RQ00485 - Privacy Impact Assessment (PIA) Specialist - Senior
1 week ago
Deliverables:
The Senior Privacy Impact Assessment (PIA) Specialist will be required to work with the appropriate teams to:
Conduct/complete Privacy Impact Assessments and associated documentation
Provide Privacy Consultation on a diverse range of complex, multi-stakeholder health privacy issues and Information Technology (IT) initiatives throughout the product/service development and deployment life cycle
Develop risk mitigation plans
Create or inform the creation of data flow diagrams and associated privacy controls and compliance requirements
Review and advise on agreements, including data sharing agreements
Deliverables:
Work with the project and product teams on risk mitigation of PIA findings as required under PHIPA;
Support work related to update and/or developing new agreements;
Other duties as required. Note that knowledge of current privacy and data protection policy and legislation, especially Ontario's Personal Health Information Protection Act (PHIPA), will be critical to ensure success.
Responsibilities:
The Senior Privacy Impact Assessment (PIA) Specialist will lead and support various IT and data and analytics initiatives, including:
Conduct privacy impact assessments for medium to high complex initiatives
May be required to support investigating privacy incidents, patient inquiries, and privacy requests of any kind
Identify and assess privacy risks
Provide privacy advisory and support to business teams
Lead and/or participate in OH, regional or provincial committees or project teams as the privacy Subject Matter Expert
Identify privacy requirements
Develop strong relationships with various internal and external stakeholders to foster a culture of privacy
Respond and provide advice and legislative interpretation for information and access requests, consent management requests, complaints or inquiries, appeals and privacy issues under the Personal Health Information Protection Act, 2004 and the Freedom of Information and Protection of Privacy Act
Support privacy program projects and activities to improve the efficiency and effectiveness of the Privacy Office
Develop and deliver privacy training for Ontario Health
Other duties as required
Requirements
Must Haves:
Minimum 5 years' experience developing privacy policies and procedures, requirements or controls
Familiarity with the Personal Health Information Protection Act, 2004 (PHIPA), and its related requirements for Prescribed Entities, Prescribed Persons, Health Information Network Providers (HINP) and Electronic Service Providers (ESP)
Nice to Have:
Familiarity with EMR (Electronic Medical Record) or HIS (Health Information System) infrastructure, design, and data flows
Familiarity with Application Programming Interface (API) functionality and management
Familiarity with Public Key Infrastructure (PKI)
Desired Skills:
Demonstrated knowledge and experience of access and privacy requirements and practices, preferably related to the health and public sectors
Recognized security certification or designation is an asset
Excellent knowledge of privacy and security concepts, trends, and issues. This will include an understanding of their impact on business processes, as well as skill with interpretation and communication of principles and compliance requirements
Knowledge and ability to interpret Ontario's Personal Health Information Protection Act, 2004 (PHIPA)
Knowledge and ability to interpret Ontario's Freedom of Information and Protection of Privacy Act (FIPPA)
Analytical skills to understand the current and future access and privacy implications of policies, decisions and business initiatives
Thorough understanding of "privacy-by-design" and best practices
Experience with conducting and/or providing oversight for Privacy Impact Assessments and Privacy Threshold Assessments, including developing privacy requirements, risk mitigation plans, corporate policies and developing and/or delivering training content
Knowledge of technology architecture and infrastructure, digital health solutions and services, enterprise and corporate IT including information and cyber security preferred
Working knowledge of digital health technologies and information security industry standards
Excel in a fast-paced and project focused environment
Exceptional analytic and creative problem-solving abilities
Good understanding of related disciplines, such as IT system design, policy development (privacy or security), business architecture, legal processes, Freedom of Information administration, business analysis, risk management, project management
Knowledge of Information Technology concepts and processes that impact the protection of personal information, including (but not limited to) Internet tools, system interfaces, information security, information architecture and data flows
Excellent Communication skills both verbal and written, and strong stakeholder engagement skills
Time Management, with the ability to manage tight deadlines and prioritize multiple projects
Required Experience:
Minimum 5 years' direct operational level privacy experience in a health sector and/or IT environment or both.
Minimum 5 years' experience in developing privacy policies and procedures, requirements, or controls.
Minimum 5 years' experience drafting and reviewing privacy requirements for data sharing agreements.
