Norbert F. Kugele, JD, CIPP-US
Details
• Trained HR staff on Affordable Care Act’s employer responsibility requirements.
• Helped employer put in place pre-tax Health Savings Account contribution program.
• Restructured employer’s group health plans under a single health and welfare umbrella plan to simplify 5500 filing obligations.
• Prepared employer for Department of Labor audit of health and welfare plans
• Helped third party administrator develop new self-insured model for smaller employers
• Resolved potential COBRA dispute between employer and insurer.
• Conducted non-discrimination testing of employer’s health and welfare benefit programs.
Some of my recent privacy and information security projects :
• Updated HIPAA policies and procedures for a public university’s student health center, health clinics and self-insured group health plans.
• Directed company’s investigation of breach incident and notification to affected individuals.
• Negotiated privacy provisions in a data hosting agreement.
• Developed privacy policy for mobile phone app
• Trained physician’s office on HIPAA complliance requirements
• Helped a college develop a text messaging policy to comply with the Telephone Consumer Protection Act
• Evaluated cyber liability insurance policy to identify potential gaps in coverage
1992 : Present
Warner Norcross + Judd
Employee Benefits Law; Privacy and Information Security Law
1983 : 1989
Toys R Us
Manager
About
I specialize in employee benefits and privacy and information security law. My employee benefits work focuses on health and welfare benefits that employers sponsor for their workers. I spend a lot of time helping employers understand the legal requirements and resolve the complicated problems that arise in administering these health and welfare programs—particularly with COBRA, HIPAA and the Affordable Care Act.
I’m also a Certified Information Privacy Professional/US with the International Association of Privacy Professionals. I help companies understand and comply with state, federal and international privacy and information security laws, including HIPAA, FTC consumer privacy requirements, and breach notification laws. I also help U.S. companies comply with the European Union's General Data Protection Regulation (GDPR), the U.S.-EU Privacy Shield Framework, and cross-border transfers of data.