Juris Doctor (JD) degree with two years of relevant legal experience.
Two years of post-bar admission legal work in the U.S.
Membership in the New York State Bar in good standing is required.
Experience in privacy and contract law is preferred.
Strong ability to work collaboratively in a dynamic environment with multiple stakeholders.
Responsibilities
Draft, review, and negotiate privacy and security agreements.
Negotiate contracts with various agency vendors.
Assist in developing privacy and security policies under the CPO's guidance.
Support investigations of security incidents and notify affected individuals.
Provide strategic legal counsel on cybersecurity and data security to the IT division.
Advise on compliance with privacy laws and best practices.
Deliver training on data privacy and security to agency staff.
Benefits
Hybrid Work Schedule.
Generous Paid Time Off and Holidays.
Comprehensive medical, dental, and vision benefits.
Flexible Spending Accounts and Commuter Benefits.
Employer-paid Life Insurance and Disability Coverage.
403(b) retirement plan with employer matching.
College Savings Plan opportunities.
Continuous professional development and training opportunities.
Full Job Description
The selected candidate will be an employee of Public Health Solutions, a nonprofit organization which is the fiscal and administrative manager of the grant but will be supervised by the NYC Health Department. This is a grant-funded position ending in November 2027.
Program Overview:
The Office of General Counsel (OGC) provides legal advice and assistance to the entire agency. Specifically, OGC works to ensure that the innovative programs and initiatives of DOHMH are supported by a dedicated legal team. The OGC team is comprised of attorneys who work in a variety of areas including legal affairs (legal and policy analysis; health code enforcement; records access), contracts, privacy, and employment law. OGC also houses the Institutional Review Board and attorneys working in the Assisted Outpatient Treatment program.
Position Summary:
DOHMH has an opening for one attorney to serve as an Assistant General Counsel - Privacy. The Assistant General Counsel will be a key member of the Privacy unit within Legal Affairs to provide counsel and support on legal matters related to privacy and data security. The attorney will be under the direction of the General Counsel, Deputy General Counsel, and the Chief Privacy Officer (CPO),
Specifically, the Assistant General Counsel will:
Draft, review and negotiate data privacy and security agreements (such as cloud security agreements, end user license agreements, terms of service, privacy policies, and others).
Draft, review, and negotiate various contracts with vendors procured by the agency.
Provide support to the DOHMH CPO to develop and implement policies for data privacy and security.
Support the CPO with investigations of security incidents and notifications to impacted individuals.
Provide practical, timely, strategic, and high-quality legal recommendations and counsel to the IT division on data security and cybersecurity.
Advise on best practice and compliance with privacy and data protection laws.
Deliver data privacy and security trainings to the DOHMH workforce.
Participate and engage in cross divisional collaborative projects that require legal support.
Learn and keep informed of federal, state, and local laws and regulations as well as industry standards for data privacy and security.
Other assignments, as needed, to support the Office of General Counsel.
Qualifications and Requirements:
Juris Doctor (JD) degree and at least two years of full-time, relevant legal experience.
Two years of satisfactory United States legal experience subsequent to admission to any state bar.
Incumbents must remain Members of the New York State Bar in good standing for the duration of this employment.
Previous experience working in fields related to privacy and contract law.
The ideal candidate for this position must be a pro-active and self-motivated individual with the ability to work in teams and in a highly dynamic environment with multiple stakeholders and timelines.
Familiarity with standards, guidelines, and best practices to manage privacy and cybersecurity risk, such as the NIST Privacy Framework and NIST Cybersecurity Framework.
Additional Desired Qualities:
Experience with stakeholder engagement and project management.
Certified Information Privacy Professional certification through the International Association of Privacy Professionals (IAAP).
Excellent communication (verbal & written) and interpersonal skills.
Strong analytical skills and ability to manage and report complex information.
Experience with data collection, analysis and interpretation.
Desire to grow professionally, develop new skills and willingness to work outside of comfort zone.
Experience working with the public health sector and coordinating projects involving multiple stakeholders.
Ability to prioritize and work in fast-paced environment with hard deadlines.
Fluency in Microsoft Word, Excel, Outlook, and PowerPoint.
Benefit:
Hybrid Work Schedule.
Generous Paid Time Off and Holidays.
An attractive and comprehensive benefits package including Medical, Dental and Vision.
Flexible Spending Accounts and Commuter Benefits.
Company Paid Life Insurance and Disability Coverage.
403(b) + employer matching and discretionary company contributions.
College Savings Plan.
Ongoing trainings and continuous opportunities for professional growth and development.
Additional Information:
This is a temporary grant-funded position ending in November 2027.
This individual must reside in the tri-state area (NY, NJ, CT) by their confirmed start date.
Preference may be given to individuals residing in New York City (5 boroughs) or surrounding New York State counties.
This individual will be expected to work non-business hours during emergencies.