Data Privacy and Compliance Manager
3 weeks ago
**Job Description****Company Summary**Constellation Brands is a leading international producer and marketer of beer, wine and spirits with operations in the U.S., Canada, Mexico, New Zealand and Italy. We offer a wide range of exciting career opportunities in sales, marketing, operations, production, finance and administration. As a part of the Constellation team, employees are encouraged to improve their skills and performance throughout their careers through various professional and educational development programs. Constellation provides a robust onboarding program in addition to ongoing training initiatives to help employees integrate into the organization quickly and maximize their growth potential.## Position Summary:The Manager of Privacy & Data Compliance will partner closely with the Legal department and other stakeholders across the organization to develop and implement a structured process to ensure the privacy of consumer, customer, and employee personal data. The core responsibilities of the role involve building out our privacy program from within Information Security, identifying ways to protect the organization and drive core processes related to privacy and data compliance obligations. This role involves developing, implementing, and managing privacy procedures, conducting risk assessments, and collaborating with various departments to safeguard data according to the information classification schema. Additional responsibilities include identifying, evaluating, and reporting on control opportunities within our technology stack and translating that into Business Risk in a meaningful way to our business stakeholders.## Privacy Responsibilities:* Actively manage the organization’s privacy program with guidance from Legal and the Privacy Officer.* Monitor and assess privacy risks, identifying control weaknesses and recommending improvements to align with regulatory and organizational standards. Oversee privacy operations such as: oCookie and tracking technology compliance oData mapping and record of processing activity maintenance oManaging data subject access requests (DSARs) oProviding privacy training and awareness programs to employees* Drive privacy governance documentation, including data protection frameworks, records of processing activities, and privacy impact assessments (PIAs).* Conduct privacy risk assessments and audits, ensuring alignment with best practices and regulatory requirements.* Collaborate with IT, Procurement, and Technology teams to manage third-party data protection risks.* Integrate privacy by design considerations into new projects and technologies, ensuring proactive compliance.* Interpret and implement requirements of privacy related regulations (GDPR, CCPA/CPRA, New Zealand Privacy Act, Australia Privacy Act, etc.)* Monitoring and Reporting: Monitor compliance with privacy policies and regulations and prepare regular reports for senior management and regulatory bodies.* Contribute towards data governance policies and procedures to ensure proper data handling, classification, and lifecycle management, as well as data handling practices, including data collection, storage, processing, and sharing, to ensure compliance with privacy and security standards.* Actively monitor and assess control effectiveness, identify weaknesses, and suggest improvements to enhance our security posture and ensure regulatory compliance standards across the IT/OT environments.* CIPP/CIPM certification preferred## Responsibilities/Accountabilities:* Build and sustain strong relationships, becoming a trusted partner with line-of-business stakeholder, product teams, and IDS colleagues to promote cross-functional collaboration and drive progress toward shared goals.* Identify thematic technology risks and trends throughout product lines and the Enterprise.* Ensure timely identification and reporting of technology control gaps due to failed internal procedures, weak controls, and new threats.* Ability to quantify and report technology risk and business impact to senior leadership.* Demonstrate an ability to prioritize, influence and drive the successful implementation of remediation measures to burn down risk.* Work closely with Procurement, Legal, and Technology teams to assess and manage third-party data protection risks.* Develop and maintain technology governance frameworks within both IT and OT environments and ensuring alignment with organizational goals.* Drive IT/OT policies, standards, and procedures to ensure compliance with relevant regulations (e.g., SOX, GDPR, CCPA, HIPAA, PCI etc.) and industry standards (e.g., ISO, NIST, IEC 62443).**Core Competencies to be Successful:****Agile**Change AgentPositive AttitudeFollow Through and AccountabilityInnovative**Collaborate and Be Inclusive**Build Productive Working RelationshipsCommunicate EffectivelyAbility to influence people and events without having direct controlGaining CommitmentDetailed Documentation**Develop Self and Others****Drive Results**In-Depth PlanningDecision MakingProvide leadership## Qualifications:* Bachelor’s degree in Privacy, Data Privacy, Data Protection, Information Security, Risk Management, or equivalent experience* 8+ years of experience in Privacy or Data Security, with a focus on information security governance principles.* Experience or advanced knowledge of privacy regulations and standards (e.g., GDPR, CCPA, ISO 27701) and IT/OT security frameworks/standards (e.g., CIS, NIST CSF, NIST 800-53, PCI DSS, SOX, IEC 62443)* CIPP or CIPM certification preferred.* In-depth understanding of privacy laws and regulations, data protection principles, data governance frameworks, and information security best practices.* Proven ability to align privacy requirements with technical and organizational objectives.* Experience administering and optimizing privacy management tools like OneTrust.* Strong understanding of technical and operational risks associated with privacy.* Familiarity with digital marketing practices and associated privacy considerations.* Excellent communication skills to convey privacy concepts to diverse audiences.* Experience or advanced knowledge of data governance and data protection best practices, such as data classification, encryption, transfer, loss prevention and retention themes.* Experience with privacy-enhancing technologies, data encryption, access controls, security incident response, and data governance tools.* The ability to communicate complex technical risks to non-technical stakeholders to ensure a common understanding and alignment of priorities based on risk* Strong verbal and written communication skills and the ability to influence significant change**ADA Physical/Mental/Workplace Requirements:*** Occasional lifting up to 40lbs* Sitting, working at desk/personal computer for extended periods of time* Primary work environment is professional corporate off**Location**Rochester, New York**Additional Locations**Canandaigua, New York, Chicago, Illinois, San Antonio, Texas**Job Type**Full time**Job Area**Information Technology**The salary range for this role is:**$96,500.00 - $173,400.00This is the lowest to highest salary we in good faith believe we would pay for this role at the time of this posting. Our compensation is based on cost of labor. For remote locations or positions open to multiple locations, the pay range may reflect several US geographic markets, including the lowest geographic market minimum to the highest geographic market maximum. We may ultimately pay more or less than the posted range, and the range may be modified in the future. An employee’s pay position within the salary range will be based on several factors including, but not limited to, the prevailing minimum wage for the location, relevant education, qualifications, certifications, experience, skills, seniority,
#J-18808-Ljbffr
-
Data Privacy and Compliance Manager
2 weeks ago
Chicago, United States Constellation Brands Full time**Descripción del Puesto de Trabajo****Company Summary**Constellation Brands is a leading international producer and marketer of beer, wine and spirits with operations in the U.S., Canada, Mexico, New Zealand and Italy. We offer a wide range of exciting career opportunities in sales, marketing, operations, production, finance and administration. As a part...
