Role Description
As a Privacy Officer and Associate General Counsel, you will demonstrate experience in privacy law and healthcare regulatory compliance to support a growing, multi-state healthcare organization. This attorney will be responsible for maintaining policies and procedures that ensure compliance with the Health Insurance Portability and Accountability Act (HIPAA), state law, and 42 C.F.R Part 2 related to substance abuse treatment. This attorney will also serve as a strategic legal partner to executive leadership, Talent/Human Resources, and operations, providing proactive risk mitigation, regulatory guidance, and employment-related counsel across the enterprise.
Responsibilities
-
Privacy Support
-
Provide day-to-day advice and legal guidance on privacy matters, including:
-
HIPAA and state privacy laws, including those specific to behavioral health / substance abuse treatment
-
Investigations, including any breach notification processes
-
Patient privacy notices, website privacy notices, and compliance with tracking technology law
-
Oversee processes for patient access, amendment, and restrictions on their health information
-
Provide advice on subpoena compliance and medical records releases
-
Supervise a team of at least two medical records professionals
-
Prepare and deliver training and communications to promote awareness
-
Update and manage internal privacy policies
-
Partner with IT to enhance privacy controls
-
Maintain and report metrics to leadership
-
Healthcare Regulatory & Compliance Support
-
Assist in compliance matters under HIPAA and behavioral healthcare regulations (42 CFR Part 2)
-
Support the review of internal policies and procedures for regulatory alignment
-
Partner with Compliance on audits, investigations, and corrective action plans
-
Advise operational leaders on regulatory risk mitigation and compliance controls
-
Corporate & Operational Support
-
Assist with management of external litigation in coordination with outside counsel (e.g., employment, professional and general liability matters)
-
Assist with review, drafting, and negotiation of vendor and service agreements, including BAA agreements
-
Support M&A due diligence and integration efforts as needed
-
Develop practical, business-oriented legal solutions aligned with organizational goals
Qualifications
-
Juris Doctor (JD) from an accredited law school
-
Active license to practice law in at least one U.S. state
-
At least Four (4) years or more of relevant legal experience
-
Demonstrated expertise in privacy law
-
Healthcare industry experience (in-house or law firm)
-
Travel up to 15% may be required to attend hearings, conduct site visits, attend meetings, deliver training and conferences, etc.
-
Overnight travel may be expected for this role
Preferred
-
In-house healthcare experience
-
Experience supporting multi-site or multi-state organizations
-
Familiarity with behavioral health or substance use disorder regulatory landscape
Requirements
-
Juris Doctor (JD) from an accredited law school
-
Active license to practice law in at least one U.S. state
-
At least Four (4) years or more of relevant legal experience
-
Demonstrated expertise in privacy law
-
Healthcare industry experience (in-house or law firm)
-
Travel up to 15% may be required to attend hearings, conduct site visits, attend meetings, deliver training and conferences, etc.
-
Overnight travel may be expected for this role
Benefits
-
18 days PTO (Paid Time Off) + 8 paid Holidays
-
401k with company match
-
Company sponsored ongoing training and certification opportunities.
-
Full comprehensive benefits package including medical, dental, vision, short term disability, long term disability and accident insurance.
-
Substance Use Disorder Treatment and Recovery Loan Repayment Program (STAR LRP)
-
Discounted tuition and scholarships through Capella University