Associate General Counsel, US Privacy and Security

Posted 9 Days Ago
Easy Apply
Hiring Remotely in USA
Remote
Expert/Leader
Artificial Intelligence • Healthtech • Telehealth
Our mission: eliminating every barrier to mental health.
The Role
As the Associate General Counsel for US Data Protection, Privacy, and Security, you will advise on compliance with US privacy laws, develop and implement privacy policies, conduct assessments, and collaborate with various teams to ensure the protection of sensitive personal data. You'll handle legal aspects of data security and manage responses to data breaches, maintaining the company's compliance with applicable laws.
Summary Generated by Built In
Our mission: to eliminate every barrier to mental health.

At Spring Health, we’re on a mission to revolutionize mental healthcare by removing every barrier that prevents people from getting the help they need, when they need it. Our clinically validated technology, Precision Mental Healthcare, empowers us to deliver the right care at the right time—whether it’s therapy, coaching, medication, or beyond—tailored to each individual’s needs.

We proudly partner with over 450 companies, from startups to multinational Fortune 500 corporations, as a leading provider of mental health service, providing care for 10 million people. Our clients include brands you use and know like Microsoft, Target, J.P. Morgan Chase, and Delta Airlines, all of whom trust us to deliver best-in-class outcomes for their employees globally. With our innovative platform, we’ve been able to generate a net positive ROI for employers and we are the only company in our category to earn external validation of net savings for customers.

We have raised capital from prominent investors including Generation Investment, Kinnevik, Tiger Global, William K Warren Foundation, Northzone, RRE Ventures, and many more. Thanks to their partnership and our latest Series E Funding, our current valuation has reached $3.3 billion. We’re just getting started—join us on our journey to make mental healthcare accessible to everyone, everywhere.

The AGC for US Data Protection, Privacy and Security is an essential member of the legal and corporate compliance team, responsible for ensuring our company's compliance with US privacy laws and regulations. You will be responsible for providing legal advice and guidance to stakeholder teams across the enterprise, developing and implementing privacy policies and procedures, conducting privacy impact assessments, and collaborating with cross-functional teams to integrate privacy and data protection considerations into our products and services. This position reports directly to the company’s Data Protection Officer and Head of Privacy. The successful candidate must be agile, with a demonstrated ability to pivot and manage a workload. This is a remote position. 

What you’ll be doing:

  • Serve as subject matter expert and lead on HIPAA compliance efforts.
  • Advise on compliance with US privacy laws, including HIPAA, CCPA/CPRA, Washington’s MHMDA (My Health My Data Act), and other state privacy laws, with a focus on health data and sensitive personal information.
  • Provide legal support for all aspects of the company’s data privacy and security programs.
  • Partner with product, engineering, marketing, and cybersecurity teams to ensure compliance with privacy laws and industry best practices, particularly around AdTech, data management, and data analytics.
  • Play a key role in the company’s response to data breaches and other security incidents, including managing breach notification and remediation efforts.
  • Draft Privacy Related agreements including BAAs and Data Sharing Agreements.
  • Stay up-to-date with evolving privacy laws and regulations, and provide guidance on their impact to the business.
  • Coordinate with external counsel on privacy-related legal matters, including any regulatory inquiries, enforcement actions, and litigation.

What success looks like in this role:

  • Identify and implement process improvements for the HIPAA compliance program, including policies and procedures, and training materials.
  • Conduct a thorough risk assessment to identify potential privacy vulnerabilities and develop a mitigation plan.
  • Review and Update existing privacy policies and procedures to ensure they are in line with current regulations and industry best practices.
  • Launch and deliver HIPAA and privacy training programs for all employees.
  • Ensure timely and accurate filing of regulatory reports and documentation related to HIPAA and privacy compliance. 

What we expect from you:

  • 7+ years of legal experience, preferably with a successful, high-growth company or startup in the health and wellbeing sector with 5+ years emphasis on privacy.
  • In-depth knowledge of US data privacy regulations, including HIPAA, Washington’s MHMDA (My Health My Data Act), and CCPA/CPRA.
  • Working knowledge of worldwide data protection and AI regulations including the GDPR, and the EU AI Act as well as industry best practices (eg, NIST AI RMF, etc) preferred.
  • Exceptionally strong business acumen and the ability to work effectively and efficiently on multiple projects in a fast paced, hyper growth environment, while being a critical (and often autonomous) go-to partner for fellow peers in the company and legal department.
  • Strong sense of ownership and accountability over assigned projects and tasks.
  • Experience scaling legal processes and policies.
  • Candidates having relevant data privacy certifications (e.g. CISP, CIPP, CHPC, etc.) strongly preferred.

