PrivacyJob #: 2020-10340 Exp.: 6+ Years
Overview Inovalon is seeking a business-minded attorney to provide advice and counsel on healthcare privacy, data privacy and various risk topics across the enterprise. The incumbent will also act as a resource to the Legal and Compliance Department and work closely with internal business partners in consideration of corporate privacy obligations and other legal matters. This role will further provide ongoing support for the enterprise risk management function, to include risk identification, evaluation and the implementation and monitoring of mitigation plans.
Support key initiatives and activities related to privacy program implementation including policies and procedures, monitoring, controls, risk mitigation planning, workforce training and other program activities;
Provide broad-based advice across the enterprise to support the healthcare law function with an emphasis on the Health Insurance Portability and Accountability Act of 1996 (HIPAA) and other federal and state privacy laws;
Provide interpretive HIPAA guidance and creative solutions in support of a variety of business activities including data de-identification standards, data use and other strategic initiatives;
Coordinate and assist with privacy-related compliance activities, risk assessment, incident response and related requirements;
Perform routine privacy compliance monitoring activities to gauge compliance with HIPAA, General Data Protection Regulation (GDPR), California Consumer Privacy (CCPA) and other privacy regulations;
Review and recommend approaches to resolve the privacy aspects of vendor and client contracts and other commercial transactions;
Identify potential areas of enterprise risk, develop, implement corrective action plans and recommend mitigating processes designed to mitigate or avoid future risk;
Assist with the development and documentation of enterprise-wide risk management response plans and key indicators;
Support business units and departments with privacy process improvement opportunities identified through risk assessment and monitoring activities;
Provide guidance and consultation to business partners to assist with their risk management frameworks to include risk identification documentation, master risk register and action plans;
Assist the Corporate Compliance team with compliance and risk-related activities;
In coordination with the Corporate Compliance team, advance the company’s third-party risk management program, including due diligence, contracting and ongoing monitoring;
Maintain compliance with Inovalon’s policies, procedures and mission statement;
Adhere to all confidentiality and HIPAA requirements as outlined within Inovalon’s Operating Policies and Procedures in all ways and at all times with respect to any aspect of the data handled or services rendered in the undertaking of the position; and
Fulfill those responsibilities and/or duties that may be reasonably provided by Inovalon for the purpose of achieving operational and financial success of Employer.
A minimum of six (6) years experience as a practicing attorney working at a law firm, corporate legal department or federal healthcare agency with direct experience providing legal counseling on data privacy matters and analyzing risks;
At least five (5) years of HIPAA and privacy experience in a legal, risk and/or compliance role;
Knowledge of federal and state laws and regulations related to health care information security and privacy;
At least two (2) years of healthcare experience and specialized experience is preferred;
Experience with a healthcare company or companies within another regulated industry is preferred but not required;
Working knowledge of information security, data protection principles and enterprise risk management;
A self-starter who is detail oriented and able to work independently in a fast-paced and dynamic work environment with minimal supervision;
Must have strong analytical, communication, and collaboration skills and the ability to effectively communicate with senior management;
Must be able to communicate clearly and professionally in writing and verbally.
Inovalon provides equal employment opportunities (EEO) to all employees and applicants for employment. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, or protected veteran status and will not be discriminated against on the basis of disability.