Serve as internal Privacy Counsel and Privacy Officer for the US market
Expert knowledge of data protection, information security, breach notification, data privacy policies and procedures, in compliance with GDPR, HIPAA, current State Privacy Laws in the US.
Conduct data privacy impact assessments for projects/products within scope.
Manage privacy and breach requirements including investigation, reporting, and remediation in accordance with regulatory requirements.
Liaise with regulatory bodies and internal stakeholders to address any data privacy concerns or compliance issues.
Provide training and support to Sanofi business unit teams on data privacy best practices and leading data privacy implementation of new state laws.
Ensure documentation and records of data processing activities are maintained accurately for audit purposes
Requirements
Juris Doctorate (JD) degree from an accredited law school, preferably with a focus in data privacy, and a valid license to practice law in the US
In depth knowledge of U.S. State and federal privacy laws/regulations (CCPA, HIPAA), data breach notification regulations and familiarity with AI regulations
Legal, regulatory, and policy analytical ability and knowledge, including experience analyzing proposed laws or regulations relevant to information privacy
Previous privacy/AI/breach notification/cybersecurity law, data loss prevention experience in a law firm
Healthcare experience, specifically providing product counseling to Product Management in the pharma/biotech space