Description

RQ09134 – Privacy Impact Assessment (PIA) Specialist – Senior

Job Openings RQ09134 – Privacy Impact Assessment (PIA) Specialist – Senior

About the job RQ09134 – Privacy Impact Assessment (PIA) Specialist – Senior

Description:

Responsibilities

  • Lead or support the development of a privacy impact assessment (PIA) that evaluates whether new technologies, information systems, or proposed programs or policies meet legal and policy privacy requirements, mitigate risks, and address client concerns.
  • Ensure program compliance with provincial, municipal, federal, and private sector access and privacy legislation, including relevant regulations, statutes, OPS policies, Directives, standards, guidelines, and internationally accepted Fair Information Practices.
  • Interpret and communicate privacy principles and compliance requirements to technical and business audiences.
  • Direct and gather input from specific individuals within the organization to develop a PIA independently or as part of a team.

Key Skills and Experience

  • Excellent knowledge of privacy and security concepts, trends, and issues.
  • Experience conducting PIAs in a public sector context and familiarity with OPS privacy impact assessment processes and tools.
  • Knowledge and application of privacy enhancing best practices and privacy legislation (FIPPA, PHIPA, PIPEDA, MFIPPA, AODA).
  • Proficiency in creating and understanding data flow diagrams, business process diagrams, and risk assessment tools.
  • Strong communication skills with technical and business audiences.
  • Analytical skills to understand current and future access and privacy implications of policies, decisions, and business initiatives.
  • Knowledge of information technology concepts that impact the protection of personal information.
  • Experience providing education and training related to privacy.
  • Professional certification in a related discipline such as IT security or architecture (desirable).

Qualifications

  • 40% – Privacy Assessment Experience, Policy and Legislative Requirements
  • 30% – Leadership and Communications
  • 10% – Digital Identity Frameworks and Standards
  • 10% – OPS Experience

Must Haves

  • Extensive experience in privacy assessment, policy, and legislative requirements.
  • Experience with privacy legislation (FIPPA, PHIPA, PIPEDA).
  • Experience with privacy risks and conducting PIAs associated with integration between legacy systems, web applications, mobile, and cloud-based solutions.
  • Experience developing, applying, and evaluating digital identity trust frameworks (PCTF, eIDAS, or similar).
  • Experience with digital identity standards (NIST, FIDO, Open ID Connect, SAML).

#J-18808-Ljbffr