Jobs and Careers
GR
Vice President, Compliance & Privacy, Chief Compliance Officer #4025
GRAILMenlo Park, United Statesfull_timeVerifiedPosted 5 Nov 2024
💰 $375,000/yr($281,000/yr – $375,000/yr)
About the role
Our mission is to detect cancer early, when it can be cured. We are working to change the trajectory of cancer mortality and bring stakeholders together to adopt innovative, safe, and effective technologies that can transform cancer care.
We are a healthcare company, pioneering new technologies to advance early cancer detection. We have built a multi-disciplinary organization of scientists, engineers, and physicians and we are using the power of next-generation sequencing (NGS), population-scale clinical studies, and state-of-the-art computer science and data science to overcome one of medicine’s greatest challenges.
GRAIL is headquartered in Menlo Park, California, with locations in Washington, D.C., North Carolina, and the United Kingdom. It is supported by leading global investors and pharmaceutical, technology, and healthcare companies.
For more information, please visit grail.com.
The Vice President, Compliance & Privacy, Chief Compliance Officer role will oversee GRAIL’s Compliance and Privacy Functions. The role, reporting to the General Counsel, manages and is responsible for GRAIL’s corporate compliance program, including internal investigations and environmental health and safety, as well as GRAIL’s Privacy program, including privacy compliance, data governance and strategy, privacy incident management and response, artificial intelligence governance and ethics, and cybersecurity law.
This hybrid position requires an onsite presence in Menlo Park, CA, two days a week, with Tuesdays and Thursdays required, offering the opportunity to be deeply integrated into GRAIL’s dynamic and innovative environment.
We are a healthcare company, pioneering new technologies to advance early cancer detection. We have built a multi-disciplinary organization of scientists, engineers, and physicians and we are using the power of next-generation sequencing (NGS), population-scale clinical studies, and state-of-the-art computer science and data science to overcome one of medicine’s greatest challenges.
GRAIL is headquartered in Menlo Park, California, with locations in Washington, D.C., North Carolina, and the United Kingdom. It is supported by leading global investors and pharmaceutical, technology, and healthcare companies.
For more information, please visit grail.com.
The Vice President, Compliance & Privacy, Chief Compliance Officer role will oversee GRAIL’s Compliance and Privacy Functions. The role, reporting to the General Counsel, manages and is responsible for GRAIL’s corporate compliance program, including internal investigations and environmental health and safety, as well as GRAIL’s Privacy program, including privacy compliance, data governance and strategy, privacy incident management and response, artificial intelligence governance and ethics, and cybersecurity law.
This hybrid position requires an onsite presence in Menlo Park, CA, two days a week, with Tuesdays and Thursdays required, offering the opportunity to be deeply integrated into GRAIL’s dynamic and innovative environment.
Responsibilities
- Policy Development: develop and oversee implementation of policies with respect to US and global healthcare corporate compliance, anti-bribery, anti-corruption, privacy compliance, privacy management, and data governance.
- Commercial and Marketing: help set marketing US and global market strategies, manage contracting arrangements with HCPs and HCOs, evaluate promotional and non-promotional practices, and oversee internal training.
- Monitor environment: monitor regulatory, legislative and enforcement landscape to guide internal practices and policies.
- Interactions with HCPs: provide strategic counseling guidance across Commercial and Medical on interactions with HCPs, including procedures, training, and monitoring
- Internal Investigations and Audits: oversee GRAIL’s internal investigations and monitor compliance with applicable policies.
- Enterprise Risk Assessments: oversee enterprise risk management to identify areas of potential compliance vulnerability and risk, develop and implement corrective action plans
- Independence: provide independent compliance counseling to the Audit Committee of GRAIL’s Board of Directors
- Compliance: Communication Program: institute and maintain an effective compliance communication program, including promoting: (a) use of a compliance hotline; (b) heightened awareness of Code of Conduct, and (c) understanding of new and existing compliance issues and related policies and procedures.
- Global Healthcare Compliance: update GRAIL policies to address global healthcare compliance across relevant jurisdictions.
- Global data privacy and data protection program: lead program that defines, updates, maintains, and strengthens privacy compliance program requirements
- Data Strategy: execute on the implementation of key privacy controls and business processes that are foundational to the Company’s data strategy, including de-identification, real world data, and artificial intelligence
- Privacy Operations: facilitate compliance with international privacy frameworks, such as NIST, GDPR, and HIPAA, and incorporation of privacy by design into new products, business operations, and business verticals
- Product Development: drive cross-functional strategic relationships with stakeholders and business teams to collaborate on integrating privacy into product development and business processes.
- Stakeholder Engagement: compliance counseling to internal clients on a wide range of privacy matters, including permissible data uses for strategic initiatives and the application of global privacy laws and regulatory guidance to current business processes, new product development, research collaborations and commercial partnerships
- Commercial Collaborations: counsel corporate transactions team in negotiating data use and data protection terms in complex commercial agreements, vendor agreements, business associate agreements, and data sharing agreements
- Investigations and Training: investigate, analyze track, manage, and remediate privacy incidents; and develop policies and procedures, privacy training, and awareness activities
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s