Data Compliance Manager



Data Compliance Manager

Salary

$75,254.40 - $111,883.20 Annually

Location

(Ramsey County Courthouse) Saint Paul, MN

Job Type

Full Time

Job Number

0920-20/02-001

Department

21A01-County Manager/Admin

Opening Date

02/18/2020

Closing Date

3/13/2020 4:30 PM Central

Basic Function

The current vacancy will be in the County Manager's Office.  The Data Compliance Manager will oversee and enhance the Ramsey County data and information management program.  Interested candidates with compliance program experience in a corporate or non-profit setting are encouraged to apply.  The eligibility list created by this vacancy may be used to hire other vacancies in the department or County.

Oversee and enhance the Ramsey County data and information management program including development, implementation and maintenance of policies and procedures, monitoring program compliance, investigating and tracking incidents and breaches and maintaining a residents-first focus on data management as the county expands its innovation efforts.  This position reports directly to the Chief Compliance and Ethics Officer and will serve as the County's Health Insurance Portability and Accountability Act (HIPAA) Security Official.

If an internal candidate is selected, salary will be set in accordance with the personnel rules (i.e., promotion, transfer, or voluntary reduction).

To view or print a copy of the complete Ramsey County job (class) description for this position, go to: Job Descriptions. Once at this page, you can browse the alphabetical list or search for a job description.

Examples of Work Performed

  1. Promote a diverse, culturally competent, and respectful workplace.
  2. Provide leadership, vision and strategic direction to the Ramsey County enterprise data program and ensure that the data compliance program addresses the complex landscape of state and federal regulatory schemes.
  3. Develop, implement and maintain policies, procedures, training, awareness campaigns, and other compliance tools that ensure compliance with applicable data laws.
  4. Serve as the County's HIPAA Security Official.
  5. Collaborate with the Health Care Compliance Manager to ensure compliance for data governed by the Health Insurance Portability Accountability Act (HIPAA) and other state and federal laws and regulations concerning healthcare information.
  6. Oversee the County's annual HIPAA Security Risk Assessment and implementation of identified remediations.
  7. Chair the Ramsey County Data Privacy Team and serve as a member of the centralized Compliance Program team.  Lead the development, implementation, and measurement of the county's annual data work plans.
  8. Provide data management consultation to senior management, service teams and departments.  Establish and maintain effective relationships and work collaboratively across the organization.
  9. Oversee county-wide processes to respond to requests for data including redaction, tracking, and reporting.  Establish measurable performance and service outcomes and oversee the development of continuous improvement and quality assurance measures.
  10. Oversee program monitoring and auditing to ensure compliance with policies and procedures are being followed; serve as the point of coordination with and provide assistance to external auditors during compliance reviews.
  11. Lead the organization's response to data privacy and security incidents per the County's response policies and procedures.
  12. Keep informed regarding pending industry changes, trends, and best practices and assess the potential impact of these changes on the organization.
 
(The work assigned to a position in this classification may not include all possible tasks in this description and does not limit the assignment of any additional tasks in this classification.  Regular attendance according to the position's management approved work schedule is required.)
 
ESSENTIAL FUNCTIONS: 1, 2, 3, 4, 5, 6, 7, 8, 9, 10, 11, 12.

Minimum Qualifications

Education:  Bachelor's Degree in public administration, business management, administration, communications, or applicable field.
 
Experience:  Five years of data compliance experience with significant experience working with the Minnesota Government Data Practices Act or equivalent and HIPAA.
 
Substitution:  Experience can be substituted for education on a year for year basis.
 
Preferred:  Certification in data privacy and/or data security.

Exam/Screening Process Information

The examination process will consist of the following section with each section weighted as indicated:
 

  • Training and Experience Rating = 100%
 
The examination for Data Compliance Manager will consist of a training and experience rating, comprised of the questions in the attached supplemental questionnaire. Not all applicants who meet the minimum qualifications will pass the training and experience rating.  The rating on this supplemental questionnaire will depend your answers to the questions – do not mark "see resume" or "see work history" as a response.  Please answer all your questions clearly and completely.  Failure to respond could affect your score and final rank on this examination.
 
Eligible List: The names of all applicants who filed a properly completed application and passed the examination/screening process shall be placed on the eligible list for an employment opportunity as a Data Compliance Manager. This list will be certified to the appointing authority which may use this list to conduct interviews to fill a vacancy. Candidates will remain on the list for 2 month(s) or until hired, whichever occurs first. A notice will be sent to applicants at the time the eligible list is posted, informing them that the list has been posted and their rank on the list.
 
