Privacy Compliance Manager

Yale School of Medicine
New Haven, CT
Full-time
We are sorry. The job offer you are looking for is no longer available.

Position Focus :

Reporting to the Chief Privacy Officer, the Privacy Compliance Manager works to ensure compliance with federal, state, and University requirements related to the privacy of personally identifiable information (PII).

The Privacy Compliance Manager provides contracting as well as training support to the Privacy Office, including review, negotiation, and management of HIPAA Business Associate Agreements and Data Transfer Agreements.

Among other duties, the Privacy Compliance Manager provides guidance regarding privacy requirements and expectations to Yale faculty, staff, students, and trainees and keeps abreast of changes in University policy, as well as federal, state and international regulations, and will be a valuable and reliable resource to the privacy team and the University community.

Essential Duties

1. Review, develop, and negotiate contracts involving personally identifiable information including data use agreements, GDPR standard contractual clauses, and data processing agreements in collaboration with the Chief Privacy Officer, Procurement, and the Office of Sponsored Projects.

Provide feedback on acceptability of terms and recommend revisions. Provide guidance to the Yale community on completing data processing appendices.

2. Review, develop, negotiate, and manage Business Associate Agreements (BAA) including submissions and initial review of proposed agreements.

Refer substantive issues to the Chief HIPAA Privacy Officer as needed and coordinate with Procurement to obtain fully executed Business Associate Agreements that meet regulatory mandates and institutional standards.

Maintain the Business Associate files and logs and ensure complete list of the current Business Associates is available to the Yale community on the HIPAA website.

Monitor compliance with Business Associate requirements through outreach to Yale departments as well as active Business Associates.

3. Facilitate privacy compliance across the University by managing centralized privacy functions. Utilizing knowledge of applicable federal and state regulations related to privacy, responsible for the creation of training materials and guidance for faculty, staff, and students regarding privacy compliance.

Identify recurrent issues of University and federal requirements for privacy which are poorly understood and provide enhancements to existing educational materials to address gaps.

4. Serve as initial contact person for the HIPAA Privacy Office. Respond to, resolve, or refer, as appropriate, inquiries to the Privacy Office from various sources both within and outside Yale University including patients, research investigators, research subjects, clinicians, students, employees, and administrators related to privacy matters.

5. Assist with researching potential breaches and maintaining mandated documentation including an auditable record of incidents investigated under the HIPAA Breach Notification and other state and federal notice requirements.

Maintain appropriate documentation of breach determinations. Assist in notification process. 6. In conjunction with Chief Privacy Officer, oversee compliance with privacy policies and procedures.

Appropriately document findings and determine reasonable corrective actions for any finding including guidance documents, revisions to documents and forms, or other measures.

7. Maintain training records and privacy courses in the University’s learning management system including off-line courses.

Respond to questions and concerns regarding training compliance requirements for the HIPAA Privacy and Security training and other privacy modules.

Responsible for producing, distributing, and following up on training reports, upon request, for all HIPAA covered components of the University.

8. Maintain the Yale HIPAA and Privacy Office websites and update as necessary to reflect changes in institutional practices and federal, state, or international privacy regulation.

9. Other duties as assigned.

Required Education and Experience

Bachelor’s degree in relevant field and a minimum of four years related demonstrated experience or the equivalent combination of education and demonstrated experience.

Required Skill / Ability 1 :

Contract drafting and negotiation skills; ability research and learn about privacy-related legal requirement. Thorough working knowledge of PC-based tools including Microsoft Office Suite, data base administration, and other related software.

Required Skill / Ability 2 :

Excellent oral and written communication and interpersonal skills including ability to interact positively with a broad spectrum of individuals from patients to faculty members, as well as demonstrated organizational skills and analytic ability.

Required Skill / Ability 3 :

Demonstrated superior and organized customer service coordination working with multiple stakeholders, , administrators, patients, etc.

Required Skill / Ability 4 :

Ability to have high level of ethics and integrity in professional matters and sensitivity for confidentiality.

