Praca IT Data Privacy Manager Warszawa, mazowieckie

Praca IT Data Privacy Manager Warszawa, mazowieckie

JTI Polska profil

Jesteśmy wiodącą, międzynarodową firmą tytoniową, wywodzącą się z Grupy Japan Tobacco. Działamy w 130 krajach na świecie, zatrudniamy ponad 45 tys. osób i mamy w swoim portfolio jedne z najbardziej znanych marek, w tym Camel, LD, Winston oraz Logic dostępne na polskim rynku.

W Polsce zatrudniamy prawie 3 tys. pracowników i jesteśmy trzecim graczem w branży tytoniowej. Wkraczając na polski rynek w 2007 roku, postanowiliśmy, że na pierwszym miejscu zawsze będziemy stawiać naszych pracowników. Tworzymy kulturę opartą na współpracy, dzięki czemu w naszych zespołach panuje wyjątkowa atmosfera. Szerokie zakresy odpowiedzialności dają możliwość zdobycia nowej wiedzy i umiejętności, co przekłada się na świetną jakość działania oraz szybki rozwój naszej firmy. Stosujemy także najlepsze praktyki w zakresie rozwoju talentów, wdrażania nowo zatrudnionych osób czy możliwości szkoleniowych.

Nasze starania, by być najlepszym pracodawcą dla naszych pracowników, co roku zostają doceniane przez Top Employers Institute. Najlepszym dowodem na to jest przyznawany nam nieustannie od 2010 roku certyfikat Najlepszego Pracodawcy nie tylko w Polsce, a także w Europie (1. miejsce w rankingu w 2021 roku) oraz na świecie.

Firma: JTI Polska | IT Data Privacy Manager

Miejsce: Warszawa, mazowieckie

Opis stanowiska

What will you do - Responsibilities:

 

Compliance to Information/data regulations

Work with regional and country-specific subject matter experts as well as our Corporate Data Protection Officer to identify developments in information security/protection laws and regulations that may impact company information security policies and practices. Define policy and procedure to drive regulatory IT compliance.

 

Proactive Governance

Work with our IT teams to identify the impact of regulatory non-compliance for new and existing data processing. Liaise with all our IT colleagues including our own security team to ensure we are efficient enablers of change whilst driving privacy by design principles. Ensure that efficient IT regulatory governance processes are defined and implemented globally and that IT personnel is fully educated and trained on responsibilities to meet regulatory compliance.

 

Risk & Controls Management

Conduct IT risk assessments based on our legal teams interpretation of regulations to ensure we have adequate controls in place to efficiently demonstrate compliance globally.

 

Technology Solutions

Work with our TSC to research technology solutions from existing and new providers to minimize the risk of personal data loss or non-compliance to regulations aiming to automate decision making wherever possible. Manage the implementation through collaboration with necessary IT teams.

 

IT Data Breach Register and IT Personal Data Inventory

Manage the IT data breach register to ensure that incidents are tracked to support data breach reporting and to be in compliance with the company data privacy policy. Manage the IT Personal Data Inventory to ensure that IT can demonstrate clearly which technology is used to process personal data for which data subjects across JTI, and to further ensure that the appropriate Technical and Operational Measures are in place to protect that data processing.

 

Personal Data Breach reporting and Security Investigations

The employee will be responsible to design and implementation a sustainable data incident response process to support comply with regulations. To manage data incident response activities where required for local or cross entity incidents and to ensure continuity of service by training IT colleagues on data incident response responsibilities. In the event of a data breach to inform Information Security management of the extent of the breach in as short a time frame as possible. In the event of a data breach incident the incumbent will be required to conduct an investigation to determine the remediation and control activities required to prevent reoccurrence.

 

Controls Verification

Provide support to the Compliance Manager by periodically conducting data privacy audits to verify the effectiveness of the IT controls. Providing feedback and working in collaboration on improvements to the controls framework and to ensure timely risk mitigation.

 

Digital Investigations

Provide a highly confidential service to Legal, Compliance and P&C by performing E Discovery and document investigations to provide detailed reports to strict standards which are admissible in a court of law.

Wymagania

  • You have approx. 7 years of experience in similar position
  • Strong IT & Legal background in Data Privacy Laws/Legal Compliance.
  • Experience of working with established Information Security and Risk Management systems, ideally ISO27001 or NIST.
  • CISM, CISSP or CIPP qualification would be advantageous. Experience of working with recognized Governance Risk and Compliance tools.
  • An in-depth understanding of Data Protection Regulations applicable to our organization (PCI, GDPR, etc.).
  • A proven ability to work effectively with stakeholders, adept at explaining complex technical issues in a clear and concise manner.
  • Ability to create and convey important messages/training for the IT function
  • Legal educational background may be an advantage.
  • Fluent English written & spoken.
  • Excellent interpersonal communication & collaboration skills

Informacje dodatkowe

Thank you very much for your interest in the role. You are welcome to apply.

We will make sure every candidate will receive a reply within 3 weeks after the application

deadline.

Should you have any questions, you are welcome to contact Andreea Neacsu – Recruiter (Andreea.Neacsu@jti.com).

Komentarze (0)