HIPAA Privacy Lead
Skills
CFRData ArchitectureData WarehousingHealthcarePrivacy CompliancePrivacy LawRegulatory Requirements
What the job involves
The main requirements, responsibilities and hiring steps.
Requirements
- 5+ years of hands-on HIPAA Privacy compliance experience in a regulated environment within a Specialty Pharmacy or other Covered Entity
- Hands-on experience with PHI/PII data flow mapping leading a HIPAA Annual Risk Assessment and designing/delivering HIPAA Incident Management training
- Working knowledge of the HIPAA Privacy Rule Security Rule interplay BAA requirements and de-identification standards
- Demonstrated experience drafting or managing BAAs data-sharing agreements or privacy policies and working with outside counsel and technical stakeholders
- Experience using compliance and governance platforms document management systems and Microsoft Office Suite to support HIPAA privacy programs
- Strong written communication skills to translate legal and regulatory requirements into plain actionable guidance
Nice to have
- Healthcare compliance expertise
- Specialty pharmacy background
- Multi-brand healthcare experience
- Technical stakeholder fluency
- Regulatory mindset
- Clear communicator
Day to day
- Owns day-to-day HIPAA Privacy Rule interpretation and oversight across a multi-entity healthcare organization
- Maintains and matures privacy policies procedures BAAs de-identification governance and workforce training
- Conducts privacy risk assessments breach analyses and vendor due diligence while partnering with legal engineering security and GRC teams
