Job Responsibilities:
- Lead the development and maintenance of standards, procedures, and controls for the firmwide privacy incident response program to effectively manage risk and ensure compliance with privacy laws.
- Collaborate with partners in lines of business, legal, risk management and compliance to drive improvements to the way the firm identifies, assesses, and responds to potential data breaches
- Act as subject matter expert for LOB-aligned incident response teams on incident response best practices
- Support LOB-aligned incident response teams by coordinating and/or managing the firm’s response to cross-LOB and complex privacy incidents, ensuring timely investigation, documentation, and resolution.
- Develop and deliver training and awareness programs for incident response teams to educate on privacy incident response procedures and best practices.
- Support projects to enhance the firm's reporting and metrics.
- Monitor and analyze trends in privacy incidents to identify areas for improvement and implement proactive measures to enhance the organization's privacy posture.
- Support audits and assessments related to privacy incident response and data protection.
- Stay current with industry trends, emerging threats, and best practices in privacy incident response and data protection and ensure the organization adapts accordingly.
- Prepare and present reports on privacy incidents and response activities to senior management and relevant stakeholders
Required Qualifications, Capabilities, and Skills:
- 10 yearsof experience with a focus on privacy incident management and privacy governance
- Provenexperiencein developing and implementing privacy policies, standards and procedures.
- Experience with developing controls, metrics and reporting for managing an effective privacy program and
- Knowledge of global privacy laws, including GDPR, GLBA and CCPA.
- Ability to work independently and manage relationships across functions.
- Excellentanalytical, problem-solving, and communication skills.
Preferred Qualifications, Capabilities, and Skills:
- Experience in privacy at a financial institution.
- Familiarity with the three lines of defense model.
- Privacycertifications such as CIPM or CIPP.