- Excellent knowledge of privacy and security concepts, trends, and issues.
- This will include an understanding of their impact on business processes, as well as skill with interpretation and communication of principles and compliance requirements.
- Knowledge of, and experience in researching and applying relevant information privacy laws, regulations, jurisprudence and risk countermeasures.
- Experience in conducting Privacy Impact Assessments in public sector context.
- Knowledge of, and experience with privacy enhancing best practices.
- Develop and deliver a personal information inventory for clients.
- Create a step-by-step operational guide on how to create and maintain the personal information inventory as part of a privacy management program, which could be shared with other departments / public bodies.
- Similarly, create a step-by-step operational guide on how to create and maintain a privacy risk register, which could be shared with other departments / public bodies.
- Create a privacy impact assessment training module based on Client PIA guide and template.
- Services.
- Personal information inventory and privacy risk register.
- Create a personal information inventory for Client.
- Create a step-by-step operational guide on how to create and maintain the personal information inventory as part of a privacy management program.
- Similarly, create a step-by-step operational guide on how to create and maintain a privacy risk register.
Privacy Impact Assessments (PIAs) :
- Conduct Privacy Impact Assessments on IT systems, programs, services, activities, and new initiatives, providing risk mitigation strategies, and implementing risk mitigation plans.
- Create a privacy impact assessment training module based on our PIA guide and template.
- Manage Client privacy breach responses, including containment, risk evaluation, notification, and recommendations for prevention.
Policy Development :
- Assist in the development, implementation and monitoring of privacy policies, directives, standards, guidelines, processes, practices, and tools for the Client privacy management program.
- Assist in the development and implementation of a privacy training and awareness program for Client.
- Assume the role of the Senior Privacy Analyst for the Department of Finance & Treasury Board, leading the development and execution of the departmental privacy management program.
- Work with government departments to implement, assess, improve, and monitor their privacy management programs and compliance with government privacy policies and perform other duties as assigned.
Mandatory Skills :
- A university degree in Law, Social Sciences, Business Administration, Public Administration, Computer Science, Engineering, or a related field.
- An equivalent combination of education and experience may also be considered.
- A Certified Information Privacy Professional or Certified International Access and Privacy Professional designation, or willingness to obtain certification.
- 4 years experience working directly with privacy legislation, such as the Right to Information and Protection of Privacy Act (RTIPPA), including experience understanding, analyzing, and interpreting privacy legislation.
- 2 years experience conducting privacy impact assessments, and a minimum of five (5) years of related work experience.
- Submitted resumes must be 5 pages max.
Scored Requirements :
- Demonstrated experience working directly with privacy legislation, such as the Right to Information and Protection of Privacy Act (RTIPPA), including experience understanding, analyzing, and interpreting privacy legislation. 4 Years
- Specific duration, employer name, and type of privacy work conducted.
- Amount of risk items handled (monthly).
- Methodology.
- Tools used.
- Reporting provided.
- Provide an outline of how you might develop and deliver components of Client privacy management program, e.g., personal information inventory, privacy breach management.
- Provide a timeline for the program development.
- Demonstrated experience conducting privacy impact assessments. 2 Years
- The duties that candidate performedM.
- Types of projects completedM.
- Methodologies and frameworksM.
- Reporting providedM. .
- Communication skills (written and oral) in French would be a benefit. Yes / No
- Demonstrated experience in public policy.
- The duties that you performed and employer name.