Description:
Program Overview:The Office of General Counsel (OGC) provides legal advice and assistance to the entire agency. Specifically, OGC works to ensure that the innovative programs and initiatives of DOHMH are supported by a dedicated legal team. The OGC team is comprised of attorneys who work in a variety of areas including legal affairs (legal and policy analysis; health code enforcement; records access), contracts, privacy, and employment law. OGC also houses the Institutional Review Board and attorneys working in the Assisted Outpatient Treatment program.
Position Summary:
DOHMH has an opening for one attorney to serve as an Assistant General Counsel - Privacy. The Assistant General Counsel will be a key member of the Privacy unit within Legal Affairs to provide counsel and support on legal matters related to privacy and data security. The attorney will be under the direction of the General Counsel, Deputy General Counsel, and the Chief Privacy Officer (CPO),
Specifically, the Assistant General Counsel will:
- Draft, review and negotiate data privacy and security agreements (such as cloud security agreements, end user license agreements, terms of service, privacy policies, and others).
- Draft, review, and negotiate various contracts with vendors procured by the agency.
- Provide support to the DOHMH CPO to develop and implement policies for data privacy and security.
- Support the CPO with investigations of security incidents and notifications to impacted individuals.
- Provide practical, timely, strategic, and high-quality legal recommendations and counsel to the IT division on data security and cybersecurity.
- Advise on best practice and compliance with privacy and data protection laws.
- Deliver data privacy and security trainings to the DOHMH workforce.
- Participate and engage in cross divisional collaborative projects that require legal support.
- Learn and keep informed of federal, state, and local laws and regulations as well as industry standards for data privacy and security.
- Other assignments, as needed, to support the Office of General Counsel.
Qualifications and Requirements:
- Juris Doctor (JD) degree and at least two years of full-time, relevant legal experience.
- Two years of satisfactory United States legal experience subsequent to admission to any state bar.
- Incumbents must remain Members of the New York State Bar in good standing for the duration of this employment.
- Previous experience working in fields related to privacy and contract law.
- The ideal candidate for this position must be a pro-active and self-motivated individual with the ability to work in teams and in a highly dynamic environment with multiple stakeholders and timelines.
- Familiarity with standards, guidelines, and best practices to manage privacy and cybersecurity risk, such as the NIST Privacy Framework and NIST Cybersecurity Framework.
- Experience with stakeholder engagement and project management.
- Certified Information Privacy Professional certification through the International Association of Privacy Professionals (IAAP).
- Excellent communication (verbal & written) and interpersonal skills.
- Strong analytical skills and ability to manage and report complex information.
- Experience with data collection, analysis and interpretation.
- Desire to grow professionally, develop new skills and willingness to work outside of comfort zone.
- Experience working with the public health sector and coordinating projects involving multiple stakeholders.
- Ability to prioritize and work in fast-paced environment with hard deadlines.
- Fluency in Microsoft Word, Excel, Outlook, and PowerPoint.