Veteran's Preference: This is a classified position requiring an open, competitive selection process.  Veteran's Preference points will be applied after a candidate passes the examination process.  Applicants who are eligible for veteran's preference should update their veteran's DD214, and other supporting documents, and submit them as an attachment at the time of application.
 
Criminal Background Checks:  All employment offers are conditioned upon the applicant passing a criminal background check. Convictions are not an automatic bar to employment. Each case is considered on its individual merits and the type of work sought. However, making false statements or withholding information will cause you to be barred from employment, or removed from employment.
 
E-Verify Participation:  Ramsey County participates in the federal E-Verify program. This means that Ramsey County will provide the Social Security Administration (SSA) and, if necessary, the Department of Homeland Security (DHS), with information from each new employee's Form I-9 to confirm work authorization. If the Government cannot confirm that you are authorized to work, Ramsey County is required to give you written instructions and an opportunity to contact DHS and/or the SSA before taking adverse action against you, including terminating your employment. Employers may not use E-Verify to pre-screen job applicants and may not limit or influence the choice of documents you present for use on the Form I-9.
 
Equal Opportunity Employer:  Ramsey County provides equal access to employment, programs and services without regard to race, color, creed, religion, age, sex (except when sex is a Bona Fide Occupational Qualification), disability, marital status, sexual orientation or gender identity, public assistance or national origin.
 
To print a paper application for this posting click Paper Application. You will need to print this posting and answer the supplemental questions associated with this exam and submit them with your completed paper application.
 
For further information regarding this posting, please contact olletha.muhammad@ramseycounty.us or by phone at (651) 266-2723.

Ramsey County provides a wide range of employee benefits to support health and well-being, and work/life balance. Benefits eligibility can vary depending on union status/contract language. For general information about Ramsey County's benefits packages, please visit our website at: https://www.ramseycounty.us/jobs/employee-benefits-and-policies.

01
Each applicant must complete this supplemental questionnaire as a part of the application screening process. The supplemental questionnaire will be used as a scored evaluation of your knowledge, skills and experience. Provide complete information for each question. Do not write "see resume" as it is not an acceptable answer. The experiences you indicate in your responses will be reviewed and used to determine your eligibility to move forward in the selection process. Please select "yes" if you have read and understand.
  • Yes
  • No
02
Describe your experience developing an organizational-wide data compliance program. Be specific. Include the name of the employer where this occurred; your job title; and core job duties. If you do not have this experience, type NA in the space below.
03
Describe your experience developing, implementing, and maintaining policies and procedures related to data compliance. Be specific. Include the name of the employer where this occurred; your job title; and core job duties. If you do not have this experience, type NA in the space below.
04
Describe your experience working as either a Health Insurance Portability and Accountability Act (HIPAA) Security Official or working in conjunction with a HIPAA Security Official Security Official in organization. Be specific. Include the name of the employer where this occurred; your job title; and core job duties. If you do not have this experience, type NA in the space below.
05
Describe your experience providing leadership, strategic direction, and consultation to multi-functional teams to ensure data compliance follows all federal and state laws. Be specific. Include the name of the employer where this occurred; your job title; and core job duties. If you do not have this experience, type NA in the space below.
06
Describe your experience monitoring and auditing an organization's response to data privacy and data security incidents. Describe any programs, policies, and/or action taken to remedy risks. Be specific. Include the name of the employer where this occurred; your job title; and core job duties. If you do not have this experience, type NA in the space below.
07
Describe your experience developing compliance materials and providing training and awareness campaigns for an organization. Be specific. Include the name of the employer where this occurred; your job title; and core job duties. If you do not have this experience, type NA in the space below.
08
The work performed by a Data Compliance Manager requires daily interaction and problem solving with individuals from a variety of diverse cultural and ethnic populations. Describe your work, training, volunteer and/or life experiences that demonstrate your cultural awareness in working with persons of diverse populations. Indicate the nature of your interactions with individuals from communities or cultures other than your own. If you do not have this experience, type NA in the space.
09
Do you have or have you ever held a professional license?
  • Yes
  • No
10
If you answered "Yes" to question #9, please list the type of license(s) and the State or jurisdiction the license is or was held; also indicate the status of your license(s). If this does not apply to you, please write NA in the space provided.

Required Question

Agency
Ramsey County
Address
121 East Seventh Place
Suite 4000
Saint Paul, Minnesota, 55101
Phone
(651) 266-2700