Senior Privacy Consultant
CurrentResponsible for managing the legal and operational risks around sensitive and critical information assets by assessing business operations on a continual basis, developing the right policies, procedures, and training programs, and overseeing all data agreements. Manage risks and avoid lawsuits by ensuring business operations are performed in compliance with state and federal laws. Manage, monitor, and remediate suspected or confirmed breaches and provide executive level briefings of incident and remediation. Provide regular reporting on privacy incidents to senior business leaders and the board of directors as part of a strategic enterprise risk management program, thus supporting business outcomes. Work with the vendor management team to ensure that compliance and privacy requirements are included in contracts by liaising with vendor management and procurement organizations. Create the necessary internal networks among the information security team and line of business executives, corporate compliance, audit, physical security, legal and HR management teams to ensure alignment as required. Providing practical advice and guidance on privacy and related issues to internal clients and stakeholders and developing solutions to such issues while effectively managing legal and practical business considerations. Interpreting and explaining contract terms and conditions for internal clients and stakeholders. Confirming that contracts are compliant with UnitedHealth Group’s policies and maintaining an understanding of the impact of any changes in UnitedHealth Group’s policies, organizational structure, and procedures. Effectively managing workflow, including multiple projects, in a proactive and highly responsive manner. Assist in performing critical incident response activities and ensuring that proper protection or corrective measures have been implemented when an incident/vulnerability has been discovered.