Gateway Recruiting

Sr. Managing Counsel, Privacy & Cybersecurity

Gateway Recruiting  •  United States (Onsite)  •  1 day ago
Apply
AI can make mistakes so check important info. Chat history is never stored.

Job Description

The Sr. Managing Counsel, Privacy & Cybersecurity (USAC & LATAM) will lead the legal support for privacy and cybersecurity efforts across the company’s USAC and LATAM operations. This role involves advising and collaborating with IT, cybersecurity, business and functional teams, and external partners to manage legal risks related to data security and privacy. This position will play a key role in strengthening the company's security posture, ensuring compliance, and overseeing security and compliance assessments across applications, processes, products, and vendors. The Sr. Managing Counsel will report to the Chief Privacy Officer and the Vice President of Information and Digital, based in the United States.

Job Responsibilities:

  • Provide expert legal counsel to Privacy and Cybersecurity teams to ensure compliance with contractual commitments and regulatory obligations related to data privacy and security.
  • Conduct privacy and data protection impact assessments to ensure sensitive health data is used in compliance with privacy regulations and contractual rights.
  • Advise cybersecurity teams on incident response and investigations, ensuring proper documentation to minimize risks, protect privacy, and fulfill legal obligations during and after security incidents.
  • Collaborate with Procurement and business contracting teams to draft, negotiate, and maintain privacy/data protection terms in contracts and agreements.
  • Lead the company’s legal response to product vulnerabilities, information security breaches, and cyber events, including advising on regulatory notifications at federal, state, and international levels.
  • Counsel IT operations, security teams, and business units on developing and implementing cybersecurity plans, incident response strategies, and compliance with industry standards and regulations.
  • Work closely with Cybersecurity, Procurement, and Legal teams to manage third-party risks, including creating contract templates, negotiation frameworks, and advising on third-party audits and assessments.
  • Advise on the de-identification, pseudonymization, and anonymization of sensitive health data.
  • Provide guidance to business and product teams on data handling requirements based on sensitivity and compliance standards.
  • Implement “privacy by design” principles in product development processes and contribute to product risk assessments.
  • Stay informed on emerging global regulatory requirements impacting data privacy and security and advise the business accordingly.
  • Develop and provide legal content for privacy training programs, awareness campaigns, and compliance with sensitive health information handling requirements.

Minimum Qualifications:

  • Juris Doctor (JD) from an accredited law school or Law degree
  • 8 years of experience in data privacy and cybersecurity law, ideally within the life sciences, healthcare, medical devices, or similarly regulated industries
  • Expertise in US data privacy laws and regulations, including HIPAA and US state consumer privacy laws (e.g., CCPA, CPA, etc.).
  • Expertise in advising on cybersecurity, including product vulnerability, incident response, and legal obligations arising from privacy and security incidents
  • Experience managing HIPAA compliance programs and addressing legal issues related to health data.
  • Experience in advising on cybersecurity standards such as PCI DSS, the NIST Cybersecurity Framework, and the NIS2 Directive.

Preferred Qualifications:

  • Experience in Canada and LATAM data privacy laws and regulations, including LGPD, PIPEDA and the Privacy Act.
  • Familiarity with medical device regulations (FDA, FD&C Act) related to data privacy and security is a plus.
  • Experience working with IT systems, data management, and collaborating with both technical teams and senior leadership.
  • Excellent written, verbal, and presentation skills, with the ability to communicate complex legal matters in a clear, concise manner to non-legal stakeholders.
  • Strong analytical and strategic thinking skills, with the ability to solve complex legal challenges.
  • Highly organized, detail-oriented, and committed to maintaining high ethical standards and professionalism.
  • Proven ability to prioritize multiple projects and work under tight deadlines in a fast-paced, dynamic environment.
  • Expertise in global data privacy laws (including GDPR) and AI laws (including EU AI Act).
  • Relevant privacy and cybersecurity certifications (e.g., CIPP/US, AIGP, CIPP, CIPM, CIPP/E, CIPT, CHPC, CISSP) are preferred but not required.
  • Extensive experience in negotiating and drafting technology transactions and data protection agreements with customers, vendors, and partners.
  • Ability to manage legal and regulatory compliance across diverse frameworks.
  • Proven leadership skills with the ability to engage with internal stakeholders and lead significant projects.
  • Strong interpersonal and communication skills, with the ability to interface effectively at all organizational levels.
  • High responsiveness and client-focused, with an ability to manage and nurture strong internal relationships.
  • Preference for experience working within or with the life sciences industry.
Gateway Recruiting

About Gateway Recruiting

Since 2008, Gateway Recruiting has been solving one of the industry’s biggest challenges: the loss of genuine human connection. Built during a time of economic uncertainty, our mission has always been clear: to provide recruitment services rooted in trust, transparency, and relationships that last. Over the years, we’ve evolved into a pivotal player in the industry, earning accolades from Forbes for our commitment to excellence and our knack for connecting top-tier talent with companies spanning diverse sectors.

We specialize in delivering custom recruiting strategies and offer permanent, retained, and project-based recruiting services that meet our clients where they are and help them grow. From startups to Fortune 500 companies, our clients rely on us for fast, flexible, and high-impact recruiting, without the overhead of a traditional agency. Every search we take on is personal, strategic, and tailored to your specific needs.

At Gateway, we blend modern tools with human instinct. We move quickly, communicate clearly, and treat every hire as an opportunity to create long-term value, for both our clients and candidates.

----

Contingent – Retained – Contract/Contract-to-Perm Services

----

Experts in Recruiting in the Following Sectors:

Medical Device – Pharmaceutical – Life Sciences

Trade Compliance (Import/Export Compliance)

Chemical – Petrochemical

Technology Development and Hardware

Accounting, Finance and Tax

Logistics, Operations and Supply Chain

Sales and Business Development

Legal and Electronic Discovery

Computer Forensics – Cybersecurity – Incident Response

Artificial Intelligence – Blockchain Technology

----

Real Relationships. Real Talent. | Gateway to Global Careers

Industry
HR & Recruiting
Company Size
51-200 employees
Headquarters
New Braunfels, TX
Year Founded
2008
Social Media