CrawlJobs Logo

Head of Data Privacy & Data Regulatory Compliance

United States, New York 215000.00 - 280000.00 USD / Year · Job Posted January 15, 2026
Apply Position
Job Link Share

Job Description

To lead and integrate the strategic and operational delivery of data privacy compliance, and records management across the Investment Bank (IB), ensuring alignment with legal, regulatory, and business requirements. The role acts as a senior lead and control owner across these domains, embedding governance, risk, and control frameworks that support sustainable and compliant data practices, driving transformation of the function through a data led, technology enabled approach. Provide regional leadership for the IB CDAO within the US region, ensuring alignment with global and regional objectives, regulatory requirements, and business priorities, acting as the primary point of contact for regional stakeholders and representing the function in cross-business forums.

Job Responsibility

  • Lead and integrate IB-wide data privacy and records management strategy and operations, ensuring compliance with legal, regulatory, and business requirements
  • Act as senior control owner for data privacy and records management, embedding strong governance, risk, and control frameworks
  • Oversee all data privacy activities, including DPIAs, RoPAs, privacy control reviews, and maintenance of privacy notices
  • Drive data privacy awareness, training, and cultural adoption across the IB
  • Govern classification, retention, storage, and disposal of records in line with Group Data & Records policies
  • Lead records assurance activities (Records TSA, RTS workshops) and manage inventories, action logs, and remediation
  • Shape and influence the IB-wide data strategy, operating model, simplification initiatives, and tooling enhancements
  • Drive transformation of the function through data-led, technology-enabled approaches aligned to industry best practice
  • Represent IB CDAO in cross-functional forums and external regulatory/legal engagements
  • Provide regional leadership for the US, acting as primary point of contact and ensuring alignment with global objectives and regulatory expectations
  • Oversee day to day regional operations, ensuring effective service delivery, policy adherence, risk management, and continuous improvement
  • Ensure compliance with all applicable US federal, state, and local regulations
  • Lead and develop the regional team, setting clear objectives, driving performance, supporting training, and enabling succession planning
  • Build strong stakeholder relationships across business units, compliance, technology, regulators, and vendors
  • Communicate regional priorities, achievements, risks, and issues to global and regional leadership
  • Maintain robust governance frameworks and ensure accurate documentation, reporting, and record keeping

Requirements

  • Evidencable knowledge and skills in Financial Services, specifically Investment Banking
  • Successful track record of implementing data management strategy and framework in an automated, tooling led environment
  • Good understanding of data management tooling, architecture, and application into financial services
  • Strong stakeholder influencing and communication skills
  • Leadership and delivery within a global, matrix delivery environment

Looking for more opportunities?

Search for other job offers that match your skills and interests.

