managers and developers, Growth team, and other stakeholders to ensure privacy is incorporated in the development of products, services, and systems.
  • Create and foster partnerships across the enterprise, managing those relationships as well as providing high quality advice in innovative ways, including through PowerPoint and visual representation.
  • Participate in the operation of data privacy, risk, and governance boards or committees, such as developing priorities and initiatives.
  • Act in accordance with the Department's service delivery model.
  • Serve as senior leader on the Privacy and Regulatory team to develop, implement, and execute strategic vision, including team meetings, brainstorming sessions, trainings, and team building activities.
  • Draft, maintain, and update Business Associate Agreement (BAA) and related privacy and data protection templates.
  • Draft and negotiate / advise on BAAs and related privacy and data protection agreements and terms in customer / vendor contracts or other legal documentation with customers, suppliers, and other parties.
  • Advise other members of the Legal Affairs team in the negotiation of BAAs and related privacy and data protection terms in customer / vendor contracts or other legal documentation with customers, suppliers, and other parties.
  • Partner cross-functionally to ensure compliance with privacy and data protection-relevant provisions of contracts, state and federal law and regulations and applicable standards.
  • Mentor other privacy or legal professionals.
  • Counsel on privacy and security incident preparedness and management.
  • Track, analyze, and counsel stakeholders involving privacy and data protection related law, regulation, published standards, etc.
  • Prepare comments or responses to requests for information (RFIs) on behalf of the Company regarding proposed rules or regulations related to privacy and data protection.
  • Evaluate and advise on compliance with applicable privacy, data protection, and data use laws, rules, regulations, and guidance documents related to Company products / services in conceptual or development phases, as well as on appropriate courses of action for privacy and data protection to meet the Company's and business units' needs, including data rights use and concepts such as HIPAA data aggregation and proper management and administration as a Business Associate.
  • Manage complex projects as assigned, including guidance on where HIPAA, Intellectual Property, Anti-Kickback Statute and other regulations factor into the solution.
  • Assist with internal and external privacy and data protection-related federal, state, and industry compliance activities.
  • Manage legal matters assigned to outside counsel and preside at meetings regarding legal issues.
  • Work within the Privacy and Regulatory team to create key performance indicators and drive goals and continuous improvement opportunities established by the Associate General Counsel, supporting the management, growth and effectiveness of the vertical

Qualifications include :

Basic Requirements :

  • Juris Doctor degree from an ABA-accredited law school and good standing member of at least one state bar
  • 8+ years of experience as a practicing privacy attorney at a law firm or in-house additional years of relevant experience in a non-attorney role in the healthcare or technology industry may be considered in satisfying this requirement
  • 5+ years of experience working with product strategists, owners, developers, and architects, advising on privacy and data protection issues throughout the development lifecycle
  • 5+ years healthcare regulatory background
  • 5+ years of subject matter experience in privacy and data protection
  • 2+ years of experience assessing, analyzing, and recommending risk management strategies for privacy compliance
  • Works with a high degree of autonomy, demonstrating significant subject matter experience and excellent communication skills
  • Preferred Qualifications :

  • 2+ years of experience with the operation of a governance committee or similar body supporting privacy strategy
  • 2+ years of experience with HIPAA regulated entities, interpreting the Privacy and Security Rules
  • Familiarity with other areas of emerging technology
  • Professional certification in privacy, data governance, data classification, and / or risk assessment
  • Familiarity with published privacy and data protection standards, such as NIST, ISO, and / or HITRUST
  • Surescripts embraces flexibility through its Flexible Hybrid Work model for most positions. This model allows employees to work virtually while still utilizing our offices as collaboration centers. With alignment and agreement from your leadership, you can come and go from the office as needed.

    To be considered for employment, applicants must have a valid U.S. work authorization allowing work without restrictions with Surescripts in the U.S. At this time, we are unable to provide support or provide sponsorship for immigration benefits such as work visas. Additionally, we do not participate in academic training programs or work-study programs through an academic institution that require employer endorsement of F-1 / CPT or F-1 / STEM.

    You have never met a problem you did not want to try to solve. You are creative and practical. With your ability to drive to results, cut through the fog, and help others see multiple perspectives, you save the day on a semi-regular basis.

    We learn from each other and help one another. We dont waste energy competing with one another, stirring up drama, or plotting revenge. Were too busy for that. Plus, we actually like each other. We get work done, ask how we can get better, and generally enjoy ourselves along the way.

