Information Technology Governance and Privacy - Financial Industry
SALARY: $115k - $145k plus 15% bonus
LOCATION: Chicago, IL
Hybrid 3 days onsite and 2 days remote,
They want 7 years of applicable experience
The Associate Principal, Information Governance and Privacy (reporting to the Privacy and Data Protection Officer) is responsible for supporting the development and implementation of information governance, data protection, and privacy program. This role will focus on compliance with applicable regulatory and legal rules and requirements (ie SEC-Regulation SCI, CFTC-System Safeguards, etc.) as they relate to information including support of regulatory exam and Internal Audit remediation planning, tracking, and mitigation.
- Implementation of the information governance, data protection, and privacy program including the development of policies, procedures, and job aids
- Identification, implementation, and use of technologies to support program objectives and classification standards
- Execution of controls and risk assessments (eg, third-party risk, privacy, data protection)
- Responsible in performing the privacy impact assessment on data incidents and working with relevant stakeholders like Security Services and Legal to help closing the incident.
- Creation and execution of strategies to identify information across the organization and throughout its life cycle
- Preparation of program for regulatory and internal audits/examinations and timely remediation of any findings
- Use of technology/tools to track projects, manage deliverables and create reporting that support the program and its objectives
- Support of compliance assessments for information governance, data protection, and privacy including development of controls to measure risk
- Development and maintenance of the organizations Records and Information Management (RIM) program, ensuring information across all media and formats is properly retained and disposed including remediation of Legacy information
- Ensure retention, disposition, protection, and classification are addressed in new applications, platforms, and systems
Qualifications:
- Strong interest in understanding and solving data challenges with experience in information governance, data protection, and privacy policy
- Knowledge of and work experience with enterprise systems, networks, databases, and other technical domains
- Strong attention to detail, customer orientation, communication, and presentation skills including the ability to listen and quickly translate business needs into solutions and build effective working relationships
- Strong experience in building the capabilities for auto data classification, data security and data protection.
- Experience with classification standard definitions and settings
- Experience with Privacy requirements and work with personal information and its protection
- Strong strategic thinking, problem solving, and analytic skills
- Utilize metrics as means to improve performance
- Ability to adapt to change in emerging environments and work across multiple areas
- Experience in developing policies and procedures
- Experience in project management, project execution, and managing multiple priorities in a timeline driven environment
- Experience working in a highly regulated environment including an understanding of audit and compliance requirements
- Understanding of and interest in technology selection and implementation
- Experience in Information Security related policy, procedure and control writing
Technical Skills:
- Office 365 (Word, Excel, PowerPoint)
- Experience with systems supporting Compliance, Risk, Audit, Privacy, and Management such as ServiceNow, Archer, etc.
- Project/Program Management
- Business Intelligence tool experience
Education and/or Experience:
- Bachelor's degree or higher in information management, information systems, law, computer science or BA/BS in another discipline with equivalent experience
- 7 or more years of applicable work experience
- Previous work with information or data governance control activities in the financial services industry.
- Experience in the financial services industry
Certificates or Licenses:
- Certifications in Information, Data, Privacy Records or Security such as: Certified Information Privacy Professional (CIPP), Certified Information Privacy Management (CIPM), Certified Records Manager (CRM), and/or Certified Information Privacy Technologist (CIPT), Certified Information Systems Security Professional (CISSP), Information Governance Professional (IGP), Certified Information Security Manager (CISM) and Certified Information Systems Auditor (CISA)