26 Sep
|
Maarut
|
Toronto
Responsibilities:
- Required to lead or support the development of a privacy impact assessment that evaluates whether new technologies, information systems, or proposed programs or policies meet legal and policy privacy requirements, determine and mitigate risks, and address clients’ concerns.
- These requirements include ensuring that the program complies with provincial, municipal, federal and private sector access and privacy legislation, as well as relevant regulations, statutes, OPS policies, Directives, standards, guidelines and internationally accepted Fair Information Practices.
General Skills:
- Excellent knowledge of privacy and security concepts, trends, and issues. This will include an understanding of their impact on business processes, as well as skill with interpretation and communication of principles and compliance requirements
- Knowledge of, and experience in researching and applying relevant information privacy laws, regulations, jurisprudence (particularly as it relates to the Information and Privacy Commissioner of Ontario) and risk countermeasures
- Experience in conducting Privacy Impact Assessments in public sector context
- Knowledge of, and experience with privacy enhancing best practices
- Knowledge and ability to interpret and apply Ontario’s Freedom of Information and Protection of Privacy Act (FIPPA) and its municipal equivalent the Municipal Freedom of Information and Protection of Privacy Act (MFIPPA), Personal Health Information Protection Act (PHIPA) their respective regulations and related jurisprudence
- Familiarity with federal Personal Information Protection and Electronic Documents Act (PIPEDA) and US PATRIOT Act
- Policy Knowledge
- Familiarity with OPS Privacy Impact Assessment Process and Tools released by the Ontario Ministry of Government Services;
- Good understanding of related disciplines, such as IT security, IT system design, policy development (privacy or security), business architecture, legal processes, Freedom of Information administration, business analysis, risk management, project management.
- Operational Program and Business Design Skills
- Ability to lead, mange or support the development of a PIA either independently or as part of a team by directing and gathering input from specific individuals within the organization
Desirable Skills:
- Professional certification from a related discipline such as IT security, architecture
- Experience providing education and training related to privacy
- Knowledge of, and experience with the policies and procedures of the Ontario government (e.g. business case development, project approvals and policy development)
Requirements Experience and Skill Set Requirements:
Must Haves:
- Experienced in privacy legislation including Freedom of Information and Protection of Privacy Act (FIPPA), Personal Health Information Protection Act (PHIPA), the Personal Information Protection and Electronic Documents Act (PIPEDA)
- Experienced in conducting privacy assessments involving personal information, citing examples in resume.
- Experienced in leading and conducting privacy assessments with involving online and/or digital solutions.
- Lead and conducted assessments involving personal health information involving third party solutions (e.g. private sector or non-profit application solutions) and/or service integration providers.
Nice to have:
- OPS or Public Sector exp.
Skill Set Requirements: Privacy Assessment Experience, Policy and Legislative Requirements:
- Experienced in privacy legislation including Freedom of Information and Protection of Privacy Act (FIPPA), Personal Health Information Protection Act (PHIPA), the Personal Information Protection and Electronic Documents Act (PIPEDA)
- Experienced in conducting privacy assessments involving personal information, citing examples in resume.
- Experienced in leading and conducting privacy assessments with involving online and/or digital solutions.
- Lead and conducted assessments involving personal health information involving third party solutions (e.g. private sector or non-profit application solutions) and/or service integration providers.
- Experienced working with policy development teams; reviewing and comparing policies and legislation to make informed recommendations to ensure adequate privacy protections and considerations are addressed with in policy/legislation.
Digital Identity Frameworks and Standards:
- Experience in developing, applying and/or evaluating digital identity trust frameworks.
OPS experience:
- Prior experience with leading and conducting multiple PIAs in OPS setting/ workplace, including demonstrated knowledge and experience with OPS processes, existing templates and expectations to obtain approvals/sign off.
📌 Privacy Impact Assessment (PIA) (Healthcare) 7+ years of experience
🏢 Maarut
📍 Toronto