    We operate a balancing act : We dont just advise on risks; we help the business move toward opportunities. Its good that we are flexible and nimble as we operate in an ever-evolving landscape. We encounter and embrace constant change and continue to drive compliance with laws, regulatory requirements, policies and procedures. We are proud that our work protects and advances the interests of the Surescripts Network Alliance and helps build a secure, connected, and effective healthcare system.

    Were a midsize company. This means youre not just another employee ID number. Here, you can build real relationships and feel supported by truly awesome people with diverse backgrounds and talents in an innovative and collaborative work culture. We strive to create an environment where you can be yourself, share your ideas and work your way. We offer opportunities for employee development, as well as competitive compensation packages and extensive benefits.

    Create a job alert for this search

    Counsel Regulatory • Washington, DC, United States

    Related jobs
    • Promoted
    Hybrid Partner-Level Privacy Law

    Hybrid Partner-Level Privacy Law

    Carrie Rikon & AssociatesColumbia, MD, US
    Full-time
    Hybrid Law Firm Partner Privacy.Salary Range of 225K-250K Plus Yearly Bonus Offered, Equating To 1M-2M.Excellent compensation package plus benefits. A nationally recognized law firm is seeking a.Pri...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Privacy Manager

    Senior Privacy Manager

    Palo Alto NetworksReston, VA, US
    Full-time
    At Palo Alto Networks everything starts and ends with our mission : .Being the cybersecurity partner of choice, protecting our digital way of life. Our vision is a world where each day is safer and mo...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Director, Privacy and Cybersecurity

    Senior Director, Privacy and Cybersecurity

    ISACAAlexandria, VA, United States
    Full-time
    Eligible for Hybrid / 3 days in office - Alexandria, VA).The Senior Director, Privacy and Cybersecurity provides executive leadership to protect United Way Worldwide’s data, systems and reputation.T...Show moreLast updated: 25 days ago
    • Promoted
    Senior Manager, U.S. Federal Regulatory Affairs

    Senior Manager, U.S. Federal Regulatory Affairs

    NetflixWashington, DC, US
    Full-time
    Washington DC, District of Columbia, United States of America.Netflix is one of the worlds leading entertainment services, with over 300 million paid memberships in over 190 countries enjoying TV s...Show moreLast updated: 30+ days ago
    Privacy Analyst (Compliance)

    Privacy Analyst (Compliance)

    TechOp Solutions InternationalWashington, DC, US
    Full-time
    Quick Apply
    TechOp Solutions International is seeking a detail-oriented Privacy Analyst to enhance our commitment to upholding privacy standards and regulations. The successful candidate will play a crucial rol...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Director of Government Relations and Regulatory Affairs

    Senior Director of Government Relations and Regulatory Affairs

    Tennessee Society of Association ExecutivesWashington, DC, United States
    Full-time
    The Senior Director of Government Relations and Regulatory Affairs serves as CMI’s chief federal lobbyist and regulatory affairs lead, representing the metal can industry before Congress, federal a...Show moreLast updated: 25 days ago
    • Promoted
    SVP, Regulatory Services

    SVP, Regulatory Services

    COMPLYWashington, DC, US
    Full-time
    We are COMPLY, for compliance people.COMPLY is the leading global provider of comprehensive regulatory compliance software and solutions for the financial services sector.Our OneCOMPLY platform pro...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Reg Policy Specialist, Regulatory

    Senior Reg Policy Specialist, Regulatory

    FINRAWashington, DC, US
    Full-time
    Senior Regulatory Policy Specialist.The Senior Regulatory Policy Specialist provides high quality advice and support to OGC's Regulatory Policy and Capital Markets Group attorneys with respect to r...Show moreLast updated: 30+ days ago
    Privacy Analyst -Policy

    Privacy Analyst -Policy

    TechOp Solutions InternationalJoint Base Anacostia-Bolling, DC, US
    Full-time
    Quick Apply
    TechOp Solutions International is looking for a skilled Privacy Analyst specialized in policy to join our dynamic team.The successful candidate will be responsible for developing, reviewing, and ma...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Director of Government Relations and Regulatory Affairs

