Duration likely to be longer than 5 months as there are multiple open projects right now. Potential contract to hire opportunity. Position is 100% remote so candidates can be located anywhere in the US but should be able to support EST working hours within reason.
JOB DESCRIPTION RESPONSIBILITIES:
End to end management of Data Subject Requests (DSRs) under GDPR CCPA or other global privacy laws including:
Processing client employee or third party DSRs in accordance with firm policies and applicable laws Tracking and logging of all DSRs on the workflow system and ensuring DSRs are completed within firm and regulatory timelines.
Utilizing various firm systems and liaising with business stakeholders including HR in order to gather all relevant personal data.
Reviewing and assessing personal data content identifying and redacting privileged confidential and nonpersonal data and applying relevant GDPR and member state law and codes of practice to ensure (where applicable) exemptions or redactions have been correctly applied including working with external legal counsel when necessary. Respond to data subject and thirdparty queries or complaints that come into the privacy team mailbox.
Review and assess privacy controls for potential vendors and ensure appropriate contractual arrangements are in place Review of privacy terms or data processing addendums for client engagements
REQUIREMENTS:
Understanding of CCPA/CPRA and other US privacy laws GDPR and other applicable global privacy laws Minimum 23 years in a legal compliance risk audit or similar function Experience working in a large organization with complex infrastructures and technological environments.
Understanding of data processing operations including business applications and data use Intermediate to advanced Microsoft Office skills including Word and Excel. SharePoint experience a plus. Relativity or similar experience a plus. CIPM and/or CIPP/E certification preferred but not required. Experience in reviewing privacyrelated contractual arrangements and data processing addendums Experience in tracking cross border data transfers and conducting transfer impact assessments a plus Experience with OneTrust and current active certificates from OneTrust