New York, New York-Hybrid
Phone+Skype
6+Month
JOb Description
Key Responsibilities
1) Data Security Governance & Policy
Support the development, maintenance, and implementation of data security and information protection policies, standards, and governance frameworks.
Ensure data security controls align with enterprise information security governance requirements and regulatory expectations. [FW-01-01 I...Framework | PDF]
Assist in defining governance requirements for data protection across internal systems and third-party relationships.
2) Data Classification & Protection
Support enterprise data classification initiatives and ensure appropriate handling requirements are defined and enforced across systems and platforms.
Partner with data governance and privacy teams to align classification, retention, and protection requirements across the data lifecycle. Assist with oversight of encryption, key management, and data handling controls in alignment with policy.
3) Cross-Functional Coordination
Assist with audit, regulatory, and internal assurance activities related to data security governance. Work with cybersecurity operations, data governance, privacy, legal, risk, and technology teams to embed data security governance into enterprise processes.
Required Skills & Experience
1) Experience supporting data security governance, information protection, or data protection programs in a regulated environment.
2) Knowledge of data security principles including data classification, data loss prevention, encryption, and secure data handling.
3) Familiarity with information security governance frameworks and policy lifecycle management.
4) Experience supporting risk assessments, control validation, audit responses, or regulatory reporting related to data security.
5) Understanding of enterprise data environments, identity and access management, and security architecture as they relate to data protection.
6) Ability to work with technical teams to translate policy requirements into operational controls.
7) Strong documentation, reporting, and stakeholder communication skills.
8) Ability to translate complex data security requirements into clear governance guidance and executive-ready materials.
Comments:
No comments listed in the requisition.
Kindly please share profiles as soon as possible.