HimalayasHimalayas logo
Bask HealthBH

Head of Compliance (HIPAA) and Security

Bask Health is a revolutionary telehealth platform that offers customizable solutions for healthcare providers, enhancing patient care through e-commerce capabilities.

Bask Health
United States only

Stay safe on Himalayas

Never send money to companies. Jobs on Himalayas will never require payment from applicants.

At Bask Health, every role is AI-first. Work starts in an LLM to clarify intent and context, moves into the right tools to explore and execute, is tested with real users and stakeholders, and is continuously refined as we learn. AI and self-serve research are default parts of how we work, not side experiments.
We are looking for people who take full ownership of their work, treat AI as a real collaborator, and care deeply about building a company that meaningfully improves how healthcare is delivered.
What You'll Do

Work AI-first: Use LLMs as your starting point — to clarify thinking, draft output, research problems, and move faster. Apply your own judgment to refine quality and make it count.

Validate and iterate: Test your work with real users and stakeholders. Use what you learn to improve before problems become patterns.

Share AI-native workflows: Document prompts, processes, and workflows that work. Share them across your team so we raise the bar together.

Key Responsibilities

  • Reporting to the General Counsel this position provides strategic and operational legal support across legal issues in cybersecurity, data privacy, artificial intelligence, and data governance.
  • Develop, implement, and maintain the organization's comprehensive data governance and security, privacy and compliance frameworks and policies.
  • Serve as the Privacy Officer and primary legal and operational authority on HIPAA, including Privacy Rule and Security Rule requirements
  • Ensure adherence to global, federal, state and emerging privacy laws (GDPR, CPRA, etc.), as applicable
  • Advise executive leadership on cybersecurity risk, mitigation, data governance, and regulatory obligations
  • Lead internal audits, risk assessments, and incident response planning
  • Manage relationships with outside counsel, regulators, and third-party vendors on compliance matters
  • Educate staff on data handling, privacy practices, and security threats. Organize and oOversee employee training programs on data privacy, security protocols, and HIPAA obligations
  • Monitor evolving federal and state data privacy legislation and assess organizational impact
  • Draft and enforce internal data security policies, procedures, and Business Associate Agreements (BAAs)
  • Represent the organization in regulatory investigations or breach notification proceedings, remediation efforts, and regulatory notifications.

Requirements

  • J.D. from an accredited law school and active bar membership required in NY
  • 4 to 6 years of experience in health law, data privacy, or cybersecurity law
  • Deep expertise in HIPAA/HITECH, state privacy laws, and corporate data security standards
  • Experience advising on or litigating data breach, privacy, or regulatory enforcement matters
  • Familiarity with NIST, SOC 2, ISO 27001, or similar security frameworks
  • Strong understanding of emerging technologies, cloud infrastructure, AI, and their legal implications

Bonus Qualifications

  • IAPP Certified Information Privacy Professional designation (CIPP) or similar
  • Certified HIPAA Professional (CHP) or equivalent

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Education

Postgraduate degree

Experience

4 years minimum

Location requirements

Hiring timezones

United States +/- 0 hours

About Bask Health

Learn more about Bask Health and their company culture.

View company profile

Bask Health is a rapidly evolving platform that focuses on redefining the healthcare landscape through the innovative use of technology. The company provides a comprehensive software solution that caters to the needs of various stakeholders, including entrepreneurs, healthcare providers, and developers, aiming to optimize the digital health experience. The Bask platform serves as a robust infrastructure, enabling users to build customizable telehealth solutions tailored to their unique requirements.

The emphasis on patient-centric care is evident as Bask integrates telehealth with e-commerce capabilities, enhancing how patients interact with healthcare services. With tools designed for seamless integration and streamlined patient management, the platform allows healthcare providers to offer a range of services from virtual consultations to prescription fulfillment. Bask’s mission extends beyond functional software; it seeks to solve the pressing issue of healthcare accessibility, particularly in underserved regions. Through strategic partnerships with pharmacies and a commitment to compliance, Bask Health ensures comprehensive and swift service delivery to patients throughout the United States, thereby creating a more inclusive healthcare model.

Claim this profileBask Health logoBH

Bask Health

Chief executive officer

Zachary Dorf

Employees live in

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

21 remote jobs at Bask Health

Explore the variety of open remote roles at Bask Health, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Bask Health

Remote companies like Bask Health

Find your next opportunity by exploring profiles of companies that are similar to Bask Health. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 100,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan