Cloud Privacy Risk

2 weeks ago


Los Angeles, United States V-Solve Full time

Summary : Role to be filled by a 3rd Party Privacy Risk & Compliance SME Consultant Work alongside Safeguard Owners (SGO) and Control Objective Owners (COO) during the FTC external assessment to provide subject matter guidance (i.e., guidance on interacting with the external assessors) and technical support (e.g., uploading documentation and responses to various Meta’ systems) Act as the primary point of contact and compliance subject matter advisor for SGOs, COOs, and BPGs to assist in driving and/or enabling awareness, coordination, and collaboration for the Compliance Management team’s processes alongside relevant Meta-identified process owners / supporting teams Review and provide feedback for SGO and COO activities related to NSD, Safeguard Change Management, Issue Management, MAPs, SET, and Certifications Assist Meta with project management efforts designed to track and enable domain and/or BPG completion of Compliance Management team’s processes Identify opportunities to enhance PRCM-related processes and share the recommendations

Top 3 must-have HARD skills: (Security or Privacy related) Governance, Risk & Compliance experience - 3+ years Worked with regulatory auditors in the past Strong written and verbal communication skills

Good to have skills: Cloud (AWS, GCP, Azure) Security or Privacy Risk Management experience - 3+ years Prior audit experience with technical controls (e.g. automated / programmatic/code-based controls) in a tech company Program management experience across large, complex technology initiatives Experience building and managing technical security or privacy controls Legal experience on regulatory and/or technical litigation matters (does not have to be an attorney or possess a JD) Desired Certification (at least one): CISA/CRISC/CISM (ISACA), CIPP or similar (IAPP), CISSP (ISC2)

Story Behind the Need – Business Group & Key Projects:

Cloud Privacy is a critical privacy focus areas for Meta as part of the 2020 FTC Order which was issued largely due to lack of maturation of our cloud environment. Cloud continues to be a highly scrutinized area and one of the largest within the Privacy Program encompassing controls related both to contractual engagements Key Projects largely revolve around maintaining Meta’s compliance with the FTC Consent Order and other global privacy regulations including: · Manage Cloud execution for Mandated Privacy Program (MPP) workstreams including Safeguard issue management, change management, Annual Program Evaluation & Adjustment (APPEA), Certifications, and Safeguard Effectiveness Testing (SET) · Support External Assessor testing response, communication and Management Action Plan (MAP) creation/execution · Perform 2LOD oversight and monitoring of Safeguards to ensure they are operating in a compliant and effective manner · Advise 1LOD business teams on governance, risk, and compliance related matters for Cloud Privacy

Compelling Story & Candidate Value Proposition:

Cloud is a critical privacy space for Meta as part of the 2020 FTC Order which was issued largely due to inadequacies in the oversight over third parties who were receiving user data from Meta. Our work ranges from contracts-related controls to highly technical, automated Safeguards which protect the User Data. Cloud has an extensive cross-functional set of stakeholders to engage with daily including other program teams, legal, engineering, product management, and data engineering teams. The work and challenges will vary day to day for each Safeguard (control). This team is high performing and provides a wide variety and volume of support to our stakeholders.

Typical Day in the Role: A typical day for a Cloud Privacy Assurance & Compliance Team (PACT) member includes: · Provide advisory, oversight, monitoring and operational support for Cloud Safeguards · Identify, assess and drive remediation with XFN groups of privacy compliance risks related to third party data sharing with stakeholders · Provide effective challenge and feedback to 1LOD on issues related to their safeguards, and privacy risks pertaining to their environment · Create new Cloud Safeguards in collaboration with business and privacy program teams · Create / maintain process documentation and evidence as needed · Attending/organizing meetings with stakeholders to discuss Cloud Safeguard related actions. Meetings are expected to include an agenda, minutes and action item follow-up · Communicating in both synchronous and asynchronous methods. Work happens via multiple simultaneous chat sessions and Workplace posts in addition to meetings · Escalating to management when blocked or delayed

How will performance be measured:

Typical performance measures for the team include · Completion of agreed upon tasks/goals on time · Positive feedback from XFN partners / stakeholders on interactions, communications, and outcomes · % on-time completion of issue and Management Action Plan (MAPs) remediation (timeliness) · % Assessor accepted MAPs at score of 4 or 5 (quality) # of Workplace posts with high levels of engagement

#J-18808-Ljbffr



  • Los Angeles, United States Capital Group Companies Full time

    “I can succeed as a Global Privacy Manager at Capital Group.” The Global Privacy Office (‘GPO’) delivers global policies, standards, and practices and partners with teams across Capital Group (CG) to implement the required controls to ensure our handling of individuals’ personal information complies with regulations and supports the continued...


  • Los Angeles, United States Vichara Full time

    Company Description Vichara is a Financial Services focused products and services firm headquartered in NY and building systems for some of the largest i-banks and hedge funds in the world. Job Description Cloud Security Architect The Cloud Security Architect is responsible for leading the development of cyber-security architecture in an agile environment,...


  • Los Angeles, United States L.A. Care Health Plan Full time

    Salary Range: $88,854.00 (Min.) - $115,509.00 (Mid.) - $142,166.00 (Max.) Established in 1997, L.A. Care Health Plan is an independent public agency created by the state of California to provide health coverage to low-income Los Angeles County residents. We are the nation's largest publicly operated health plan. Serving more than 2 million members in five...


  • Los Angeles, California, United States L.A. Care Health Plan Full time

    Salary Range: $88, Min.) - $115, Mid.) - $142, Max.) Established in 1997, L.A. Care Health Plan is an independent public agency created by the state of California to provide health coverage to low-income Los Angeles County residents. We are the nation's largest publicly operated health plan. Serving more than 2 million members in five health plans, we make...


