Privacy and Compliance Specialist in New York at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Privacy and Compliance Specialist based in the United States.
This is a high-impact, highly autonomous role focused on strengthening privacy and compliance operations within a fast-growing health technology environment.
You’ll help manage privacy programs, assessments, documentation, and data protection processes across the organization.
The role sits at the intersection of privacy law, compliance, project management, technology, and healthcare operations.
You’ll collaborate closely with Legal, Engineering, Product, Security, Commercial, and other cross-functional teams.
You’ll serve as a trusted resource for customer and partner privacy inquiries while helping translate complex requirements into practical guidance.
The position also offers opportunities to improve workflows, introduce automation, and build meaningful visibility into privacy risks and program performance.
It’s an ideal opportunity for a proactive privacy professional who values ownership, evidence-based decision-making, and meaningful impact.
- Manage day-to-day privacy compliance program operations, including policies, procedures, records, documentation, and supporting processes.
- Conduct and coordinate Privacy Impact Assessments (PIAs/DPIAs) and data protection assessments for new products, features, vendors, and business initiatives.
- Maintain records of processing activities, data inventories, and data flow documentation.
- Monitor and operationalize requirements related to HIPAA, CCPA/CPRA, state comprehensive privacy laws, and other applicable data protection frameworks.
- Support the implementation of Privacy by Design principles across products, services, and business operations.
- Support data subject rights requests and privacy incident response processes.
- Act as a primary point of contact for privacy and data-related questions from customers, prospects, and business partners.
- Prepare and maintain responses to privacy questionnaires, RFPs, security assessments, and due diligence requests.
- Support the review and negotiation of Data Processing Agreements and Business Associate Agreements.
- Lead privacy and compliance projects from planning through execution, coordinating stakeholders, timelines, deliverables, and priorities.
- Develop and deliver privacy training and awareness initiatives to promote responsible handling of protected health information and other sensitive data.
- Build privacy metrics, dashboards, and reporting to provide leadership and governance stakeholders with visibility into program performance and risk.
- Identify opportunities to streamline, automate, and continuously improve privacy processes and workflows.
- 4–7 years of professional experience in privacy, compliance, data protection, or a closely related field.
- Working knowledge of HIPAA, CCPA/CPRA, state consumer privacy laws, and health data protection requirements.
- Practical experience with privacy impact assessments, incident response processes, data subject rights requests, or similar privacy operations.
- Demonstrated project management capabilities, including the ability to manage multiple concurrent workstreams and cross-functional stakeholders.
- Strong written and verbal communication skills, with the ability to translate complex privacy and regulatory requirements into clear, actionable guidance.
- Strong organizational skills, attention to detail, and the ability to operate independently in a high-autonomy environment.
- Proactive use of AI tools to improve productivity, automate workflows, and increase individual and team efficiency.
- Strong sense of ownership, initiative, and accountability, with a focus on meaningful outcomes rather than unnecessary process.
- Collaborative and low-ego approach, with the ability to build trust across Legal, Engineering, Product, Security, Commercial, and other teams.
- Evidence-based mindset with an appreciation for data, science, transparency, and continuous improvement.
- Ability to handle highly confidential patient, health, compensation, business, and personal information with appropriate discretion.
- Candidates must be able to comply with applicable security and privacy requirements when handling protected health information.
- Base salary range of $100,000–$120,000, with compensation determined based on qualifications, experience, and location.
- Equity opportunities.
- Remote-first work environment with distributed teams and office hubs available in Denver and San Francisco.
- Comprehensive benefits package, subject to applicable employment terms and eligibility.
- Opportunity to work at the intersection of healthcare, technology, privacy, and compliance.
- High level of autonomy and ownership in a mission-driven environment.
- Opportunity to improve and automate privacy operations while helping shape a growing privacy program.
- Collaborative culture emphasizing transparency, empowerment, evidence-based decisions, and meaningful impact.
- Security and privacy training provided for responsibilities involving protected health information.