Required Skill / Ability 5 :

Ability to work independently and exercise sound judgment, as well as ability work well as part of a team and support others on the team.

Ability to prioritize, problem-solve, and work under pressure without sacrificing accuracy or customer service.

Preferred Education, Experience and Skills :

or other advanced degree. Working knowledge of international, federal, and state privacy regulations including the privacy of health information.

Drug Screen

Health Screening

Background Check Requirements

All candidates for employment will be subject to pre-employment background screening for this position, which may include motor vehicle, DOT certification, drug testing and credit checks based on the position description and job requirements.

All offers are contingent upon the successful completion of the background check. For additional information on the background check requirements and process visit "Learn about background checks" under the Applicant Support Resources section of Careers on the It's Your Yale website.

COVID-19 Vaccine Requirement

The University maintains policies pertaining to COVID-19. All faculty, staff, students, and trainees are required to comply with these policies, which may be found here :

Posting Disclaimer

The intent of this job description is to provide a representative summary of the essential functions that will be required of the position and should not be construed as a declaration of specific duties and responsibilities of the particular position.

Employees will be assigned specific job-related duties through their hiring departments.

30+ days ago
Related jobs
Yale University
New Haven, Connecticut

Reporting to the Chief Privacy Officer, the Privacy Compliance Manager works to ensure compliance with federal, state, and University requirements related to the privacy of personally identifiable information (PII). Among other duties, the Privacy Compliance Manager provides guidance regarding priva...

Promoted
Gregory & Howe Inc
Shelton, Connecticut

If you are looking to learn a new profession that is both dynamic and contributes to the safety of society, this opportunity may be for you! We are seeking someone to assist our Compliance Specialist in interpreting, organizing and scanning safety sensitive information into a secured central databas...

Promoted
Advanced Behavioral Health
Naugatuck, Connecticut

The ECCP Program Manager-Operations, working in conjunction with the ECCP Management Team, and closely with the ECCP Director, provides leadership for the overall operations of the ECCP Program. The ECCP Program Manager - Operations takes the lead in optimizing the operations for the ECCP Program. T...

Promoted
PMI (Project Management Institute)
Bridgeport, Connecticut

JobPosting","title":"PMOGA Community & Market Coordinator","datePosted":"2024-06-26T00:00:00","validThrough":null,"description":"How will you make a difference to PMI?\nThe PMOGA Community and Market Coordinator is integral in providing operational and administrative support to both the PMOGA Commun...

Promoted
Fuss & O'Neill
New Haven, Connecticut

Environmental Compliance Specialist. New Haven, CT office and work on a variety compliance projects. Under the general direction of a Project Manager, this professional will primarily support the Engineering and Compliance department at Fuss and O'Neill; however, this professional will have the oppo...

Promoted
City of New Haven
New Haven, Connecticut

As the City Development Projects Coordinator, you will spearhead the seamless execution of various municipal development initiatives, from conception to completion. This is a project management and coordination position providing highly responsible program management of City development projects inc...

Promoted
smith
CT, United States

The ideal candidate will be well-versed in commercial interior renovations, with medical projects in particular, under their belt. Lead Project Management in all tasks including. Making sure projects are aligned with agreed-upon plans. Coordinate full project lifecycle with Superintendent and Owners...

Promoted
Workiva
Bridgeport, Connecticut

The Intern - Business Intelligence Analyst acts as an ad hoc Data Analyst, reviewing and answering questions regarding a variety of information. Pursuing a Bachelor’s degree or higher in MIS, Business Analytics, statistics, or related majors. ...

Promoted
Insight Global
CT, United States

Insight Global is seeking a data focused project coordinator to join one of our smaller retail clients in Wilton Connecticut. This individual will be working on the master data team and they will be responsible for responsible for ensuring all project information is available, making it easy for add...

Promoted
True Environmental
Guilford, Connecticut

Manage environmental regulatory compliance projects, developing reports, permit applications, and compliance plans. Collaborate with other regulatory compliance team members to review and revise written work products. Complete field work to gather necessary information to develop inspection reports,...