Familiarity with the Personal Health Information Protection Act (PHIPA), and requirements related to Prescribed Person Authority, Prescribed Entity Authority, Health Information Network Provider (HINP) and Electronic Service Provider (ESP).
Familiarity with Application Programming Interface (API) functionality and management.
Familiarity with Electronic Medical Record (EMR) or Hospital Information System (HIS) infrastructure, design, and data flows.
-
Toronto, Ontario, Canada Maarut Inc Full timeDeliverables:The Senior Privacy Impact Assessment (PIA) Specialist will be required to work with the appropriate teams to: Conduct/complete Privacy Threshold Assessments and associated documentation Conduct/complete Privacy Impact Assessments and associated documentation Provide Privacy Consultation on a diverse range of complex, multi-stakeholder health...
-
Toronto, Ontario, Canada Maarut Inc Full timeResponsibilities:Required to lead or support the development of a privacy impact assessment that evaluates whether new technologies, information systems, or proposed programs or policies meet legal and policy privacy requirements, determine and mitigate risks, and address clients' concerns. These requirements include ensuring that the program complies with...
-
Toronto, Ontario, Canada Amanst Inc Full timeMust HavesUnderstanding of policy development to lead or participate in the development of options and strategies on information management and privacy protectionManaging privacy risks in the collection, use and disclosure of Personal Health Information (PHI)Demonstrated experience and competency to identify and evaluate emerging privacy issues, changes, and...
-
Privacy Impact Assessment
4 days ago
Toronto, Ontario, Canada Pride Global Full time**Job Title: Privacy Impact Assessment (PIA) Specialist - SeniorLocation: Toronto, ON (Hybrid)Duration: 6 Months (Possible Extension)Client: Public Healthcare Sector (Preferred)Pay Rate: C$80-C$90/hrKey Responsibilities**Lead and conduct Privacy Impact Assessments (PIAs) and Privacy Threshold Assessments (PTAs) for medium to high-complexity...
-
Privacy Impact Assessment
4 days ago
Toronto, Ontario, Canada Russell Tobin Full time**Job Title: Privacy Impact Assessment (PIA) Specialist - SeniorLocation: Toronto, ON (Hybrid)Duration: 6 Months (Possible Extension)Client: Public Healthcare Sector (Preferred)Pay Rate: C$80-C$90/hrKey Responsibilities**Lead and conduct Privacy Impact Assessments (PIAs) and Privacy Threshold Assessments (PTAs) for medium to high-complexity...
-
Toronto, Ontario, Canada Foilcon Full timeHM Note: This hybrid contract role is three (3) days in office. Candidate resumes must include first and last name, email and telephone contact information.DescriptionBackground Information:The purpose of this procurement is to acquire two Senior Privacy (PIA) Specialists to provide dedicated privacy subject matter expert to assist with supporting privacy...
-
Privacy Impact Assessment
1 week ago
Toronto, Ontario, Canada Foilcon Full timeHM Note: This onsite contract role is in office every day at the manager's discretion. Candidate resumes must include first and last name, email and telephone contact information.DescriptionResponsibilities:Required to lead or support the development of a privacy impact assessment that evaluates whether new technologies, information systems, or proposed...
-
Privacy Impact Assessment Specialist
1 week ago
Toronto, Ontario, Canada Teckhorizon Inc Full timeAbout The RoleWe are seeking a Senior Privacy Consultant to support the our Client in assessing privacy risks associated with new technologies, digital systems, and programs. The role ensures compliance with Ontario, federal, and private sector privacy legislation while identifying and mitigating privacy risks before solutions are implemented.Key...
-
Senior Privacy Impact Assessment
1 week ago
Toronto, Ontario, Canada CCI- Computer Consultants International, Inc. Full timeCandidates MUST be authorized to work in Canada / hold a valid work visa. CCI does not sponsor work visas.Description:· Develop privacy impact assessments and review recommendations from the privacy impact assessment (PIA) of proposed solution and business processes· Lead and provide technical expertise in the development of access and privacy tools to...
-
privacy impact assessment
1 week ago
Toronto, Ontario, Canada SOFTLINE TECHNOLOGY Full timeResponsibilities:Required to lead or support the development of a privacy impact assessment that evaluates whether new technologies, information systems, or proposed programs or policies meet legal and policy privacy requirements, determine and mitigate risks, and address clients' concerns.These requirements include ensuring that the program complies with...