RQ09134 - Privacy Impact Assessment (PIA) Specialist - Senior
Job Openings RQ09134 - Privacy Impact Assessment (PIA) Specialist - Senior
About the job RQ09134 - Privacy Impact Assessment (PIA) Specialist - Senior
Description:
Responsibilities
- Lead or support the development of a privacy impact assessment (PIA) that evaluates whether new technologies, information systems, or proposed programs or policies meet legal and policy privacy requirements, mitigate risks, and address client concerns.
- Ensure program compliance with provincial, municipal, federal, and private sector access and privacy legislation, including relevant regulations, statutes, OPS policies, Directives, standards, guidelines, and internationally accepted Fair Information Practices.
- Interpret and communicate privacy principles and compliance requirements to technical and business audiences.
- Direct and gather input from specific individuals within the organization to develop a PIA independently or as part of a team.
Key Skills and Experience
- Excellent knowledge of privacy and security concepts, trends, and issues.
- Experience conducting PIAs in a public sector context and familiarity with OPS privacy impact assessment processes and tools.
- Knowledge and application of privacy enhancing best practices and privacy legislation (FIPPA, PHIPA, PIPEDA, MFIPPA, AODA).
- Proficiency in creating and understanding data flow diagrams, business process diagrams, and risk assessment tools.
- Strong communication skills with technical and business audiences.
- Analytical skills to understand current and future access and privacy implications of policies, decisions, and business initiatives.
- Knowledge of information technology concepts that impact the protection of personal information.
- Experience providing education and training related to privacy.
- Professional certification in a related discipline such as IT security or architecture (desirable).
Qualifications
- 40% – Privacy Assessment Experience, Policy and Legislative Requirements
- 30% – Leadership and Communications
- 10% – Digital Identity Frameworks and Standards
- 10% – OPS Experience
Must Haves
- Extensive experience in privacy assessment, policy, and legislative requirements.
- Experience with privacy legislation (FIPPA, PHIPA, PIPEDA).
- Experience with privacy risks and conducting PIAs associated with integration between legacy systems, web applications, mobile, and cloud-based solutions.
- Experience developing, applying, and evaluating digital identity trust frameworks (PCTF, eIDAS, or similar).
- Experience with digital identity standards (NIST, FIDO, Open ID Connect, SAML).