Similar Jobs for

Head of Data Privacy & Data Regulatory Compliance

8 matching positions

Global Data Privacy Counsel

We are looking for a senior attorney with extensive experience in global data pr...
Location
Location
United States , Atlanta
Salary
Salary:
Not provided
arrive.com Logo
Arrive
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Juris Doctor degree from a reputable, accredited U.S. law school
  • Active license in good standing with one or more U.S. state bars (Georgia preferred)
  • 10+ years of progressive experience in data privacy and cybersecurity legal matters, with significant in-house experience at a high-growth, technology-driven company
  • Deep expertise and knowledge of and hands-on experience with U.S. and international data privacy, cybersecurity, and compliance laws and frameworks (including GDPR, CCPA/CPRA, PCI-DSS, ISO certifications, and other relevant global standards) and leading-edge AI regulations and frameworks
  • Demonstrated success in providing strategic legal counsel that balances risk management with enabling innovation and business growth, particularly in payments and data-driven initiatives
  • Proven experience leading global privacy and data protection programs, including managing privacy and data protection risk frameworks and governance
  • Experience managing external counsel, auditors, and regulators
  • Proven ability to lead, develop, and inspire diverse, global teams, including direct leadership experience with Data Protection Officers and other privacy professionals
  • Strong business acumen with the ability to translate complex legal concepts into clear, actionable advice that aligns with business objectives and supports deal-making and sales acceleration
  • Excellent communication and interpersonal skills, with the ability to influence stakeholders at all levels, including senior executives and cross-functional teams globally
Job Responsibility
Job Responsibility
  • Serve as a trusted strategic legal advisor to executive leadership, business unit and function heads, and the governance committees on global privacy, data protection, and cybersecurity risks, as well as opportunities aligned with rapid business growth and innovation
  • Design, lead, and continuously evolve the global privacy and data protection program, ensuring it not only meets regulatory requirements but also supports scalable growth and competitive advantage in a fast-paced, high-growth environment
  • Partner closely with product, technology, payments, data, software and hardware sales, marketing, and strategy teams to embed privacy-by-design and data governance principles into all data-driven and payment-related initiatives
  • Advise on privacy, data protection, cross-border data processing, and emerging technologies (AI and machine learning), in connection with parking, public transport and other urban mobility technologies and data services (B2B, B2C), to help the company navigate these complex regulatory environments while accelerating innovation
  • Balance risk management with enabling agility—help business units achieve their ambitious growth objectives without compromising compliance or customer trust
  • Lead and manage a global, unified privacy and data protection team, including the EU Data Protection Officer and EU Privacy Program Manager, and serve as the global privacy and data protection leader responsible for harmonizing privacy and data protection practices across all regions
  • Act as the company’s U.S. and Canada Privacy Officer, overseeing all U.S.-specific and Canada-specific aspects of the global privacy and data protection program
  • Own enterprise-wide development, implementation, and continuous improvement of privacy and data protection policies, standards, and frameworks aligned with relevant global privacy and data protection-related regulations
  • Develop and maintain a privacy and data protection risk management framework and a dashboard of key privacy metrics to inform leadership decision making and monitor program effectiveness in a high-growth environment
  • Lead privacy and data protection audits and program assessments to ensure compliance and identify areas for improvement aligned with rapid company growth
Read More
Arrow Right

Head of Legal & Compliance - LATAM

The Head of Legal & Compliance will be the regional legal expert, trusted adviso...
Location
Location
Colombia , Bogota
Salary
Salary:
Not provided
easygo.io Logo
Easygo Gaming
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Law degree and eligibility to practice in a LATAM jurisdiction
  • 10+ years’ post-qualified experience, with deep exposure to regulated industries (preferably wagering, gaming, fintech, payments, telecoms, or other highly regulated sectors)
  • Demonstrated experience working with LATAM regulatory bodies
  • Proven ability to interpret and influence regulatory frameworks
  • Strong background in compliance, including AML/CTF and responsible gambling
  • Excellent stakeholder management and communication skills in both English and Spanish (Portuguese advantageous)
  • Experience operating in a multinational, matrixed organisation
  • Fluency in English
Job Responsibility
Job Responsibility
  • Provide strategic legal advice to senior management on all regional legal matters, including regulatory, commercial, licensing, corporate, and employment-related issues
  • Oversee the drafting, review, and negotiations of a wide range of commercial agreements (supplier, media, affiliate, technology, data, sponsorship, etc.)
  • Oversee legal risk management and drive processes that support safe, sustainable growth in regulated and newly regulating LATAM markets
  • Monitor legislative developments across LATAM and advise on business impacts and opportunities
  • Oversee all regulatory engagement with LATAM wagering authorities, regulators, and government bodies
  • Ensure ongoing compliance with all licensing obligations and support new license applications and renewals across the region
  • Interpret complex regulatory requirements and translate them into actionable business practices
  • Develop, implement, and oversee compliance programs in areas such as AML/CTF, responsible gambling, data privacy, sanctions, and anti-bribery
  • Lead compliance monitoring, auditing, reporting, and remediation activities
  • Partner with global compliance to ensure consistency with group frameworks and standards
Read More
Arrow Right