The target base salary range for this position is $212,800 - $266,000, and is part of a competitive total rewards package including stock options and benefits. Individual pay may vary from the target range and is determined by a number of factors including experience, location, internal pay equity, and other relevant business considerations. We review all employee pay and compensation programs annually using Radford Global Compensation Database at minimum to ensure competitive and fair pay. 

Benefits provided by Spring Health:

Note: We have even more benefits than listed here and below, your recruiter will provide more in-depth information as you continue in the interview process. All benefits are subject to individual plan requirements and eligibility criteria.

  • Health, Dental, Vision benefits start on your first day at Spring Health. You and your dependents also receive an individual One Medical account which is valued at $199/year per user. HSA and FSA plans are also available.
  • Employer sponsored 401(k) match of up to 2%
  • A yearly allotment of no cost visits to the Spring Health network of therapists, coaches, and medication management providers for you and your dependents.
  • Generous paid time off, 10 sick days, 12 paid holidays throughout the year, and a 1 month sabbatical leave granted at your 4 year anniversary
  • We offer parental leave up to 18 weeks, depending on your eligibility including tenure and medical situation.
  • Access to fertility care support through Carrot, in addition to $4,000 reimbursement for related fertility expenses.
  • Access to Wellhub, an on-demand virtual benefit that provides wellbeing coaching, and budget management.
  • Up to $1,000 Professional Development Reimbursement a year.
  • $200 per year donation matching to support your favorite causes.

Don’t meet every requirement? Studies have shown that women, communities of color and historically underrepresented talent are less likely to apply to jobs unless they meet every single qualification. At Spring Health we are dedicated to building a diverse, inclusive and authentic workplace

To ensure intentional and equitable hiring practices, we use a balanced candidate slate in our interviews. This approach guarantees that our pool of qualified candidates includes individuals who are underrepresented in our organization at all levels. This is a key performance indicator (KPI) for our recruiting and hiring teams, reported quarterly to maintain accountability.

Ready to do the most impactful work of your life? Learn more about our values, what it’s like to work here, and how hypergrowth meets impact at Spring Health: Our Values


Our privacy policy: https://springhealth.com/privacy-policy/

Spring Health is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex, marital status, ancestry, disability, genetic information, veteran status, gender identity or expression, sexual orientation, pregnancy, or other applicable legally protected characteristic. We also consider qualified applicants regardless of criminal histories, consistent with applicable legal requirements. Spring Health is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans. If you have a disability or special need that requires accommodation, please let us know.

Top Skills

Ccpa
Cpra
Hipaa

What the Team is Saying

Sarah
Sandra Rios-Monsante
Ankit Pathak
Jon Immel
Alyssa
Laura
April Koh
The Company
HQ: New York, NY
1,300 Employees
Hybrid Workplace
Year Founded: 2016

What We Do

Life is stressful enough; finding, scheduling, and accessing diverse and quality mental healthcare shouldn't be. Spring Health equips employers and health insurers across the globe to make mental health accessible and achievable.

We use clinically validated AI technology, called Precision Mental Healthcare, to deliver optimal care — from meditation, coaching, therapy, medication, or a combination of all four — to our members. This technology isn't just for our members, but also for our more than 10,000 Providers to be empowered with data and insights to help members get the care they need faster.

Founded eight years ago to address the urgent global mental health crisis, Spring Health’s grown to cover more than 10 million lives through 450 employers, strategic payer relationships, and 27,000 groups that access the Spring Health through a channel partner.

We support employees at global brands like Microsoft, Target, J.P. Morgan Chase and Delta Airlines to deliver best-in-class outcomes for employees and a net positive ROI for employers. Last year, the company became the first and only company in its category to earn external validation of net savings for customers.

Why Work With Us

Our team is dedicated to revolutionizing mental healthcare. We stand by our values and are advocates for our members and team members. Together, we're building solutions with an intensity and focus that has been needed for decades. If you're a builder, come build the future of mental health with us.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Spring Health Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

At Spring Health, 60% of our team members work remotely. If you're in NYC, you have the opportunity to work in the office, but it's not required.

Typical time on-site: Not Specified
HQNew York, NY
Spring Health has signed a lease for about 30,000 square feet at the Moinian Group’s 60 Madison Avenue. The seven-year deal encompasses the entire second and most of the third floor at the property, which faces Madison Square Park in Nomad.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account