The Data Privacy Manager will be responsible for the day-to-day operational aspects of data privacy, including handling data subject requests, managing privacy impact assessments and supporting incident response.
Data Subject Rights Management
- Manage and ensure timely response to privacy enquiries and complaints from various sources
Privacy Impact Assessment (PIA) and Third Party Assessments
- Coordinate and trigger PIA for new and existing projects, products and services
- Perform annual PIA certification exercise to ensure that PIA is kept up to date and reviewed on a regular basis
- Participate in governance forums on third parties and be accountable for ongoing assessment
- Prepare response on questionnaires from external parties for privacy assessment
Data Breach Incident Management
- Attend and collate information on tech and non-tech privacy incidents for assessment by L2
- Lodging/reporting of data breach to Group Privacy
Gap Assessments
- Perform gap assessment on regulatory changes
Risk Control Self-Assessment
- Perform Privacy RCSA and scenario analysis as 1st line owner
Training and Awareness
- Formulate and maintain privacy training materials to staff and agents
- Work with relevant stakeholders to ensure smooth implementation and completion of privacy training
- Prepare and circulate privacy awareness materials
Audits
- Coordinate and facilitate privacy related audit
- Ensure timeliness in closure of audit items
Reporting
- Prepare and submit privacy related metrics to various stakeholders
Privacy Champion Programme
- Execute privacy champion programme within the company
Other Matters
- Work closely with L2 data privacy team to ensure compliance with local privacy law (i.e. PDPA) and Group Privacy Policy
- Facilitate and coordinate privacy solution implementation within company
- Stay up-to-date on evolving privacy regulations, conduct regulatory gap analysis, and provide guidance to the organization on adapting to new requirements
- Work closely with manager to achieve team and company objectives, including completing assigned tasks