Skip to Main Content
Professional Photo
Professionals

Alisa L. Chestler, CIPP/US, QTE

Shareholder

Alisa Chestler concentrates her practice in privacy, security, and information management issues; artificial intelligence; health information and technology; health care and managed care regulatory issues; and corporate transactions matters.

Featured Experience


Assisted a large hospital system in identifying cybersecurity issues and negotiation of an asset purchase agreement and closing conditions.

Counseled an emerging company on privacy and security issues prior to its initial capital raise.

Represented an academic medical center in negotiating a $400 million electronic medical record software license and implementation services agreement with Epic Systems.

Professional Biography


Ms. Chestler serves as the chair of the Data Protection, Privacy and Cybersecurity Team at Baker Donelson. She concentrates her practice in privacy, security, artificial intelligence (AI), and information management issues, including compliance, contract negotiation, and corporate transactions matters. She joined Baker Donelson after a distinguished career as in-house counsel and privacy officer for several large public and private companies, including several managed care organizations and health care companies. Ms. Chestler is a Certified Information Privacy Professional: United States (CIPP/US) and has also attained certification as a Qualified Technology Expert (QTE).

In her practice, Ms. Chestler serves as a trusted advisor to clients and routinely counsels them on their technology and data strategy, with a strong base in digital health, life science, and general health care. She counsels clients on technology, data privacy, and security matters that arise from federal and state laws, including the Health Insurance Portability and Accountability Act (HIPAA), California Consumer Privacy Act (CCPA), Gramm-Leach-Bliley Act (GLB), Fair Credit Reporting Act, Fair and Accurate Credit Transactions Act, Family Educational Rights and Privacy Act (FERPA), state data breach laws, and the General Data Protection Regulation (GDPR). Ms. Chestler also counsels clients on AI issues and negotiations and assists in developing their governance programs. She has significant experience assisting companies in developing comprehensive privacy and security programs and working with management to identify risk management issues, many times in anticipation of corporate transactions. She assists clients in identifying, evaluating, and managing risks associated with privacy and information security practices of companies and third-party service providers. Ms. Chestler also counsels clients regarding incident response programs, including the development of the incident response plan, investigation, and response.

Ms. Chestler drafts and negotiates technology agreements, including Master Services Agreements (MSAs), software license agreements, Software as a Service (SaaS) agreements, and professional services agreements, and oversees a team of attorneys skilled in such negotiations.

She routinely assists clients in complex health information and technology issues, including the negotiation of complex information technology and partnership agreements such as health information exchange (HIE) participation, electronic health record (EHR) negotiation, and data use agreements. she also advises on adoption of and compliance with the increasing number of state laws regarding personal health data, and interoperability and information-blocking regulations. She assists digital health and consumer application companies in navigating the complexities of health care technology strategy, agreements, and compliance concerns.

Ms. Chestler worked as in-house counsel for more than 15 years for several managed care organizations, including CareFirst BlueCross Blue Shield.

Follow her on X @alchestler.

Email Disclaimer

NOTICE: The mailing of this email is not intended to create, and receipt of it does not constitute an attorney-client relationship. Anything that you send to anyone at our Firm will not be confidential or privileged unless we have agreed to represent you. If you send this email, you confirm that you have read and understand this notice.
Cancel Accept