Business Analyst Consultant -IV Job at My3Tech, Madison, WI

dkNtRlFMRTBpZXJvWnplKy96N1YrSVUxTnc9PQ==
  • My3Tech
  • Madison, WI

Job Description

Privacy Program Contractor/IT Business Analyst IV

Madison, WI (Primarily Remote with Onsite for 1 day per month)

6-9 months Contract with possibility to extension

The Client is looking for one (1) Business Analyst/Consultant -IV

Overview: Seeking an experienced contractor to design, develop, and help stand up a comprehensive privacy program at the Client. The contractor will be responsible for developing, documenting, and, as feasible, implementing or operationalizing, privacy program policies and plans to enhance privacy governance, compliance, and risk management practices for the agency, that can later inform enterprise recommendations for all executive branch agencies.

Scope of Work: Along with legal counsel and others, the contractor will perform the following tasks:

  1. Policy & Governance Framework Development:
    • Establish privacy procedures tailored to the agency's operations.
    • Establish a privacy governance structure, including roles and responsibilities.
    • Define key performance indicators (KPIs) for privacy program success.
  2. Regulatory Compliance & Risk Management:
    • Create processes to ensure compliance with federal, state, and local privacy laws and regulations.
    • Create processes for Privacy Threshold Assessments (PTAs) and Privacy Impact Assessments (PIAs).
    • Identify systems that process personally identifiable information (PII) and other regulated data, and identify key stakeholders associated with those systems per NIST Risk Management Frameworks ( e.g., system owner, authorizing official, etc.).
  3. Training & Awareness:
    • Create privacy communication materials, best practice guidelines, and training.
    • Develop/recommend best practices to foster a culture of privacy compliance within the agency.
  4. Incident Response & Data Breach Management:
    • Along with Chief Information Security Officer (CISO) and legal counsel, develop privacy mandates within existing incident response plans.
    • Along with CISO and legal counsel, establish procedures for reporting and remediating privacy incidents.
  5. Vendor & Third-Party Risk Management:
    • Along with legal counsel, conduct privacy assessments of key vendors and partners.
    • Along with legal counsel, recommend strategies to standardize contracting and data sharing agreements (DSAs) and/or templatize appropriate data protection and privacy clauses within contracts.
  6. Privacy Technology & Automation:
    • Assess and recommend privacy-enhancing technologies (PETs) and automation tools.
    • Support integration of data/privacy tools and controls into agency IT systems, including the governance, risk, and compliance (GRC) platform.
    • Collaborate with IT and security teams to embed privacy by design principles into all aspects of the system development lifecycle (SDLC).

Required Qualifications & Competencies (8-10 Years of Relevant Experience Required):

  • Excellent communication skills and the ability to engage with stakeholders at all levels, translating complex technical and legal ideas to business stakeholders and decision-makers.
  • Demonstrated experience in privacy program process development and implementation.
  • Strong knowledge of NIST Risk Management Frameworks ( e.g., NIST RMF, NIST PF, NIST CSF).

Well Qualified Applicant Qualifications & Competencies:

  • Knowledge of privacy laws and regulations ( e.g., GDPR, CCPA, HIPAA).
  • Experience conducting privacy impact assessments and developing privacy processes.
  • Strong project management skills.
  • Ability to execute strategic privacy initiatives independently, with general/minimal oversight.
  • Expertise in risk management, data governance, and compliance frameworks.
  • Professional certifications such as Certified Information Privacy Professional (CIPP), Certified Information Privacy Manager (CIPM), Certified Information Privacy Technologist (CIPT) or similar preferred.

Reporting Structure:

This is a joint initiative between DOA's Division of Legal Services and DOA's Division of Enterprise Technology. The contractor will report to DOA's Lead Privacy Counsel with dotted line reporting responsibilities to the Client's Chief Information Officer (CIO), Chief Information Security Officer (CISO), Chief Technology Officer (CTO), and DOA's Data Manager. This role presents an exciting opportunity for an experienced privacy professional to establish a best-in-class privacy program for a government agency. Interested contractors should submit a resume highlighting relevant experience in privacy program development, particularly with respect to creating processes and communicating with varied stakeholders

Top Required Skills & Years of Experience:

  • Excellent communication skills and the ability to engage with stakeholders at all levels, translating complex technical and legal ideas to business stakeholders and decision-makers. (8-10+ years)
  • Demonstrated experience in privacy program process development and implementation. (8-10+ years)
  • Strong knowledge of privacy laws and regulations (e.g., GDPR, CCPA, HIPAA) and NIST Risk Management Frameworks (e.g., NIST RMF, NIST PF, NIST CSF). (8-10+ years)

Nice to Have Skills:

  • Expertise in risk management, data governance, and compliance frameworks.
  • Experience conducting privacy impact assessments and developing privacy processes.
  • Strong project management skills with the ability to execute strategic privacy initiatives.

Job Tags

Contract work, For contractors, Local area, Remote work

Similar Jobs

Anglims Western Metal Works Inc

Metal Fabricator/ Welder Job at Anglims Western Metal Works Inc

 ...Job Description Job Description We are seeking a Metal Fabricator / Welder to become an integral part of our team! Welding is a small portion of the work required. ~5 Years minimum experience required ~ Mechanically and detail oriented ~ Problem Solving... 

Bluestone Child & Adolescent Psychiatric Hospital

Art Therapist Job at Bluestone Child & Adolescent Psychiatric Hospital

 ...hospital indemnity, accident, critical illness ~ Flexible Spending Account for Health and Dependent Care JOB SUMMARY: The Art Therapist serves to facilitate skills and expressive/art therapy groups and provide care coordination for patients. Specifically, the Art... 

Manpower Group Inc.

Warehouse Worker - Forklift Operator Job at Manpower Group Inc.

 ...and warehousing, is seeking a dedicated Warehouse Worker - Forklift Operator to join their team. As a Warehouse Worker - Forklift Operator...  ...and mechanical equipment safely and efficiently No prior experience required; training will be provided Strong work ethic and... 

Hosco

Executive Protection Agent Job at Hosco

 ...Executive Protection Agent Journey with us! Combine your career goals and sense of adventure by joining our exciting team of employees. Royal Caribbean Group is pleased to offer a competitive compensation & benefits package, and excellent career development opportunities... 

Fidelity Investments

Financial Consultant - Brea, CA Job at Fidelity Investments

 ...Job Description: Financial Consultant If you no longer want to spend your time on sourcing new clients and would rather have the time to deepen relationships and create complex financial plans, then join a team that is a stable industry leader. Fidelity provides...