Role Description
Omnicell is building out its privacy program alongside a fast-moving product and innovation pipeline, and we are looking for a Senior Analyst, Privacy to join our Legal Department as the dedicated privacy advisor to our Product, Innovation, and R&D teams. You will embed privacy-by-design principles throughout the product lifecycle, lead privacy impact assessments across the innovation pipeline, and advise on what data can responsibly be used for research, prototyping, and analytics, including secondary uses of Protected Health Information. You will also partner with Product and Commercial to shape the privacy strategy that takes new offerings to market.
This role translates evolving data protection requirements into clear, launch-ready guidance, so that Omnicell can innovate at speed while maintaining compliance with applicable global, federal, and state privacy laws.
Qualifications
-
One or more IAPP certifications, such as CIPP/US, CIPM, or CIPT
-
6+ years of progressive experience in privacy or data protection, including at least 3 years supporting a healthcare, medical device, digital health, or health technology company
-
Demonstrated experience conducting privacy impact assessments and data protection impact assessments for new products, systems, or initiatives, along with data mapping and records of processing activities
-
Deep, hands-on knowledge of the HIPAA Privacy Rule, Security Rule, and Breach Notification Rule, including Business Associate compliance
-
Working command of U.S. state privacy laws such as CCPA/CPRA, emerging global frameworks, and adjacent cybersecurity regulatory requirements, and how they apply to product development and go-to-market activities
-
Familiarity with the privacy considerations of AI/ML-enabled and cloud-connected products, including data minimization, consent, and data classification
-
Hands-on experience translating privacy requirements into practical, development-ready guidance
-
A commercial, product-minded orientation, with the ability to balance privacy risk against business objectives and enable responsible speed-to-market
-
A track record of partnering with cross-functional teams, including product, engineering, legal, security, and compliance, with the ability to influence without authority
-
Strong analytical and writing skills, with the ability to translate complex technical and legal concepts into actionable guidance for any audience
-
The ability to work independently, set priorities, and manage multiple assessments and timelines in a fast-paced environment, communicating them clearly to stakeholders
-
Strong initiative and a genuine appetite for learning, effective interpersonal and problem-solving skills, and a highly organized approach with sharp attention to detail
Requirements
-
Assess data rights and usage limitations under customer agreements and Business Associate Agreements (BAAs) as they relate to innovation and development initiatives
-
Perform privacy due diligence on third-party tools, data sources, APIs, and development vendors proposed for use by the product and R&D teams
-
Review and advise on the privacy implications of new products, features, technologies, and data uses, including AI/ML-enabled features, analytics, and connected-device offerings
-
Build and maintain repeatable assessment methodologies, intake processes, templates, and playbooks that scale with the pace of innovation
-
Deliver targeted privacy training for product, engineering, and R&D personnel on privacy-by-design and responsible data use
-
Partner with cross-functional teams to align privacy strategy with commercial and compliance objectives
Benefits
-
Flexibility in working hours as needed
-
Some travel, ~10%