Privacy Impact Assessment (PIA) Specialists (2)
Back to All Jobs
[social_share]
Our client requires two (2) specialists to support privacy matters for various IT projects. This role will ensure compliance with privacy obligations and integrates privacy into project designs to protect personal health information (PHI) and reduce organizational risk. Responsibilities include conducting Privacy Impact Assessments, providing privacy consultations on complex health privacy issues, identifying and mitigating privacy risks, creating data flow diagrams, reviewing agreements, developing privacy requirements for projects, and supporting business teams with privacy advisory. Additionally, the specialists will work on risk mitigation for PIA findings, update or develop new agreements.
Work is hybrid. Resource will be required to work onsite at client location in Toronto, ON upon clients’ request.
Toronto, Ontario (Hybrid)
Mandatory Requirements
- Minimum of 3 years’ health privacy experience conducting privacy impact assessments (PIAs) on medium to high complexity projects
- Minimum 5 years’ direct operational level privacy experience preferably in a health sector and/or IT environment
- Minimum 5 years’ experience drafting and reviewing privacy requirements for data sharing agreements
- Minimum 5 years’ experience developing privacy policies and procedures, requirements, or controls
- Familiarity with the Personal Health Information Protection Act (PHIPA), and its related requirements for Health Information Network Providers (HINP) and Electronic Service Providers (ESP)
- Familiarity with Application Programming Interface (API) functionality and management
- Familiarity with Electronic Medical Record (EMR) or Hospital Information System (HIS) infrastructure, design, and data flows
- Public Sector experience is preferred
Desirable Requirements
- University undergraduate or graduate degree in Health, Computer Science, Engineering, Law, Security, or a related discipline from a recognized institution or equivalent experience – desired
- Demonstrable knowledge of project management; Knowledge and understanding of Project Management’s Institute’s Project Management Body of Knowledge
- Experience working on and delivering multiple projects
- Demonstrated project management software skills and experience e.g. MS Project, MS Teams etc.
- Familiarity with Prescribed Entities (PEs) or Prescribed Persons (PP) under the Personal Health Information Protection Act (PHIPA), and their related requirements
- Familiarity with audit logging and Security Information and Event Management (SIEM) technology
- Familiarity with technical data protection controls and technology such as encryption and tokenization
- Knowledge and understanding of Accessibility for Ontarians with Disability Act (AODA) and related regulations and standards
Job Posting ID: 56187
Location: Toronto, Ontario (Hybrid)
Estimated Starting Date: May 22, 2025
Estimated End Date: till Mar 31, 2026 + pos. extension
Posting Closing Date: April 29, 2025
Apply for this Job Posting
Fill in the form below to submit your application for this position.