Data Privacy Senior Analyst - Assistant Vice President

The Data Privacy Sr Analyst is responsible for providing governance and oversigh...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant experience
  • Demonstrates Data Privacy, Data Privacy Operations, Information Security or Cyber related risk management or minimum two years in an Internal Audit, Risk Management, or Control Management related role
  • Working knowledge of Data Privacy Compliance laws, rules, regulations, risks, and appropriate controls
  • Strong project management skills
  • Ability to anticipate and balance the needs of multiple stakeholders
  • Ability to communicate effectively
  • Risk-based thinking and analytical mindset
  • Ability to build rapport and work closely with stakeholders
  • Up-to-date understanding of key Data Privacy risk and control concepts, tools and trends
  • Proficient in the use of basic Microsoft applications (Word, Excel, PowerPoint)
Job Responsibility
Job Responsibility
  • Complete the Privacy Impact Assessment (PIA) process and controls required for all initiatives, new products and services
  • Assess, evaluate, and validate controls through processes and tools such as the MCA and KRIs as appropriate for data privacy risk
  • Support the product heads, function heads, COOs and In Business Risk team on gap analysis and the implementation of global policy requirements and regional standards
  • Support periodic reviews of the Business’s data privacy processes and control and validate changes as a result of such reviews
  • Track and review deviations and risk acceptances when raised and at the time of renewal
  • Follow Escalation Policy and procedures to ensure effective escalation and socialization of material risk events and issues across businesses for any Data Privacy related items
  • Escalate material risk events and issues appropriately
  • Assist business in creation of Issues/CAPs related to Data Privacy as needed
  • Support the Business and Functions on reviews and audits on Data Privacy
  • Work with Global In-Business Regulatory head on all reviews and audits to ensure appropriate preparation, pre-review assessments and post-review remediation
  • Fulltime
Read More
Arrow Right

Data Privacy Lead Analyst

Location
Location
Hungary , Budapest
Salary
Salary:
14768850.00 - 24762350.00 HUF / Year
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years of relevant experience
  • Demonstrates Data Privacy, Data Privacy Operations, Information Security or Cyber related risk management experience or minimum two years in an Internal Audit, Risk Management, or Control Management related role
  • Working knowledge of Data Privacy Compliance laws, rules, regulations, risks, and appropriate controls
  • Familiarity with privacy related technology considerations such as cookies, mobile devices, biometric and geolocation data is desired
  • Risk-based thinking and analytical mindset
  • Ability to lead and drive controls across the products and functions irrespective of reporting lines
  • Communicates effectively, develops and delivers multi-mode communications that convey a clear understanding of the unique needs of different audiences
  • able to drive consensus, and influence relationships at all levels
  • Collaborates effectively by building partnerships and working well with others to meet shared objectives
  • Up-to-date understanding of key data privacy risk and control concepts, tools and trends
Job Responsibility
Job Responsibility
  • Assess, evaluate, and validate controls through processes and tools such as the MCA and KRIs as appropriate for data privacy risk
  • Support the Business and Functions on reviews and audits on Data Privacy and Cross Border Data Transfers
  • Support the business on reviewing and responding to findings by reviewers
  • Manage day to day activities that support implementation of global policy requirements and regional standards, and on the assessment of the legal and regulatory requirements with Country Legal and Compliance as well as the development of local procedures as relate to Cross Border and Data Privacy
  • Coordinate periodic reviews of the Business's data privacy processes, Cross border data transfers and control and validate changes as a result of such reviews
  • Track and review deviations and risk acceptances when raised and at the time of renewal to assess the need for deviations and ascertain that the business has implemented and documented effective compensating controls
  • Follow Escalation Policy and procedures to ensure effective escalation and socialization of material risk events and issues across businesses for any data privacy related items
  • Provide input and review of completed Cross Border Data Clearance CAPs in the tracking system prior to validation by other control and assessment functions such as Internal Audit and ORM
  • Coordinate and support the Business in the implementation of global, regional and local Data Privacy, regulatory and risk and control projects
  • Ensure high quality execution for Data Privacy and Cross Border Data Transfer programs for any Citi initiated programs, in coordination with Global Risk and Control and the In Business Regulatory Engagement Head
What we offer
What we offer
  • Cafeteria Program
  • Home Office Allowance (for colleagues working in hybrid work models)
  • Paid Parental Leave Program (maternity and paternity leave)
  • Private Medical Care Program and onsite medical rooms at our offices
  • Pension Plan Contribution to voluntary pension fund
  • Group Life Insurance
  • Employee Assistance Program
  • Access to a wide variety of learning and development programs, online course libraries and upskilling platforms, such as Udemy and Degreed
  • Flexible work arrangements to support you in managing work - life balance
  • Career progression opportunities across geographies and business lines
  • Fulltime
Read More
Arrow Right

