- Company Name
- Teachers Federal Credit Union
- Job Title
- Data Privacy Analyst
- Job Description
-
Job Title: Data Privacy Analyst
Role Summary
Support and strengthen the organization’s data privacy framework by ensuring compliance with global regulations (GDPR, CCPA/CPRA, HIPAA, etc.), conducting privacy impact assessments, managing data subject requests, and coordinating incident response and training initiatives.
Expectations
Implement and continuously improve privacy governance, policies, and controls. Deliver accurate, timely responses to privacy requests and regulatory notifications. Collaborate with cross‑functional stakeholders to embed privacy into product development, vendor management, and contractual arrangements.
Key Responsibilities
- Design, update, and enforce privacy policies, controls, and documentation in alignment with applicable laws.
- Conduct Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs) for systems, products, and third‑party vendors.
- Maintain data inventories, Records of Processing Activities (ROPAs), and data flow mappings across business units.
- Coordinate and resolve Data Subject Access Requests (DSARs) and other privacy rights requests.
- Work with Legal, IT, Compliance, and Security to embed privacy in contracts, vendor due diligence, and risk management.
- Assist in privacy incident response – documentation, root‑cause analysis, and regulatory notifications.
- Develop and deliver privacy awareness and training programs for staff and stakeholders.
- Monitor regulatory changes and industry best practices to refine compliance strategies.
Required Skills
- Minimum 2 years of experience in data privacy, information governance, or compliance.
- Expertise in conducting PIAs/DPIAs and managing data subject rights requests.
- Strong understanding of GDPR, CCPA/CPRA, HIPAA, NIST, ISO 27701 and related frameworks.
- Ability to translate regulations into practical, business‑oriented solutions.
- Excellent organizational, communication, and prioritization skills in a cross‑functional environment.
Required Education & Certifications
- Bachelor’s degree in Law, Computer Science, Information Security, Compliance, or related field, **or** equivalent experience (minimum 8 years).
- Preferred certifications: CIPP/US, CIPP/E, CIPM, CDPSE.
- Experience with privacy management platforms (OneTrust, TrustArc, BigID) is advantageous.