Director Privacy Operations - US
About the Company
A global biopharmaceutical company on a mission to solve unmet medical needs through the discovery, development, and commercialization of proprietary therapeutics. Incyte has established a portfolio of first-in-class medicines for patients and a strong pipeline of products in Hematology, Oncology, and Inflammation and Autoimmunity. Headquartered in Wilmington, Delaware, Incyte has operations in North America, Europe, and Asia.
About the Role
The Director, Privacy Operations US serves as the business partner for Incyte’s Privacy program in the US, interacting with management and colleagues throughout Legal, Compliance, IT, Commercial, Medical Affairs, and other business units. This role ensures Incyte maintains systems and processes while adhering to applicable privacy requirements and the “privacy by design” principle. The Director is responsible for implementing components of the Privacy plan and managing privacy processes and procedures effectively.
Responsibilities
- Implement and operationalize Incyte’s US Privacy program.
- Work closely with the Global Privacy Officer to understand and execute global strategy and priorities.
- Manage and apply the US Privacy plan to meet near-, mid-, and long-term privacy goals.
- Stay abreast of relevant changes to US privacy laws; coordinate with internal legal counsel to ensure compliance.
- Work with Privacy colleagues, business stakeholders, and IT to adopt consistent and harmonized approaches to processing personal information.
- Support assigned business groups to ensure privacy obligations are met during pre- and post-product launch activities.
- Manage the Privacy Assessment (PA) and Records of Processing Activities (ROPA) process in the US.
- Oversee the US Privacy Champions network to gather feedback and disseminate privacy messages across business units.
- Ensure employees and contractors are trained on company privacy policies, data handling practices, and legal obligations.
- Serve as a member of the Global Privacy Steering Committee to address privacy developments and risks.
- Respond to data regulators and data subjects regarding privacy-related requests.
- Collaborate with the Cybersecurity team to safeguard privacy interests.
- Liaise with IT and business groups on privacy aspects of new technologies and solutions, including AI.
Qualifications
- BS/BA or equivalent degree.
- Continuing education in privacy and/or data protection or CIPP/E certification.
- 8+ years of experience in pharmaceutical, biotechnology, or life sciences consulting, with at least five years in privacy and data protection within the pharmaceutical, medical device, or healthcare industries.
- Strong written and oral communication skills, with the ability to integrate legal, regulatory, and business knowledge to provide risk-based operational solutions.
- Strong attention to detail and ability to manage multiple tasks in a fast-paced environment while handling sensitive information appropriately.
- Excellent interpersonal skills, with the ability to work independently and as part of a team.
- Excellent organization, project management, and prioritization skills.