Data Privacy Lead Analyst – Vice President

The Data Privacy Lead Analyst is responsible for facilitating/ executing the day...
Location
Location
India , Pune
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 6-10 years of relevant experience
  • Demonstrates Data Privacy, Data Privacy Operations, Information Security or Cyber related risk management experience or minimum two years in an Internal Audit, Risk Management, or Control Management related role
  • Working knowledge of Data Privacy Compliance laws, rules, regulations, risks, and appropriate controls
  • familiarity with privacy related technology considerations such as cookies, mobile devices, biometric and geolocation data is desired
  • Risk-based thinking and analytical mindset
  • Ability to lead and drive controls across the products and functions irrespective of reporting lines
  • Communicates effectively, develops and delivers multi-mode communications that convey a clear understanding of the unique needs of different audiences
  • able to drive consensus, and influence relationships at all levels
  • Collaborates effectively by building partnerships and working well with others to meet shared objectives
  • Up-to-date understanding of key data privacy risk and control concepts, tools and trends
Job Responsibility
Job Responsibility
  • Engages in assessment of Privacy impact processes and controls required for all initiatives, new products and services
  • Assess, evaluate, and validate controls through processes and tools such as the MCA and KRIs as appropriate for data privacy risk
  • Support the Business and Functions on reviews and audits on Data Privacy
  • Support the business on reviewing and responding to findings by reviewers
  • Manage day to day activities that support implementation of global policy requirements and regional standards, and on the assessment of the legal and regulatory requirements with Country Legal and Compliance as well as the development of local procedures as relate to Data Privacy
  • Coordinate periodic reviews of the Business’s data privacy processes and control and validate changes as a result of such reviews
  • Track and review deviations and risk acceptances when raised and at the time of renewal to assess the need for deviations and ascertain that the business has implemented and documented effective compensating controls
  • Follow Escalation Policy and procedures to ensure effective escalation and socialization of material risk events and issues across businesses for any data privacy related items
  • Assist business in creation of Issues/CAPs related to data privacy as needed (issues and CAPs owned by Product/Region business owner)
  • Track and escalate as necessary
  • Fulltime
Read More
Arrow Right

Director, Deputy Corporate Compliance & Operations

Aledade's Compliance & Ethics organization is seeking a tenured and strategic he...
Location
Location
United States , Arlington; Austin; Durham; Novi; Bethesda
Salary
Salary:
Not provided
aledade.com Logo
Aledade, Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree or equivalent combination of education and experience
  • +12 years of experience, with a minimum of 8 years of progressive experience in healthcare compliance, with a strong focus on corporate compliance operations
  • Experience leading compliance operations teams
  • Experience presenting and reporting to the Board of Directors
  • Strong knowledge of HIPAA, fraud, waste, and abuse laws (Stark Law, Anti-Kickback Statute, False Claims Act)
  • Excellent analytical, problem-solving, and critical thinking skills
  • Exceptional written and verbal communication skills, with the ability to translate complex data findings into clear and actionable guidance
  • Strong interpersonal skills and the ability to collaborate effectively with diverse teams
Job Responsibility
Job Responsibility
  • Deputize for the VP, Head of Compliance in providing leadership, oversight and representation for the Compliance Department
  • Prepare and present compliance reports to senior leadership, Compliance Committee, and the Board of Directors
  • Oversee and continually enhance Aledade’s Corporate Compliance Program, ensuring alignment with OIG compliance program guidance, industry best practices, and Aledade’s strategic objectives
  • Establish and maintain a strong compliance governance framework, including policy standards, committee structures, and reporting mechanisms
  • Develop and manage compliance training and education programs to ensure business relevant and effective programs
  • Lead and manage compliance the day-to-day operations, including policy governance, reporting & investigations, conflict of interest, exclusion screening, training & education, and compliance communications
  • Oversee the intake, internal investigations, and resolution of compliance concerns and reports to ensure consistent application of policies, procedures, and corrective actions
  • Partner with Legal, Privacy, Security, and People teams to ensure coordinated approaches to compliance risks
  • Lead special projects on behalf of the VP, Head of Compliance, including compliance program optimization, technology enablement, and corporate transaction readiness
  • Supervise and mentor compliance team members, fostering professional growth and operational excellence
What we offer
What we offer
  • Flexible work schedules and the ability to work remotely are available for many roles
  • Health, dental and vision insurance paid up to 80% for employees, dependents and domestic partners
  • Robust time-off plan (21 days of PTO in your first year)
  • Two paid volunteer days and 11 paid holidays
  • 12 weeks paid parental leave for all new parents
  • Six weeks paid sabbatical after six years of service
  • Educational Assistant Program and Clinical Employee Reimbursement Program
  • 401(k) with up to 4% match
  • Stock options
  • Fulltime
Read More
Arrow Right

