- Location
- New York
- Type
- Full-time
- Experience
- 10+ years
- Education
- Bachelor
- Closing date
- Today
- Source
- CareersPage
Description
Sr Privacy Project Program Mgr requires:
- 10+ years of experience in privacy compliance.
- Bachelor's degree
- Demonstrated knowledge of, and experience with:
o Privacy laws in N.A., including HIPAA, PIPEDA and U.S. state regulation;
o Anti-bribery, anti-competition, anti-money laundering and economic sanctions, whistleblowing;
o Document/data retention requirements;
o Data privacy compliance and incident management, including implementation of breach response protocol and oversight of regulatory and individual compliance. - Strong PC skills, to include Microsoft Word, PowerPoint and Excel.
- Demonstrated ability to research, interpret and understand laws, privacy laws and regulations.
- Strong interpersonal relationships with peers, cross cultural sensitivity, develops others, builds effective teams, managerial courage, motivates others.
- High level of integrity with strong ethical core values
- Ability to work independently, self-starter
- Experience, or a bachelor's degree, in a healthcare-related field.
- Privacy certification, such as Certified Information Privacy Professional (CIPP).
Duties:
- Establishes and oversees strategic privacy program including developing and implementing policies/processes that enable effective privacy and compliance practices.
- Oversees continued compliance with the HIPAA privacy program including monitoring compliance with regulatory requirements and enhancing, improving and revising the program as needed
- Manages ongoing compliance with the CCPA and CPRA privacy program including monitoring compliance with regulatory requirements and enhancing, improving and revising the program as needed
- Implements U.S. state privacy law program for Colorado, Virginia and Utah – including new regulatory requirements
- Develops and ensures adherence to policies and standard operating procedures for the privacy & compliance programs.
- Establishes ongoing process to investigate and report inappropriate access and disclosure of PII and PHI.
- mpliance related audits.