Deputy General Counsel – Cyber Security & Privacy

Requisition Number: 2284133
Job Category: Legal
Primary Location: Eden Prairie, MN, US
(Remote considered)

Doctor consulting nurse at nurse station.

UnitedHealth Group is a health care and well-being company that’s dedicated to improving the health outcomes of millions around the world. We are comprised of two distinct and complementary businesses, UnitedHealthcare and Optum, working to build a better health system for all. Here, your contributions matter as they will help transform health care for years to come. Make an impact with a diverse team that shares your passion for helping others. Join us to start Caring. Connecting. Growing together.

This role will provide senior level privacy and security legal counsel to UnitedHealth Group and Enterprise Security and Resiliency Office (ESRO) leaders, as well as provide legal support to the overall Enterprise privacy and security programs.   This position will address regulatory and legal considerations and obligations arising from the Enterprise’s handling of personal and confidential data. This individual will also provide experience, expertise and leadership counsel on cyber events and other escalated privacy or security investigations.  In this role, you will provide advice and drive compliance efforts with respect to global privacy, cybersecurity, and data protection laws in all state, federal and global jurisdictions. You will be a part of a team who help support our businesses operate in a manner that complies with privacy, cybersecurity, and data protection regulations. You will be a partner to the business, leading initiatives and providing pragmatic, consultative advice.  You will act as a point of escalation on behalf of the Enterprise Privacy Office for cyber events and escalated privacy and security legal matters with ESRO leaders and other stakeholders.

You’ll enjoy the flexibility to work remotely * from anywhere within the U.S. as you take on some tough challenges.

Primary Responsibilities:

  • Identify security and privacy risks and provide guidance to leaders on mitigating risk associated with privacy, security and new and evolving cyber issues
  • Provide counsel and advise leaders on risk remediation and best practices in the privacy and security space
  • Drive compliance efforts relating to cybersecurity, global privacy and data security regulations and standards (e.g., NYDFS)
  • Lead implementation relating to new and pending laws that impact UnitedHealth Groups privacy, cybersecurity and data protection program; translate that into practical, effective advice
  • Implement and update privacy, cybersecurity, and data protection related policies, procedures, best practices, and guidelines
  • Analyze and resolve privacy and security questions and issues that arise in business operations and commercial relationships
  • Counsel on information technology development, acquisition and implementation and data architecture to ensure compliance with global privacy and data protection laws such as data localization requirements
  • Oversee legal and compliance aspects of insider risk and Red Flag programs
  • Counsel on privacy and security incident preparedness and management, including providing counsel and participation in tabletop exercises
  • Demonstrate the ability to lead and coordinate a significant, multi department privacy/security breach investigation, concomitant regulatory inquiries and related litigation
  • Assist with and support other day-to-day legal and compliance matters and processes associated with the privacy and security programs as needed
  • Prepare, coordinate, and deliver legal and compliance training regarding security, privacy, data protection, information risk management and associated activities
  • Work collaboratively with intra-team and cross-functional partners, including UnitedHealth Group Corporate Security, Communications and Technology, and other department and business units to develop creative solutions to complex challenges related to a significant cyber event
  • Closely collaborate and align about privacy, cybersecurity, and data protection compliance or related issues with the members of the Enterprise Privacy Office, Enterprise Security and Resiliency Office, Technology, Human Resources, and other relevant (group) functions

You’ll be rewarded and recognized for your performance in an environment that will challenge you and give you clear direction on what it takes to succeed in your role as well as provide development for other roles you may be interested in.

Required Qualifications:

  • 10-15+ years’ experience and expertise in the HIPAA Security Rule and other state and federal law cybersecurity requirements
  • Law firm and/or Fortune 100 in-house Privacy and Security experience preferred
  • Experience managing  significant and publicized cyber events end-to-end
  • Solid executive communication skills and experience in counseling C-suite leaders and board members on security related matters/risks
  • Demonstrated team player, confidently able to work in a matrixed environment

*All employees working remotely will be required to adhere to UnitedHealth Group’s Telecommuter Policy.

The salary range for this role is $191,800 to $364,800 annually based on full-time employment. Pay is based on several factors including but not limited to local labor markets, education, work experience, certifications, etc. UnitedHealth Group complies with all minimum wage laws as applicable. In addition to your salary, UnitedHealth Group offers benefits such as, a comprehensive benefits package, incentive and recognition programs, equity stock purchase and 401k contribution (all benefits are subject to eligibility requirements). No matter where or when you begin a career with UnitedHealth Group, you’ll find a far-reaching choice of benefits and incentives.

This will be posted for a minimum of 2 business days or until a sufficient candidate pool has been collected. Job posting may come down early due to volume of applicants.

At UnitedHealth Group, our mission is to help people live healthier lives and make the health system work better for everyone. We believe everyone–of every race, gender, sexuality, age, location and income–deserves the opportunity to live their healthiest life. Today, however, there are still far too many barriers to good health which are disproportionately experienced by people of color, historically marginalized groups and those with lower incomes. We are committed to mitigating our impact on the environment and enabling and delivering equitable care that addresses health disparities and improves health outcomes — an enterprise priority reflected in our mission.

UnitedHealth Group is an Equal Employment Opportunity employer under applicable law and qualified applicants will receive consideration for employment without regard to race, national origin, religion, age, color, sex, sexual orientation, gender identity, disability, or protected veteran status, or any other characteristic protected by local, state, or federal laws, rules, or regulations.

UnitedHealth Group is a drug – free workplace. Candidates are required to pass a drug test before beginning employment.

Additional Job Detail Information

Requisition Number 2284133

Business Segment Corporate

Employee Status Regular

Job Level Executive

Travel Yes, 10 % of the Time

Country: US

Overtime Status Exempt

Schedule Full-time

Shift Day Job

Telecommuter Position Yes

Our Hiring Process

We want you to know what our hiring process looks like. Watch the video and find out what to expect along the way.

What It’s Like

Watch the video and hear how our employees describe what it’s like to work here in Customer Service.

Careers at Optum

If you want to use your abilities to help us challenge the status quo and achieve on our ambitious mission, this is the right place for you. We are creating and delivering quality health care solutions that deeply impact the health care system. And this means opportunities for people like you to grow and innovate with us.

Closing the GAP

Our team members help close the gap in health care. Take a closer look and see how Lisa helps members navigate a complex health care system.