Senior Director of Compliance and Privacy General Administration Rochester, NY – Hybrid Full-Time Exempt: 40 hours Put the CARE in your CAREER! At CCSI, our mission is to activate possibilities for our customers and employees through collaboration, compassion, equity, and imagination. For more than 30 years, CCSI has been a leading non-profit partner to local governments, schools, and community-based organizations, helping them improve their business processes so they can focus on their missions. If you’re looking for a career with purpose that creates lasting change in the community, we encourage you to apply. We are seeking a talented Senior Director of Compliance and Privacy to join our team of nearly 500 employees. The CCSI Senior Director of Compliance and Privacy is responsible for these focus areas within the organization: Business Ethics, Corporate Compliance, Risk Management and Privacy. In this capacity, the Senior Director of Compliance and Privacy oversees the compliance and audit programs that focus on the identification and mitigation of risk, regulatory compliance, business ethics and internal controls for the organization. This position also includes consulting hours under contract with CCSI customers. The Senior Director of Compliance and Privacy ensures that CCSI’s compliance program is informed by quality improvement outcomes and that quality improvement efforts are supported by effective compliance controls, consistent with U.S. Department of Justice guidance on effective compliance programs. This role promotes coordination, data-driven risk management, and continuous improvement across the compliance and privacy functions and collaborates with the quality function. The Senior Director of Compliance and Privacy will report to the President & CEO, have direct access to the Board of Directors and have a strong operational partnership with the Chief of Business Operations. In this role, you will Corporate Compliance: Oversee the structure, needs and general operation of the Compliance Program and its related activities to prevent illegal, unethical, or improper conduct. Chair the Corporate Compliance Committee. Provides supervision to compliance program personnel and may provide mentorship to other CCSI personnel as needed. Partners with leadership to embed compliance and quality expectations into daily operations. Utilize data, outcomes, and trends to validate whether compliance controls are effective. Through collaboration and supervision of compliance program personnel: Maintains, provides direction, and tracks for trends within all compliance reporting systems including the Confidential/Anonymous Hotline. Develops and maintains an effective investigative effort of reported compliance issues throughout the organization up to and including recommendation creation and tracking through to resolution. Develops an effective compliance training program, including appropriate introductory training for new employees as well as ongoing training for all employees, leadership and the Board of Directors. Develops, executes and monitors an internal audit process and an external audit structure. Ensures the development of written compliance workplans including a training and audit plan on an annual basis. Develops and/or maintains all compliance, privacy, and risk management policies. Institutes and maintains an effective compliance communication program for the organization, including promoting (a) use of the Compliance Hotline; (b) heightened awareness of Code of Business Ethics, and (c) understanding of new and existing compliance issues and related policies and procedures. Monitors the performance of the Compliance Program and related activities on a continuing basis, taking appropriate steps to improve its effectiveness. Monitors, and as necessary, coordinates compliance activities of other departments, including participation in plan of corrections. Interacts with state and federal regulators as warranted. Ensures proper reporting to regulators and enforcement agencies as appropriate and/or required. Represents CCSI during internal and external audits, provides required documents/information. Consults with the Corporate attorney as needed to resolve difficult legal compliance issues. Business Ethics: Develops and periodically reviews and updates the agency Code of Business Ethics to ensure continuing currency and relevance in providing guidance to all workforce members, leaders and the Board of Directors. Act as an independent review and evaluation body to ensure that compliance and ethical issues/concerns within the organization are being appropriately identified, evaluated, investigated and resolved. Risk Management: Assist in the management of all identified enterprise risk and all associated functions of the risk management process; in partnership with the virtual Chief Information Security Officer (vCISO) acts as a resource and support to Leadership. Identify potential areas of compliance vulnerability and risk; develop/implement corrective action plans for resolution of problematic issues and provides general guidance on how to avoid or deal with similar situations in the future. Privacy: Evaluate CCSI’s existing policies and procedures for HIPAA, and other federal and state privacy regulation compliance. Develop and modify privacy policies and practices. Train new and existing workforce members on privacy policies. Investigate and acts on all incidents, complaints, and/or violations of privacy. Support the vCISO and the CITO in all security incidents. Act as liaison to all oversight entities in the event of a Breach. Customer Facing: Be responsible for the compliance consulting program including but not limited to customer discovery, contract development, project implementation, and customer satisfaction. Secures compliance-specific work upon request.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior
Number of Employees
251-500 employees