Location:
Targeting New York candidates
Open to candidates in Washington DC and Seattle as well
Possible for extension?
6 months
Potential to convert to FTE, If so, what rate:
Unlikely
Team Overview:
Working heavily with Techops team
Very lean tech and engineering group
Nice to have skills:
Insider risk program experience
A little more tech savvy, work with engineers and product developers
Years of Experience:
5 years of experience
Software skills:
Experience with Google Suites
Interview Process:
1 step
JOB DESCRIPTION:
What You'll Do:
Data Privacy Program and Data Mapping / ROPA Delivery:
Serve as day-to-day Project Manager for the Protiviti-led Data Mapping, Records of Processing Activities, and Privacy Program Support engagement, helping ensure timely completion of Discovery and Design, Assessment and Validation, Reporting, and Phase 2 Planning activities.
Develop, maintain, and manage detailed project plans, workstream trackers, budget and hours-consumed reporting, risk logs, and weekly status reporting materials.
Coordinate stakeholder interviews, system-owner workshops, documentation requests, and follow-up activities across business, technology, legal, compliance, and functional teams.
Support configuration and privacy technology enablement activities in partnership with external advisors and technology stakeholders.
Help synthesize project outputs into practical implementation roadmaps supporting privacy operations integration, DSAR and PIA program maturity, data discovery, and monitoring capabilities.
Track dependencies, open issues, decisions, and required escalations to support timely execution and leadership visibility.
Cybersecurity Integration Program Enhancement:
Coordinate completion of cybersecurity integration action items, including application registration Application Portfolio Management system, Vulnerability Disclosure Program rollout, Cyber Risk Questionnaire and Cyber Control Self-Attestation compliance gates, and AI/ML assessment intake processes.
Partner with cybersecurity teams engineering and product stakeholders to support adoption of Secure Development Life Cycle, infrastructure onboarding, and related security review processes.
Support execution of aligned cybersecurity and privacy incident response processes, including tabletop exercises, escalation-path awareness, and coordination with Security Operations and Global Data Privacy stakeholders.
Maintain corrective action trackers and drive assigned owners toward timely completion of remediation activities.
Provide clear and concise status updates to Industrious leadership, integration stakeholders, and relevant governance forums.
Promote operational alignment and business adoption of cybersecurity and privacy requirements in a practical, risk-based manner.