Director of Privacy and Compliance
Job Description
The Massachusetts Department of Public Health (DPH) Office of the General Counsel is seeking candidates for the Director of Privacy & Data Compliance. DPH is at the forefront of protecting and advancing the health of communities across the Commonwealth, with a strong commitment to equity, access, and public trust. The Director plays an essential leadership role in safeguarding sensitive health information while enabling the responsible use of data to inform critical public health decisions. This position sits at the intersection of law, policy, and public service, ensuring that DPH's work remains compliant with complex state and federal regulations while supporting innovation, collaboration, and timely responses to emerging health challenges.
In this role, you will guide the Department's approach to privacy, confidentiality, and data governance, serving as a trusted advisor to senior leadership, other members of the legal team, and program staff. You will shape strategy, influence policy, and lead a team responsible for navigating evolving legal frameworks, managing risk, and strengthening data-sharing practices across agencies and partners. This is an opportunity to translate complex legal and regulatory requirements into clear, actionable guidance that protects individuals while advancing public health outcomes. Ideal candidates will bring strong legal and analytical expertise, a thoughtful approach to leadership, and the ability to build partnerships across a large, complex organization. This role offers a unique platform to make a meaningful impact by ensuring that data is used responsibly, ethically, and effectively in service of the people of Massachusetts.
Want more jobs like this?
Get Project Management jobs in Boston, MA delivered to your inbox every week.

Duties and Responsibilities (these duties are a general summary and not all inclusive):
• Provide strategic oversight of data privacy, confidentiality, and governance across the Department, ensuring alignment with state and federal regulations.
• Represent DPH in securing and managing data-sharing relationships with external entities, including the Executive Office of Health and Human Services (EOHHS) agencies and public health partners.
• Advise and consult with bureaus on data use, confidentiality agreements, and compliance with applicable privacy laws and policies.
• Lead responses to data breaches, including oversight of investigations, risk mitigation, and implementation of corrective actions.
• Develop, implement, and maintain Department-wide confidentiality policies, procedures, and compliance frameworks.
• Collaborate with executive leadership, legal counsel, and IT partners to advance data governance initiatives and modernization efforts.
• Serve as a liaison to EOHHS Information Security and partner with IT teams to address privacy, security, and data-related challenges.
• Oversee compliance with federal grant requirements related to data privacy and confidentiality.
• Direct and manage responses to public records requests, ensuring appropriate disclosure in accordance with legal requirements.
• Review legislation, regulations, contracts, and interagency agreements, providing legal guidance and drafting standardized confidentiality language.
• Lead and support a department-wide privacy liaison program, including training, coordination, and ongoing compliance monitoring.
• Recruit, supervise, and develop staff, fostering a high-performing team while managing workload distribution and supporting professional growth.
Preferred Qualifications:
• Extensive experience interpreting and applying privacy laws and regulatory frameworks, including those governing public health systems, state ethics and conflict of interest standards, administrative procedure requirements, principles of due process, regulatory promulgation, legislative drafting and analysis, records custodianship, and confidentiality obligations.
• Proven ability to advise senior leadership on legal risk, compliance strategies, and data governance initiatives.
• Demonstrated ability to effectively manage, supervise, and support both legal and non-legal staff, fostering collaboration, accountability, and professional development.
• Experience drafting and negotiating data-sharing agreements, contracts, and interagency agreements within a public sector or healthcare environment.
• Strong knowledge of public records laws and experience managing complex public records requests.
• Capacity to lead or support data breach investigations and implement corrective action plans.
• Familiarity with federal grant compliance requirements related to data privacy and confidentiality.
• Experience developing and delivering training programs on privacy, compliance, and data protection.
• Strong leadership and supervisory experience, with the ability to manage teams, set priorities, and drive results in a complex organization.
• Excellent written and verbal communication skills, with the ability to translate complex legal and regulatory concepts into clear, practical guidance.
