Request Technology - Chicago, IL
posted 4 months ago
The Associate Principal, Information Governance and Privacy (reporting to the Privacy and Data Protection Officer) is responsible for supporting the development and implementation of information governance, data protection, and privacy programs within the financial industry. This role is crucial in ensuring compliance with applicable regulatory and legal rules and requirements, such as SEC-Regulation SCI and CFTC-System Safeguards, as they relate to information management. The position involves supporting regulatory examinations and internal audit remediation planning, tracking, and mitigation efforts. Key responsibilities include the implementation of the information governance, data protection, and privacy program, which encompasses the development of policies, procedures, and job aids. The Associate Principal will identify, implement, and utilize technologies to support program objectives and classification standards. They will execute controls and risk assessments, including third-party risk, privacy, and data protection assessments. Additionally, the role requires performing privacy impact assessments on data incidents and collaborating with relevant stakeholders, such as Security Services and Legal, to resolve incidents effectively. The Associate Principal will create and execute strategies to identify information across the organization throughout its lifecycle, prepare programs for regulatory and internal audits/examinations, and ensure timely remediation of any findings. They will leverage technology and tools to track projects, manage deliverables, and create reporting that supports the program's objectives. Furthermore, the role involves supporting compliance assessments for information governance, data protection, and privacy, including the development of controls to measure risk. The Associate Principal will also be responsible for the development and maintenance of the organization's Records and Information Management (RIM) program, ensuring proper retention and disposal of information across all media and formats, including the remediation of legacy information. It is essential to ensure that retention, disposition, protection, and classification are addressed in new applications, platforms, and systems.