-
Data Privacy
3 weeks ago
Chicago, United States Constellation Brands Full timeA leading beverage company is seeking a Manager of Privacy & Data Compliance in Chicago, Illinois. The role involves managing the privacy program, conducting risk assessments, and ensuring compliance with regulations like GDPR and CCPA. The ideal candidate will have 8+ years in privacy or data security, a strong understanding of privacy laws, and excellent...
-
Chicago, Illinois, United States Crowe Full time $27 - $42Your Journey at Crowe Starts Here:At Crowe, you can build a meaningful and rewarding career. With real flexibility to balance work with life moments, you're trusted to deliver results and make an impact. We embrace you for who you are, care for your well-being, and nurture your career. Everyone has equitable access to opportunities for career growth and...
-
Privacy and Data Protection Manager
6 days ago
Chicago, Illinois, United States Grant Thornton Full time $144,000 - $216,000 per yearDescriptionGrant Thornton's Privacy and Data Protection team helps our clients transform and mature their privacy program through assessment, automation, process re-engineering, and managed services. As a Manager within our Privacy & Data Protection practice, you will get the opportunity to grow and contribute to our clients' business needs across a variety...
-
Manager, Privacy Compliance Monitoring
3 weeks ago
North Chicago, United States Chicago Staffing Full timeGlobal Privacy Compliance Monitoring And Analytics Program ManagerAbbvie's mission is to discover and deliver innovative medicines and solutions that solve serious health issues today and address the medical challenges of tomorrow. We strive to have a remarkable impact on people's lives across several key therapeutic areas immunology, oncology, neuroscience,...
-
Data Privacy and Compliance Sr Analyst
2 days ago
Chicago, IL, United States Anywhere Real Estate Full timeJob Summary We're looking for a Senior Data Privacy & Compliance Analyst with a collaborative mindset to join our team and help protect the personal data of consumers, brokers, agents, and employees. This role will support activities across our privacy program including fulfillment of privacy rights, consent management, privacy impact assessments (PIA), data...
-
Director of Compliance and Privacy, Industrious
3 weeks ago
Chicago, United States Chicago Staffing Full timeDirector of Compliance and PrivacyCBRE, Inc is seeking a Director of Compliance and Privacy to establish and oversee the compliance and privacy programs for CBRE's business segment, Industrious. Industrious is the largest premium workplace-as-a-service provider and home to the highest-rated workplaces in the industry. With a national network spanning 50-plus...
-
Senior Director of Compliance and Privacy
17 hours ago
Chicago, IL, United States Dale Workforce Solutions Full timeClient: health insurance Job: Senior Director of Compliance and Privacy Job type: full-time/direct hire Location: on-site 1-2 days per week in Chicago or DC Job Description Summary: The Compliance and Privacy Official is responsible for providing strategic direction and oversight for the organization's corporate compliance and privacy programs, ensuring...
-
Sr. Director of Compliance and Privacy
5 days ago
Chicago, United States Solution Partners, Inc. Full timeJob Title: Sr. Director of Compliance and PrivacyWe're seeking an experienced Compliance and Privacy Official to drive our organization's corporate compliance and privacy programs. As a strategic advisor to executive leadership, the Board of Directors, and governance committees, you'll foster a culture of ethics, accountability, and transparency.About the...
-
Sr. Director of Compliance and Privacy
1 week ago
Chicago, United States Solution Partners, Inc. Full timeJob Title: Sr. Director of Compliance and PrivacyWe're seeking an experienced Compliance and Privacy Official to drive our organization's corporate compliance and privacy programs. As a strategic advisor to executive leadership, the Board of Directors, and governance committees, you'll foster a culture of ethics, accountability, and transparency.About the...