    Senior Director of Government Relations and Regulatory Affairs

    KENTUCKY SOCIETY OF ASSOCIATION EXECUTIVES INCWashington, DC, United States
    Full-time
    The Senior Director of Government Relations and Regulatory Affairs serves as CMI’s chief federal lobbyist and regulatory affairs lead, representing the metal can industry before Congress, federal a...Show moreLast updated: 26 days ago
    Director, Legislative and Regulatory Policy

    Director, Legislative and Regulatory Policy

    Center Road SolutionsWashington, DC, US
    Full-time
    Quick Apply
    About Center Road We are a woman and mother-owned boutique bipartisan policy firm with a proven track record of taking on partisan issues or unmovable policies—like those affecting fami...Show moreLast updated: 30+ days ago
    • Promoted
    Hybrid Senior Associate Level Privacy Law

    Hybrid Senior Associate Level Privacy Law

    Carrie Rikon & AssociatesWashington, DC, US
    Full-time
    Hybrid Law Firm Senior Associate Privacy.Salary Range of 150K-210K Plus Yearly Bonus Offered.Excellent compensation package plus benefits. A nationally recognized law firm is seeking a.Privacy and D...Show moreLast updated: 30+ days ago
    • Promoted
    Corporate Regulatory Associate

    Corporate Regulatory Associate

    5 LegalWashington, DC, US
    Full-time
    Am Law top 100 and ranked a Top 10 M&A firm across all industries is seeking a mid-level associate to join their Fintech practice. The ideal candidate will have 2-6 years of regulatory and payme...Show moreLast updated: 30+ days ago
    Hybrid Partner-Level Privacy Law

    Hybrid Partner-Level Privacy Law

    Carrie Rikon & Associates, LLC.Columbia, MD, US
    Full-time
    Quick Apply
    Hybrid Law Firm Partner Privacy Salary Range of 225K-250K Plus Yearly Bonus Offered, Equating To 1M-2M Excellent compensation package plus benefits Columbia, Maryland A nationally...Show moreLast updated: 30+ days ago
    Hybrid Senior Associate Level Privacy Law

    Hybrid Senior Associate Level Privacy Law

    Carrie Rikon & Associates, LLC.Columbia, MD, US
    Full-time
    Quick Apply
    Hybrid Law Firm Senior Associate Privacy Salary Range of 150K-210K Plus Yearly Bonus Offered Excellent compensation package plus benefits Columbia, Maryland A nationally recognized law ...Show moreLast updated: 30+ days ago
    • Promoted
    Regulatory Affairs Associates (Washington)

    Regulatory Affairs Associates (Washington)

    ScendeaWashington, DC, United States
    Full-time
    Are you looking to start or advance your career in regulatory affairs?.At Scendea, we deliver market-leading scientific expertise and regulatory solutions to advance healthcare innovation worldwide...Show moreLast updated: 17 days ago
    • Promoted
    Senior Associate, Forensic Accounting - Cryptocurrency

    Senior Associate, Forensic Accounting - Cryptocurrency

    Forensic Risk AllianceWashington, DC, US
    Full-time
    We are looking for a Subject Matter Expert in cryptocurrency who seeks an exciting, long-term career opportunity at one of the most highly-respected forensic accounting, investigations, and complia...Show moreLast updated: 30+ days ago
    • Promoted
    Privacy & Compliance Manager - ASI

    Privacy & Compliance Manager - ASI

    Banyan SoftwareWashington, DC, US
    Permanent
    Banyan Software provides the best permanent home for successful enterprise software companies, their employees, and customers. We are on a mission to acquire, build and grow great enterprise softwar...Show moreLast updated: 30+ days ago
    Privacy SME (Program Management)

    Privacy SME (Program Management)

    TechOp Solutions InternationalArlington, VA, US
    Full-time
    Quick Apply
    TechOp Solutions International is actively looking for a highly qualified and experienced Senior Privacy Subject Matter Expert (SME) to join our dedicated team in supporting the United States Depar...Show moreLast updated: 30+ days ago
    • Promoted
    Compliance Privacy Advisor, Principal Associate

    Compliance Privacy Advisor, Principal Associate

    Capital OneFalls Church, VA, US
    Full-time +1
    Compliance Privacy Advisor, Principal Associate.The Capital One Privacy Compliance team is seeking a Compliance Privacy Advisor, Principal Associate (PA) with a passion for mitigating privacy risk ...Show moreLast updated: 30+ days ago