
Data Privacy Operations Lead
- Toronto, ON
- Permanent
- Temps-plein
- Develop, implement, and manage our privacy program to ensure compliance and to protect the privacy rights of our customers, brokers and employees.
- Collaborate with development team and application owners to analyze, design and program software enhancements for new data streams with a goal of developing technical solutions and systems to help mitigate privacy vulnerabilities and prevent potential future privacy risks, such as the data anonymization, pseudonymization and encryption.
- Collaborate with Zurich North America Data Privacy Team to develop, implement, and manage comprehensive privacy policies and procedures in compliance with Canadian privacy laws (e.g., PIPEDA, provincial privacy laws).
- Conduct regular privacy risk assessments and audits to identify and mitigate potential risks while ensuring compliance with local regulations.
- Collaborate with various departments to integrate privacy considerations into business processes and projects.
- Develop and implement solutions to ensure privacy policies are correctly implemented. The implementations should advance compliance with legal forms of data use as well as support business use of data.
- Work to align advanced technologies and Privacy by Design principles from the first stages of development and ensure that the data use meets established regulatory compliance needs.
- Collaborate with data product development teams creating new uses of data that employ privacy features.
- Interacting with internal privacy program managers, product development teams, legal, compliance, governance and data protection teams.
- Responsible for assisting with the management of the data privacy, data protection, data usability, performance and the integrity of the privacy solution.
- Monitor advancements in privacy enhancing technology and ensure the use of technologies complies with privacy and cyber security requirements, including the collection, use and disclosure of information.
- Collaborate with legal counsel and management to ensure the organization has and maintains appropriate privacy and confidentiality consent, authorization forms, and relevant materials are compliant with legal practices and requirements.
- Work closely with the Information Security team to ensure alignment between privacy and security initiatives.
- One of the following: Bachelor's degree in Information Security, Law, Business or BS/MS degree in computer science, computer engineering, information systems, privacy engineering or related field of study.
- 5 years of experience in a privacy or compliance role, preferably within the insurance or financial services industry.
- In-depth knowledge of data protection technologies and tools.
- Strong understanding of information security principles and practices.
- In-depth knowledge of Canadian privacy laws, including PIPEDA and provincial privacy regulations.
- Certified Information Privacy Professional/Canada (CIPP/C) certification is desirable.
- Excellent analytical, organizational, and communication skills.
- Proven ability to manage multiple projects and meet deadlines.
- Experience in conducting privacy risk assessments and audits.
- Strong interpersonal skills and the ability to work effectively with diverse teams.
- Excellent analytical and problem-solving skills.
- Ability to balance risks in ambiguous and complex situations.
- Understanding of design for software applications running on multiple platforms.
- Understanding of testing, coding and debugging procedures.
- Data literacy: finding and managing data, cleansing data, manipulating data.
- Ability to perform operations on large datasets.
- Experience or understanding of software applications design tools and languages.
- Demonstrated working knowledge of software engineering fundamentals.