Health Data Privacy & GDPR Associate (HealthTech)

MiMIAT Health

MiMIAT Health

Spain

Posted on Apr 16, 2026

Who are we?

MiMIAT Health is building the patient-anchored operating system for chronic disease management.

Through a portable health data wallet, patients can bring together time-stamped Patient-Generated Health Data (PGHD), clinical records, and data from medical devices and wearables. This transforms fragmented health information into a longitudinal flow of Real-World Data that can be shared more easily across providers and geographies.

For care teams, MiMIAT provides real-time data and clinician-ready summaries that can help flag anomalies earlier, support risk stratification, and track treatment effectiveness over time.

We are currently in pilot deployments across healthcare and institutional environments, with recognition and support from leading innovation ecosystems including AstraZeneca ACCIÓN, Google Startups for Sustainable Development, and NVIDIA Inception.

Our mission? To give patients back control, reduce delays in care, and make chronic disease management more dignified, inclusive, and data-driven.

What are we looking for?

We’re looking for a Health Data Privacy & GDPR Associate to help us strengthen MiMIAT’s privacy and health data governance foundations as we continue expanding across clinical and healthcare environments.

Given our current stage, this is an initial pro-bono collaboration with a light commitment of around 1–2 hours per week, ideal for someone who wants to contribute meaningfully to a real healthtech project without overextending themselves.

You’ll be joining a purpose-driven, fast-growing startup centered on dignity, inclusion, and patient empowerment. You will work directly with the Founder & CEO, helping us think through key privacy, health data, and governance questions around digital health, patient consent, provider-facing workflows, and responsible product growth.

This role is intended to complement MiMIAT’s broader regulatory work by focusing specifically on GDPR, health data protection, consent, privacy-by-design, and practical data governance.

What you’ll do

  • Review and help refine selected health data protection materials, including Privacy Policies, consent flows, Terms & Conditions, and related patient-facing documentation.
  • Help think through practical GDPR and health data questions linked to MiMIAT’s current product, pilot workflows, and provider-facing environments.
  • Support the interpretation of topics such as patient consent, lawful basis, data-sharing logic, access controls, retention, and privacy-by-design, always in line with MiMIAT’s current stage.
  • Flag practical risks, open questions, and areas where deeper legal or specialist review may be needed.
  • Provide light-touch input on health data governance topics relevant to pilots, external stakeholders, or operational workflows.
  • Help bring structure and clarity to privacy-related decisions, so MiMIAT can continue building responsibly as it grows.

Who are you?

  • You have prior experience with GDPR and health data protection in a healthcare, healthtech, medtech, clinical research, or other health-related regulated environment.
  • You have worked on topics such as patient consent, privacy notices, health data flows, data protection documentation, or privacy-related workflows.
  • You are comfortable turning privacy requirements into practical documentation, workflows, and recommendations.
  • You are comfortable working in a dynamic startup setting, where structure is still evolving and decisions often need to be translated into clear, practical action.
  • You can commit around 1–2 hours per week.
  • Bonus if you have familiarity with DPIAs, data processing agreements, international data transfers, or third-party data governance.

Benefits

  • This is currently an initial pro-bono/unpaid collaboration (1–2 hours per week), designed as a focused contribution around selected health data protection and privacy priorities during an early stage of growth.
  • There is the possibility of exploring a more formal collaboration over time, if it makes sense for both sides and for the startup’s evolution.
  • The role offers hands-on exposure to real GDPR, health data protection, and privacy-related questions inside an active healthtech startup operating across healthcare and institutional environments.
  • You’ll work directly with the Founder & CEO, contributing to decisions that help shape MiMIAT’s privacy, data protection, and ethical foundations.
  • You’ll gain experience at the intersection of digital health, patient data, privacy, and real-world deployment.
  • MiMIAT Health has been backed and supported by leading ecosystems including AstraZeneca ACCIÓN, Google Startups for Sustainable Development, NVIDIA Inception, and ESADE eWorks.

How to apply

Send your CV to info@mimiathealth.com or reach out directly here on LinkedIn.

If this speaks to you, we’d love to hear from you!