  • Los Angeles, United States L.A. Care Health Plan Full time

    Salary Range:  $88,854.00 (Min.) - $115,509.00 (Mid.) - $142,166.00 (Max.)   Established in 1997, L.A. Care Health Plan is an independent public agency created by the state of California to provide health coverage to low-income Los Angeles County residents. We are the nation’s largest publicly operated health plan. Serving more than 2 million...

  • Security Engineer II

    3 weeks ago


    Los Angeles, United States JBA International Full time

    Duties and Responsibilities Assist in implementing Security Information and Event Management (SIEM), which includes but is not limited to; identifying deployment solutions, maintaining logs, assisting in developing company best practices for security alert correlations, perform root case analysis after incidents Assist with Endpoint Detection and Response...


  • Los Angeles, United States L.A. Care Health Plan Full time

    Salary Range:  $88,854.00 (Min.) - $115,509.00 (Mid.) - $142,166.00 (Max.)Established in 1997, L.A. Care Health Plan is an independent public agency created by the state of California to provide health coverage to low-income Los Angeles County residents. We are the nation’s largest publicly operated health plan. Serving more than 2 million members...


  • Los Angeles, California, United States L.A. Care Health Plan Full time

    Salary Range: $88, Min.) - $115, Mid.) - $142, Max.)Established in 1997, L.A. Care Health Plan is an independent public agency created by the state of California to provide health coverage to low-income Los Angeles County residents. We are the nation's largest publicly operated health plan. Serving more than 2 million members in five health plans, we make...


  • Los Angeles, California, United States L.A. Care Health Plan Full time

    Salary Range: $88, Min.) - $115, Mid.) - $142, Max.) Established in 1997, L.A. Care Health Plan is an independent public agency created by the state of California to provide health coverage to low-income Los Angeles County residents. We are the nation's largest publicly operated health plan. Serving more than 2 million members in five health plans, we make...


  • Los Angeles, United States L.A. Care Health Plan Full time

    Salary Range:  $88,854.00 (Min.) - $115,509.00 (Mid.) - $142,166.00 (Max.)   Established in 1997, L.A. Care Health Plan is an independent public agency created by the state of California to provide health coverage to low-income Los Angeles County residents. We are the nation’s largest publicly operated health plan. Serving more than 2 million...


  • Los Angeles, United States iSpace Full time

    Information Security Analyst Los Angeles, CA or New York, NY – Hybrid onsite 3 days/Week Contract to Hire This is a hands-on security position working within the Information Security group and with the internal IT Department at large. This position's core focus is to ensure consistent, measurable end-to-end delivery of security services. The successful...


  • Los Angeles, United States iSpace, Inc. Full time

    Information Security AnalystLos Angeles, CA or New York, NY – Hybrid onsite 3 days/WeekContract to Hire This is a hands-on security position working within the Information Security group and with the internal IT Department at large. This position's core focus is to ensure consistent, measurable end-to-end delivery of security services. The successful...

  • IT System Architect

    1 week ago


    Los Angeles, United States T2 Tech Full time

    Overview The System Architect is an inaugural and pivotal position within the Pathology and Lab Medicine Department, responsible for developing and implementing an IT architecture that not only aligns with but also enhances clinical operations, research initiatives, and patient care objectives. Working closely with the department's project management office,...

  • Sales Manager

    1 week ago


    Los Angeles, United States Pileuscloud Full time

    **Sales Manager** **Job description** The ideal candidate is an energetic self-starter with the ability to identify influencers and key decision-makers within accounts. You will discover qualified opportunities by responding to inbound interests and targeted outbound prospects to build rapport and establish long-term relationships. **You must have experience...


  • Los Angeles, United States Galleher Full time

    IT Infrastructure & Operations (I&O) Lead Organization/department: IT Job family: IT leadership + Contributor Reports to: CFO Direct reports: 3 internal IT members + multiple Managed Service Providers (MSPs) and consulting partners. Also known as: “Head of IT Service Delivery" in some regions About Galleher We are People-Centric & Process-Driven Galleher...


  • Los Angeles, United States Normalyze Full time

    About Normalyze At Normalyze, we’re changing the way security and DevSecOps teams view their cloud deployments. Our mission is to help enterprises protect all the data they run in the cloud. Through its agent-less assessments, data discovery, AI-driven risk prioritization, and comprehensive and actionable remediation insights, Normalyze helps enterprises...

  • Security Architect

    1 week ago


    Los Angeles, United States Experis Full time

    Responsibilities: Develops, reviews, edits, and provides recommendations for new and existing security architecture design artifacts such as reference and solution architectures along with framework mapping to NIST, CIS, ISO, etc. Provides security architecture guidance to internal customers and security teams for larger and more significant engagements....


  • Los Angeles, United States OnPoint Search Consultants Full time

    What you will find ...technical security risk assessment primarily remote (max 1 week/quarter on-site)top ranked hospital in the U.S.1 year FTE appointment (salary + benefits) with potential to extend What you will do ...conduct technical security risk assessments across IT servicesadvise on security risks for cloud, IoT, applications, & networksperform...


  • Los Angeles, United States OnPoint Search Consultants Full time

    What you will find ...technical security risk assessment primarily remote (max 1 week/quarter on-site)top ranked hospital in the U.S.1 year FTE appointment (salary + benefits) with potential to extend What you will do ...conduct technical security risk assessments across IT servicesadvise on security risks for cloud, IoT, applications, & networksperform...


  • Los Angeles, United States OnPoint Search Consultants Full time

    What you will find ...technical security risk assessment primarily remote (max 1 week/quarter on-site)top ranked hospital in the U.S.1 year FTE appointment (salary + benefits) with potential to extend What you will do ...conduct technical security risk assessments across IT servicesadvise on security risks for cloud, IoT, applications, & networksperform...