Logo of Huzzle

Privacy Associate

  • Job
    Full-time
    Junior & Mid Level
  • Legal
  • London

AI generated summary

  • You must have data governance, privacy, or compliance experience, familiarity with privacy regulations, strong collaboration skills, and the ability to handle confidential information.
  • You will support compliance with privacy regulations, conduct assessments, respond to requests, review agreements, monitor privacy changes, draft communications, and collaborate with stakeholders.

Requirements

  • Relevant data governance, privacy, compliance, or paralegal experience.
  • Familiarity with at least one of the following data privacy regulations and one associated security frameworks GDPR, CCPA, HIPAA, NIST frameworks, ISO frameworks, etc.
  • Track record of effectively working with data from multiple sources – willingness to dig-in and understand the data, leveraging creative thinking and problem-solving.
  • Experience with Privacy Impact Assessments and Data Subject Access Requests is a plus.
  • Contract review experience is a plus.
  • Privacy certifications (e.g. CIPM, CIPT, CDPSE) is a plus.
  • Experience using OneTrust Privacy Management Software is a plus.
  • Experience in privacy with one of the following privacy principles or technologies is preferred: privacy by design, user data protection, GDPR, CCPA, data inventory, DLP, encryption anonymization or privacy impact assessments.
  • Experience with concepts and practices such as threat modelling, data anonymization and classification, auditing access to data, and review of requests for data access is preferred.
  • Must be highly collaborative and able to work in a team-based environment offering services to a fast-paced, multi-disciplinary organization negotiating for competing priorities and resources.
  • Ability to handle and protect confidential, sensitive information.
  • Strong initiative, self-driven to learn and deliver results without daily supervision.
  • Excellent written and verbal communication skills in English.
  • Core working hours are generally 8:30 AM – 5:30 PM, Monday - Friday; willingness to work outside of normal business hours, and as unique projects/needs arise.
  • Ability to work full time in an office and remote environment.
  • Must become familiar with, and promote and abide by, our Core Values as defined by the AlixPartners' Code of Conduct and foster an inclusive environment with people at all levels of an organization.

Responsibilities

  • Provide support in areas related to compliance with state, federal, and global data privacy statutes and regulations, including GDPR, CCPA, PIPL, HIPAA, HITECH, and ePrivacy Directive.
  • Provide support in the maintenance and enforcement of AlixPartners' data governance policies and programs and AlixPartners' privacy policies and programs.
  • Respond to client questionnaires and due diligence requests.
  • Review data protection agreement, data sharing agreement, standard contractual clauses, and Business Associate Agreements for consistency of preferred terms related to data governance, privacy, and security.
  • Conduct, execute, and document Privacy Impact Assessments and Risk Assessments for programs, processes, and projects across the organization.
  • Intake, document, and respond to Data Subject Requests.
  • Partner with cross functional teams firmwide to identify and document privacy risks within new and existing projects, and develop mitigation plans.
  • Conduct privacy assessments of third-party vendors and tools in conjunction with the procurement team and other stakeholders.
  • Monitor changes in the privacy landscape and translate to actionable measures.
  • Draft privacy, data governance, and data protection communications for internal use.
  • Complete other administrative tasks related to the execution of a Privacy Program (e.g. schedule stakeholder meetings, take meeting minutes, breach response participation, etc.).
  • Build positive relationships with stakeholders across the broader organization.
  • Additional responsibilities as identified. This description is not designed to encompass a comprehensive listing of required activities, duties, or responsibilities.

FAQs

Do we support remote work?

Yes, we support remote work in a hybrid format, allowing employees to work remotely on Mondays and Fridays, while in-person work is expected on Tuesdays, Wednesdays, and Thursdays.

What is the location preference for this position?

The preferred locations for this position are Southfield, Michigan, USA, or London, England.

Are there any relocation benefits available for this job?

No, paid relocation is not available for this position.

What type of experience is required for this role?

Relevant experience in data governance, privacy, compliance, or paralegal work is required.

Are there any preferred qualifications for candidates?

Yes, familiarity with data privacy regulations, experience in Privacy Impact Assessments and Data Subject Access Requests, and contract review experience are preferred qualifications. Privacy certifications and experience with OneTrust Privacy Management Software are also considered a plus.

What are the core working hours for this position?

The core working hours are generally from 8:30 AM to 5:30 PM, Monday to Friday.

Is prior knowledge of specific privacy regulations necessary?

Yes, familiarity with at least one of the following data privacy regulations is necessary: GDPR, CCPA, HIPAA, or associated security frameworks.

What kind of tasks will I be responsible for in this role?

You will provide support related to compliance with data privacy statutes, assist in data governance policy maintenance, respond to client questionnaires, conduct Privacy Impact Assessments, and collaborate with cross-functional teams to manage privacy risks, among other responsibilities.

Are there opportunities for training or professional development?

The firm offers a comprehensive benefits program, and while specific training programs are not mentioned, employees are encouraged to self-drive their learning and may benefit from pursuing privacy-related certifications.

Does the company have a commitment to diversity and inclusion?

Yes, AlixPartners actively promotes an inclusive environment and is committed to diversity, equity, and the perpetual enhancement of their initiatives, policies, and practices.

Consulting
Industry
1001-5000
Employees
1981
Founded Year

Mission & Purpose

For more than forty years, AlixPartners has helped businesses around the world respond quickly and decisively to their most critical challenges – circumstances as diverse as urgent performance improvement, accelerated transformation, complex restructuring and risk mitigation. These are the moments when everything is on the line – a sudden shift in the market, an unexpected performance decline, a time-sensitive deal, a fork-in-the-road decision. But it’s not what we do that makes a difference, it’s how we do it. Tackling situations when time is of the essence is part of our DNA – so we adopt an action-oriented approach at all times. We work in small, highly qualified teams with specific industry and functional expertise, and we operate at pace, moving quickly from analysis to implementation. We stand shoulder to shoulder with our clients until the job is done, and only measure our success in terms of the results we deliver. Our approach enables us to help our clients confront and overcome truly future-defining challenges. We partner with you to make the right decisions and take the right actions. And we are right by your side. When it really matters.