Included Health is looking for an experienced and innovative Privacy Compliance Principal to join our Ethics, Compliance, and Privacy team within the Legal Department. This advanced professional role will focus on HIPAA Privacy and Security compliance, ensuring that our organization achieves and maintains excellence in privacy practices while upholding the highest standards of data security. This role is an individual contributor role at this time, reporting to the Corporate Compliance Officer.
We ask that you are a recognized subject matter expert with broad expertise in healthcare privacy compliance and related disciplines. You will partner with the Corporate Compliance Officer to design, implement, and sustain a comprehensive HIPAA compliance program that aligns with our goals and industry best practices. You will lead projects to develop a culture of privacy compliance and collaborating across teams to ensure the program’s success.
The Privacy Compliance Principal will also monitor regulatory developments at both the federal and state levels and ensure our policies and procedures are updated to address changes.
\n- Develop and manage a comprehensive HIPAA Privacy and Security compliance program in collaboration with the Corporate Compliance Officer.
- Establish and maintain policies and procedures that reflect compliance best practices, ensuring agreement on regulatory requirements and organizational goals.
- Lead efforts to achieve and maintain excellence in HIPAA compliance practices, serving as an important advisor to leadership.
- Create and deliver tailored privacy compliance training programs for diverse audiences, including our employees, senior leadership and Board of Directors.
- Foster a culture of privacy compliance and data security by developing engaging resources and programs.
- Lead efforts to promote awareness of privacy risks and the importance of compliance across the organization.
- Stay informed of federal and state regulatory requirements, including changes introduced by HHS, OCR and other governing bodies.
- Proactively assess the impact of new regulations and guidelines on our compliance program.
- Revise policies, procedures, and program elements to reflect updates in privacy laws and regulations.
- Direct the investigation and resolution of privacy incidents and breaches, ensuring timely reporting, documentation, and corrective actions.
- Develop table-top root cause analyses and implement preventative measures to reduce future risks.
- Oversee ongoing monitoring and auditing activities to assess compliance with HIPAA and other applicable privacy regulations.
- Collaborate with teams to identify compliance gaps and implement remediation strategies.
- Serve as our subject matter expert on HIPAA Privacy compliance, providing guidance to other teams and leadership.
- Lead cross-departmental collaboration on complex privacy compliance programs.
- May direct the activities of others, providing mentorship and expertise to ensure compliance excellence.
- Bachelor’s degree with a minimum of 8 years of related experience, or a Ph.D./JD with 5 years of relevant experience, or an equivalent combination of education and experience.
- Proven expertise in HIPAA Privacy and Security Rules and their application in healthcare organizations.
- Broad expertise across privacy compliance and related disciplines, with the ability to develop and then execute company-wide compliance goals.
- Experience creatively analyzing complex situations and develop effective solutions, with accountability for results that may affect the entire function.
- Achieve compliance goals in creative and effective ways.
- Governance and collaboration skills, recognized as a subject matter expert.
- Prompt and regular attendance at assigned work location.
- Capability to remain seated in a stationary position for prolonged periods.
- Eye-hand coordination and manual dexterity to operate keyboard, computer and other office-related equipment.
- No heavy lifting is expected, though occasional exertion of about 20 lbs of force (e.g., lifting a computer / laptop) may be required.
- Capability to work with leadership, employees, and members.
- Remote position with occasional travel for meetings, training, or compliance-related events.
The United States new hire base salary target ranges for this full-time position are:
Zone A: $149,450 - 211,100+ equity + benefits
Zone B: $164,395 - 232,210+ equity + benefits
Zone C: $179,340 - 253,320 + equity + benefits
Zone D: $194,280 - 274,430 + equity + benefits
This range reflects the minimum and maximum target for new hire salaries for candidates based on their respective Zone. Below is additional information on Included Health's commitment to maintaining transparent and equitable compensation practices across our distinct geographic zones.
Starting base salary for you will depend on several job-related factors, unique to each candidate, which may include education; training; skills; years and depth of experience; certifications and licensure; our needs; internal peer equity; organizational considerations; and understanding of geographic and market data. Compensation structures and ranges are tailored to each zone's unique market conditions to ensure that all employees receive fair and great compensation package based on their roles and locations. Your Recruiter can share your geographic zone upon inquiry.
Benefits & Perks:
In addition to receiving a great compensation package, the compensation package may include, depending on the role, the following and more:
Remote-first culture
401(k) savings plan through Fidelity
Comprehensive medical, vision, and dental coverage through multiple medical plan options (including disability insurance)
Paid Time Off ("PTO") and Discretionary Time Off (“DTO")
12 weeks of 100% Paid Parental leave
Family Building & Compassionate Leave: Fertility coverage, $25,000 for surrogacy/adoption, and paid leave for failed treatments, adoption or pregnancies.
Work-From-Home reimbursement to support team collaboration home office work
Your recruiter will share more about the salary range and benefits package for your role during the hiring process.
About Included Health
Included Health is a new kind of healthcare company, delivering integrated virtual care and navigation. We’re on a mission to raise the standard of healthcare for everyone. We break down barriers to provide high-quality care for every person in every community — no matter where they are in their health journey or what type of care they need, from acute to chronic, behavioral to physical. We offer our members care guidance, advocacy, and access to personalized virtual and in-person care for everyday and urgent care, primary care, behavioral health, and specialty care. It’s all included. Learn more at includedhealth.com.
-----
Included Health is an Equal Opportunity Employer and considers applicants for employment without regard to race, color, religion, sex, orientation, national origin, age, disability, genetics or any other basis forbidden under federal, state, or local law. Included Health considers all qualified applicants in accordance with the San Francisco Fair Chance Ordinance.