• Proficient with Microsoft Office applications including Excel, Word, Outlook, PowerPoint, and Teams
DPH Mission and Vision:
The mission of the Massachusetts Department of Public Health (DPH) is to promote and protect health and wellness and prevent injury and illness for all people, prioritizing racial equity in health by improving equitable access to quality public health and health care services and partnering with communities most impacted by health inequities and structural racism.
We envision a Commonwealth with an equitable and just public health system that supports optimal well-being for all people in Massachusetts, centering those with systemically and culturally oppressed identities and circumstances.
Learn more: MA Department of Public Health
Pre-Hire Process:
A tax & background check will be completed on the recommended candidate as required by the regulations set forth by the Human Resources Division prior to the candidate being hired.
Education, licensure and certifications will be verified in accordance with the Human Resources Division's Hiring Guidelines.
Education and license/certification information provided by the selected candidate(s) is subject to the Massachusetts Public Record Law and may be published on the Commonwealth's website.
ADA Reasonable Accommodation:
If you require a reasonable accommodation with the application/interview process, please contact us at: EOHHS Candidate ADA Requests
For questions regarding this requisition, please contact the Executive Office of Health and Human Services Human Resources at 1-800- 510-4122 Ext. #4
Qualifications
MINIMUM ENTRANCE REQUIREMENTS:
Applicants must have at least (A) six (6) years of full-time or, equivalent part-time, professional, administrative, supervisory, or managerial experience in a particular specialty (i.e. scientific, professional, or technical) and must possess current license and/or registration requirements established for the performance of the position, of which (B) at least two (2) years must have been in a project management, supervisory or managerial capacity or (C) any equivalent combination of the required experience and substitutions below.
Substitutions:
I. A certificate in a relevant or related field may be substituted for one (1) year of the required (A) experience.
II. A Bachelor's degree in a related field may be substituted for two (2) years of the required (A) experience.
III. A Graduate degree or higher in a related field may be substituted for three (3) years of the required (A) experience.
IV. A Doctorate degree in a related field may be substituted for four (4) years of the required (A) experience.
Special Requirements: Current & valid admission to the Massachusetts Bar.
Salary placement is determined by a combination of factors, including the candidate's years of directly related experience and education, and alignment with our internal compensation structure as set forth by the Human Resources Division's Hiring Guidelines. For all bargaining unit positions (non-management), compensation is subject to the salary provisions outlined in the applicable collective bargaining agreement and will apply to placement within the appropriate salary range.
Comprehensive Benefits
When you embark on a career with the Commonwealth, you are offered an outstanding suite of employee benefits that add to the overall value of your compensation package. We take pride in providing a work experience that supports you, your loved ones, and your future.
Want the specifics? Explore our Employee Benefits and Rewards!
An Equal Opportunity / Affirmative Action Employer. Females, minorities, veterans, and persons with disabilities are strongly encouraged to apply.
The Commonwealth is an Equal Opportunity Employer and does not discriminate on the basis of race, religion, color, sex, gender identity or expression, sexual orientation, age, disability, national origin, veteran status, or any other basis covered by appropriate law. Research suggests that qualified women, Black, Indigenous, and Persons of Color (BIPOC) may self-select out of opportunities if they don't meet 100% of the job requirements. We encourage individuals who believe they have the skills necessary to thrive to apply for this role.
Perks and Benefits
Health and Wellness
- Health Insurance
- Health Reimbursement Account
- Dental Insurance
- Vision Insurance
- Life Insurance
- Short-Term Disability
- Long-Term Disability
- FSA
- HSA
- Mental Health Benefits
Parental Benefits
- Adoption Assistance Program
- Family Support Resources
Work Flexibility
- Flexible Work Hours
- Hybrid Work Opportunities
Office Life and Perks
- Commuter Benefits Program
Vacation and Time Off
- Paid Vacation
- Paid Holidays
- Personal/Sick Days
- Volunteer Time Off
Financial and Retirement
- Pension
- Financial Counseling
Professional Development
- Promote From Within
- Mentor Program
- Access to Online Courses
- Lunch and Learns
- Internship Program
- Leadership Training Program
- Associate or Rotational Training Program
Diversity and Inclusion
- Diversity, Equity, and Inclusion Program