Lead data privacy and security assessments for systems managing PII, evaluate controls, identify gaps, and prepare detailed reports to ensure compliance with privacy laws.
            Job Description SummaryGE is seeking a qualified professional with expertise in data privacy regulations to support global compliance initiatives. This role involves leading and conducting data privacy risk assessments, security assessments and information security audits across systems processing personally identifiable information (PII), using established frameworks to evaluate privacy and security controls, identify gaps, and prepare detailed assessment reports. The candidate will work closely with business teams to address and remediate issues, ensuring compliance with international and emerging privacy laws such as GDPR, HIPAA, DPDP, and LGPD.Job Description
    Roles and Responsibilities:
- Lead and perform data privacy assessments for systems managing personally identifiable information.
- Evaluate the design and operational effectiveness of privacy / security controls by partnering with control owners and stakeholders.
- Identify control deficiencies, support remediation efforts through resolution, and report non-conformances in a timely manner.
- Prepare and deliver comprehensive summary reports for each data privacy / security assessment or review.
- Align all activities with the Unified Control Framework (UCF) to maintain consistency and compliance across processes.
- Maintain clear and proactive communication with application teams regarding assessment scope, expectations, and timelines.
- Drive initiatives to improve processes and enhance efficiency through automation and streamlined controls.
- Educate project teams on privacy regulations and related IT control requirements to promote awareness and ensure regulatory compliance.
- Establish operating rhythm to report out on key metrics including status of assessments and issue management.
- Ensure audit readiness, provide audit support, and manage audit-related activities to facilitate successful outcomes.
Qualifications & Skills:
- Bachelor’s degree in information security, Computer Science, Information Technology, Law, or a related field.
- Some years of experience in data privacy, information security, IT audit, compliance, or risk management.
- Strong knowledge of global data privacy laws and frameworks (e.g., GDPR, LGPD, DPDP) and U.S. health data regulations (HIPAA).
- Solid understanding of the concept of personally identifiable information (PII) and its protection requirements.
- Familiarity with IT security concepts, IT controls: including access management, infrastructure, encryption, and cybersecurity practices.
- Ability to identify appropriate testing procedures and assess the effectiveness of technology and privacy controls.
- Strong communication skills with the ability to explain complex issues to both technical and non-technical audiences, including engineering, legal, and project teams, focusing on risk and impact.
- Critical thinking and analytical skills to interpret data, identify trends, and assess privacy risks.
- Self-driven with the ability to independently plan and manage assessment schedules.
- Proficiency in English, both written and verbal.
Desired Characteristics
- Internationally recognized information security/information system audit certification/qualifications such as CISA, CISM, CISSP or CIA (IAPP)
- Experience with GRC tools (e.g., Archer, ServiceNow GRC).
- Experience conducting risk assessments, identifying gaps, and recommending mitigation strategies.
- Experience supporting audits and managing audit readiness activities.
Relocation Assistance Provided: No
Top Skills
Archer
Dpdp
Gdpr
Grc Tools
Hipaa
Lgpd
Servicenow Grc
Similar Jobs
Artificial Intelligence • Healthtech • Analytics • Biotech
The Senior Digital Auditor conducts IT security assessments, develops assessment approaches, prepares reports, engages with business units, and remediates control gaps to enhance the security posture.
Top Skills:
                        Audit Analytics ScriptsCobitIsoIt Risk Assessment FrameworkNistPci
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
Lead the product design teams at Dropbox to create exceptional product experiences, ensuring high quality and customer satisfaction while fostering a collaborative culture.
Top Skills:
                        Computational Design MethodologiesDesign LeadershipGenerative Design ToolsLlmsSaas Products
Fintech • Real Estate • PropTech
The Account Manager will build and maintain relationships with existing customers, identify growth opportunities, and ensure customer satisfaction while collaborating with internal teams.
Top Skills:
                        HubspotLinkedin Sales NavigatorSalesforce
What you need to know about the Colorado Tech Scene
With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.
Key Facts About Colorado Tech
- Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
- Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
- Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
- Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
- Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute


