HIPAA Privacy Lead

Skills
CFRData ArchitectureData WarehousingHealthcarePrivacy CompliancePrivacy LawRegulatory Requirements
Role

What the job involves

The main requirements, responsibilities and hiring steps.

Requirements

  • 5+ years of hands-on HIPAA Privacy compliance experience in a regulated environment within a Specialty Pharmacy or other Covered Entity
  • Hands-on experience with PHI/PII data flow mapping leading a HIPAA Annual Risk Assessment and designing/delivering HIPAA Incident Management training
  • Working knowledge of the HIPAA Privacy Rule Security Rule interplay BAA requirements and de-identification standards
  • Demonstrated experience drafting or managing BAAs data-sharing agreements or privacy policies and working with outside counsel and technical stakeholders
  • Experience using compliance and governance platforms document management systems and Microsoft Office Suite to support HIPAA privacy programs
  • Strong written communication skills to translate legal and regulatory requirements into plain actionable guidance

Nice to have

  • Healthcare compliance expertise
  • Specialty pharmacy background
  • Multi-brand healthcare experience
  • Technical stakeholder fluency
  • Regulatory mindset
  • Clear communicator

Day to day

  • Owns day-to-day HIPAA Privacy Rule interpretation and oversight across a multi-entity healthcare organization
  • Maintains and matures privacy policies procedures BAAs de-identification governance and workforce training
  • Conducts privacy risk assessments breach analyses and vendor due diligence while partnering with legal engineering security and GRC teams