Request Technology - Chicago, IL

posted 4 months ago

Full-time - Mid Level
Chicago, IL
Administrative and Support Services

About the position

The Associate Principal, Information Governance and Privacy (reporting to the Privacy and Data Protection Officer) is responsible for supporting the development and implementation of information governance, data protection, and privacy programs within the financial industry. This role is crucial in ensuring compliance with applicable regulatory and legal rules and requirements, such as SEC-Regulation SCI and CFTC-System Safeguards, as they relate to information management. The position involves supporting regulatory examinations and internal audit remediation planning, tracking, and mitigation efforts. Key responsibilities include the implementation of the information governance, data protection, and privacy program, which encompasses the development of policies, procedures, and job aids. The Associate Principal will identify, implement, and utilize technologies to support program objectives and classification standards. They will execute controls and risk assessments, including third-party risk, privacy, and data protection assessments. Additionally, the role requires performing privacy impact assessments on data incidents and collaborating with relevant stakeholders, such as Security Services and Legal, to resolve incidents effectively. The Associate Principal will create and execute strategies to identify information across the organization throughout its lifecycle, prepare programs for regulatory and internal audits/examinations, and ensure timely remediation of any findings. They will leverage technology and tools to track projects, manage deliverables, and create reporting that supports the program's objectives. Furthermore, the role involves supporting compliance assessments for information governance, data protection, and privacy, including the development of controls to measure risk. The Associate Principal will also be responsible for the development and maintenance of the organization's Records and Information Management (RIM) program, ensuring proper retention and disposal of information across all media and formats, including the remediation of legacy information. It is essential to ensure that retention, disposition, protection, and classification are addressed in new applications, platforms, and systems.

Responsibilities

  • Support the development and implementation of information governance, data protection, and privacy programs.
  • Ensure compliance with regulatory and legal requirements related to information management.
  • Assist in regulatory exam and internal audit remediation planning, tracking, and mitigation.
  • Implement the information governance, data protection, and privacy program, including policies and procedures.
  • Identify and implement technologies to support program objectives and classification standards.
  • Execute controls and risk assessments, including third-party risk and privacy assessments.
  • Perform privacy impact assessments on data incidents and collaborate with stakeholders to resolve incidents.
  • Create and execute strategies to identify information across the organization throughout its lifecycle.
  • Prepare programs for regulatory and internal audits/examinations and ensure timely remediation of findings.
  • Utilize technology/tools to track projects, manage deliverables, and create reporting for the program.
  • Support compliance assessments for information governance, data protection, and privacy, including developing controls to measure risk.
  • Develop and maintain the organization's Records and Information Management (RIM) program, ensuring proper retention and disposal of information.
  • Ensure retention, disposition, protection, and classification are addressed in new applications, platforms, and systems.

Requirements

  • 7 or more years of applicable work experience in information governance, data protection, and privacy policy.
  • Strong interest in understanding and solving data challenges.
  • Knowledge of enterprise systems, networks, databases, and other technical domains.
  • Strong attention to detail and customer orientation.
  • Excellent communication and presentation skills, with the ability to translate business needs into solutions.
  • Experience in building capabilities for auto data classification, data security, and data protection.
  • Familiarity with classification standard definitions and settings.
  • Experience with privacy requirements and personal information protection.
  • Strong strategic thinking, problem-solving, and analytical skills.
  • Ability to utilize metrics to improve performance.
  • Adaptability to change in emerging environments and ability to work across multiple areas.
  • Experience in developing policies and procedures.
  • Project management experience and ability to manage multiple priorities in a timeline-driven environment.
  • Experience working in a highly regulated environment with an understanding of audit and compliance requirements.
  • Interest in technology selection and implementation.
  • Experience in writing information security-related policies, procedures, and controls.

Nice-to-haves

  • Experience with systems supporting Compliance, Risk, Audit, Privacy, and Management such as ServiceNow, Archer, etc.
  • Business Intelligence tool experience.

Benefits

  • Salary range of $115k - $145k plus a 15% bonus.
  • Hybrid work model with 3 days onsite and 2 days remote.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service