Stand out for this role — generate a tailored resume and cover letter in about a minute.
ModMed is seeking a Director of AI & Data Governance to lead our data privacy, governance and AI policy initiatives. You will shape DSPM/DLP controls, manage the allowlist, and partner with Legal, Security, and Engineering to embed privacy-by-design in our AI-enabled platform.
You will influence policy evolution, assess vendor risk, and ensure regulatory alignment across GDPR, CCPA, and emerging standards for a healthcare-focused cloud ecosystem.
Join the Team Modernizing Medicine At ModMed, we’re not just building software—we’re reimagining the healthcare experience. Founded in 2010 by a practicing physician and a successful tech entrepreneur, we took a radically different approach: we hired doctors and taught them how to code. This "for doctors, by doctors" philosophy has allowed us to create an AI-enabled, specialty-specific cloud platform that places patients at the center of care.
When you join ModMed, you’re joining an award-winning team recognized for innovation and employee satisfaction. From our global headquarters in Boca Raton Florida, and extensive employee base in Hyderabad India, we are a team of 4,500+ passionate problem-solvers on a mission to increase medical practice success and improve patient outcomes:
The Director, AI & Data Governance pioneers our Data and AI Governance frameworks, ensuring that as our technology ecosystem evolves with emerging, allowlisted AI technologies, our data tracking, DLP/DSPM enforcement, and overall privacy posture remain uncompromised.
Translate written data classification policies into precise, testable technical requirements for InfoSec. Design and execute validation protocols to ensure the tuning of DSPM/DLP rules actively achieves mandated privacy outcomes.
Serve as a core member of the enterprise AI Governance Committee. Own the enterprise AI Allowlist, ensuring it is accurate and highly accessible to employees to verify if AI usage is allowed, disallowed, or needs review.
Manage the process for tracking, recording, and reporting data flows, including where restricted/confidential data intersects with AI. Utilize OneTrust to maintain RoPA, conduct DPIAs, and manage AI vendor risk assessments.
Monitor emerging AI capabilities and changing regulatory frameworks (e.g., EU AI Act, NIST AI RMF). Update internal policies and procedures to address new risks, using real-world telemetry from DSPM to refine corporate data protection rules.
Act as the strategic liaison between Legal, Security, and Engineering. Influence without direct authority to embed privacy-by-design into technical architectures and resolve complex false-positive escalations gracefully.
It takes more than just a great product to modernize medicine. It takes a great team. The work we do makes a difference. Our web and mobile applications are transforming healthcare information technology to increase practice efficiency and improve patient outcomes. Our innovative and collaborative culture fuels our growth and creates rewarding and empowering experiences for our team.