This role is responsible for designing and implementing privacy and compliance-related policies, controls, processes, and leading practices. The Privacy and Compliance Program Manager will work with the BAL Information Security and Privacy Council (ISPC) to drive necessary policy and process changes. This position manages and coordinates all applicable privacy activities and processes associated with ongoing maintenance and care of privacy compliance requirements such as EU-US DPF, GDPR, etc. The role also involves facilitating project scope, goals, and deliverables, communicating with clients regarding privacy program actions (including breach processes), and advising on various privacy topics like incident response, leading privacy controls, and data subject access requests. Key responsibilities include identifying and communicating privacy risks, monitoring and reporting on privacy program initiatives, leading Data Privacy Impact Assessments (DPIAs), tracking regulatory changes, supporting the third-party risk management program, and participating in privacy audits and contract reviews. Additionally, the role supervises internal audits for ISO 27001 and 27701 compliance, leads critical ISO compliance activities, and owns the Data Governance program, including updates to data maps and compliance monitoring. The Privacy and Compliance Program Manager will also serve as the administrator and subject matter expert for the OneTrust tool. This position may telecommute.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Manager