Privacy And Compliance Legal Counsel And Director
Current* Direct privacy, data protection, security, and compliance initiatives for multiple clinical laboratory locations, both domestic and foreign.* Advocate and support Privacy by Design principles to be embedded in existing and new technologies and software of Flow Health. * Critically analyze and assess company clinical laboratory testing activities to advise and counsel on hybrid entity, affiliated covered entity, and multiple covered function (health care provider and health care clearinghouse) matters.* Handle data incidents and breaches, including whether an event is an incident or an incident that is also a breach; Determine applicable data breach notification laws and timely comply with them and their requirements; Use spreadsheet and other technologies to categorize what actions need to be taken insofar as reporting; communications with the press and media, as dictated by applicable law; Analyze, assess, determine and calendar notification timeframes; Journal and archive all events, incidents, and breaches. * Carry out profile, impact, and gap analyses for company under CCPA, as revised by CPRA, HIPAA Privacy and Security Rules, TCPA, CAN-SPAM, CPA, CDPA, VCDPA, UCPA, PIPEDA, and GDPR; Provide legal counsel and advise on Stark, anti-kickback, and 18 U.S.C. 220; Direct SOC2 activities.* Draft and negotiate business associate agreements, complex corporate agreements and relationships; Simplify, streamline, and improve Flow Health contracting processes as a clinical laboratory, reference laboratory, software and technology white branding presence in precision medical and interoperability. * Developed HHS OIG Compliance Program for clinical laboratory operations.