POSITION SUMMARY:
The Privacy Manager provides support for operations and initiatives critical to Boston Medical Center Health Systems (BMCHS) information privacy practices. It is expected that this individual will support the implementation of our information privacy strategy and goals, which includes various projects and programs central to the privacy function throughout the organization.
Reporting to the Chief Privacy Officer, the Privacy Manager is responsible for the implementation of all aspects of privacy and security breach case intake, investigations, internal reporting, monitoring and improvement efforts, and delegation of work assignments to other Privacy Analysts. This role is responsible for overseeing daily work of the Privacy Analysts on the team, providing performance management feedback, resolving more complex privacy and compliance issues, and will serve as the stand-in Chief Privacy Officer when they are out. The Privacy Manager assists with projects, external incident and breach reporting, and development of employee training and engagement material. The Privacy Manager monitors policies and procedures to align with and reflect current and future state and federal regulations (including HIPAA and HITECH).
Position: Privacy Manager
Department: Compliance
Schedule: Full Time
Location: HYBRID
ESSENTIAL RESPONSIBILITIES / DUTIES:
The Privacy Manager will champion good information stewardship and privacy practices across BMCHS hospitals.
Prepares and completes all steps necessary to resolve privacy and security incidents. This includes:
Team Leadership
Project Management:
Human Resources and Compliance Line:
Research Privacy and Security Reviews:
Policy Management:
Responsible for all minute taking at Privacy Office meetings or at the request of the Chief Privacy Officer. Proactively prepares draft agendas for meetings with other departments for approval by Chief Privacy Officer.
Works cooperatively with staff in Release of Information and other units in HIM to facilitate patient requests for records, amendments, and to restrict access to protected health information, when appropriate.
Assists with policy drafting and updates by tracking developments in state and federal regulations and laws.
Develops knowledge of applicable federal and state privacy laws and monitors advancements in information privacy technologies to assist with organizational adaptation and compliance.
Tracks and brings to completion all consultation requests from workforce members.
Provides metrics on incidents and consults from the incident tracking system on a quarterly basis and as needed.
Assist the Chief Privacy Officer with the preparation of quarterly reports and presentations.
Drafts Workplan for Privacy / General Compliance and reviews with team prior to submission on an annual basis.
Performs other duties as needed or assigned.
(The above statements in this job description are intended to depict the general nature and level of work assigned to the employee(s) in this job. The above is not intended to represent an exhaustive list of accountable duties and responsibilities required).
JOB REQUIREMENTS
REQUIRED EDUCATION AND EXPERIENCE:
Bachelor’s Degree (B.A. or B.S.) and 6-8 years of privacy and compliance experience, or equivalent combination of education and experience required or equivalent experience.
PREFERRED EDUCATION AND EXPERIENCE:
Paralegal, Mediation, Juris Doctor or relevant Masters Degree(s) and 2-4 years of privacy and/or compliance experience.
1 year of leadership experience on a team
CERTIFICATES, LICENSES, REGISTRATIONS REQUIRED:
N/A
CERTIFICATES, LICENSES, REGISTRATIONS PREFERRED:
Certified Information Privacy Professional (CIPP), Certified in Healthcare Privacy Compliance (CHPC), Healthcare Certified Information Security and Privacy Professional (HCISPP) or Certified Mediator preferred. Efforts to obtain a relevant professional certification after hire strongly encouraged for candidates who are not certified at time of hire.
KNOWLEDGE, SKILLS & ABILITIES (KSAs):
Expert knowledge of HIPAA Privacy and Security Rules, Omnibus Rule, Breach Notification Rule, and State privacy laws.
Outstanding organizational and analytical skills.
Detailed-oriented with excellent follow-through skills to drive projects to closure.
Ability to translate regulatory requirements into practical and actionable elements.
Excellent interpersonal skills with solid understanding of the importance of relationship-building and how to effectively influence behavior.
Experience communicating with health care staff and patients in a professional manner.
Skilled investigator in complex issues; ability to see nuances of situation and hone in on the underlying issues.
Skilled “lateral thinker”. Be able to challenge assumptions and suspend judgment until appropriate.
Strategic thinker able to map out work-flows and processes that converge with the facts then presented.
Strong independent worker, but also team oriented.
Ability to delegate
Equal Opportunity Employer/Disabled/Veterans
According to the FTC, there has been a rise in employment offer scams. Our current job openings are listed on our website and applications are received only through our website. We do not ask or require downloads of any applications, or “apps” job offers are not extended over text messages or social media platforms. We do not ask individuals to purchase equipment for or prior to employment.
Thank you
Your information:
Thank you
Thank you
EEO & Accommodation Statement
Boston Medical Center is an equal employment/affirmative action employer. We ensure equal employment opportunities for all, without regard to race, color, religion, sex, national origin, age, disability, veteran status, sexual orientation, gender identity and/or expression or any other non-job-related characteristic.
If you need accommodation for any part of the application process because of a medical condition or disability, please send an e-mail to Talentacquisition@bmc.org or call 617-638-8582 to let us know the nature of your request
E-Verify Program
Boston Medical Center participates in the Electronic Employment Verification Program. As an E-Verify employer, prospective employees of BMC must complete a background check and receive medical clearance before beginning their employment at the hospital.
Federal Trade Commission Statement:
According to the FTC, there has been a rise in employment offer scams. Our current job openings are listed on our website and applications are received only through our website. We do not ask or require downloads of any applications, or “apps” job offers are not extended over text messages or social media platforms. We do not ask individuals to purchase equipment for or prior to employment. To avoid becoming a victim of an employment offer scam, please follow these tips from the FTC: FTC Tips
Thank you
Before you go, don't forget to join our talent community!
Thank you
We use cookies to make your interactions with our website more meaningful. They help us better understand how our websites are used, so we can tailor content for you. For more information about the different cookies we are using, read the Privacy Statement. By continuing to navigate the site, you agree to the use of cookies on our behalf.