Bfs Ai/data Sales Specialist

The BFS AI/Data Sales Specialist role focuses on driving AI-led transformation a...
Location
Location
United States , Chicago
Salary
Salary:
131625.00 - 292500.00 USD / Year
nttdata.com Logo
NTT DATA
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 15–18+ years of experience in enterprise technology or transformation sales, IN BFS space
  • Proven success selling into Banking & Financial Services clients in North America
  • Experience owning and closing, complex, multi-stakeholder deals
  • Track record of selling consultative, transformation-led engagements (not just point solutions)
  • 8+ years of BFS domains (Banking, Capital Markets, Payments, Lending)
  • Working knowledge of Regulatory and compliance requirements
  • Working knowledge of Risk, governance, and data controls
  • Ability to discuss business, operations, and technology in one integrated conversation
  • 8 + years’ experience with AI, Data, & Technology
  • Comfortable discussing AI/GenAI and agentic architectures
Job Responsibility
Job Responsibility
  • Own a quota-carrying role measured on ACV, TCV
  • Drive new sales in existing accounts and breakthrough new logo and expansion opportunities across North American BFS clients
  • Shape and close large, complex, multi-tower transformation deals
  • Engage senior BFS stakeholders (CIO, CTO, CDO, COO, Chief Risk/Compliance, Business Heads)
  • Lead conversations on The future of BFS in an AI-driven, highly regulated world
  • Lead conversations on AI-led business reimagination (not just AI use cases) and hence pull in the underlying IT services and technologies offerings of NTT Data like – Modern Data services, App modernization, re-imagines BPO services, Transformed Infrastructure, Operating model and business process transformation enabled by AI
  • Position NTT DATA as a strategic transformation partner, not just a technology vendor
  • Articulate a compelling, end-to-end transformation narrative that covers AI and agentic processes
  • Articulate a compelling, end-to-end transformation narrative that covers Data foundations (governance, quality, platforms, analytics)
  • Articulate a compelling, end-to-end transformation narrative that covers Modern cloud and infrastructure
What we offer
What we offer
  • medical, dental, and vision insurance
  • flexible spending or health savings account
  • life and AD&D insurance
  • short and long term disability coverage
  • paid time off
  • employee assistance
  • participation in a 401k program with company match
  • additional voluntary or legally-required benefits
  • Fulltime
Read More
Arrow Right
New

UK Data Protection Officer

Through the effective day-to-day management of the UK Data Protection team, and ...
Location
Location
United Kingdom , London
Salary
Salary:
Not provided
socialvalueportal.com Logo
Social Value Portal Ltd
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Proven experience in Privacy and Data Protection
  • Previous DPO experience
  • Degree level educated
  • Excellent written and oral communications skills
  • The ability to prioritise work and deliver results in a pressurised environment, through tactical and strategic planning
  • The ability to manage significant client contact, providing expert advice which demonstrates judgement and an understanding of the business
  • A demonstrated ability to develop strong relationships with internal clients
  • The ability to provide support to more senior roles in developing key client relationships through the design of leading-edge technologies
  • Self-motivated, with an ability to work with high degree of autonomy and to be results-driven with a flexible approach to working
  • The ability to work collaboratively with a broad range of constituencies
Job Responsibility
Job Responsibility
  • Ensure that the UK entities' legal and regulatory obligations for data privacy and protection across their licensed footprint are mapped to a comprehensive set of activities, processes and controls to enable compliance
  • Ensure that the global Horizon Scanning framework is embedded in the UK DP team's BAU with appropriate contributions to formal UK Compliance reporting including to the Change Committee
  • Manage the UK DP team, tracking and monitoring the effectiveness of delivery against key activities, in line with internal SLAs, to ensure regulatory compliance
  • Keep workloads and resource needs under close observation and proactively identify problems or inhibitors and escalate where appropriate for resolution
  • Identify development opportunities for direct reports and support the team pastorally
  • Engage closely with internal stakeholders in Infosec, IT and co-sourcing relationships in Claims to support the effective and efficient delivery of DSARs, e-discovery requests, and subpoenaed information as required
  • Oversee any externally outsourced DP provision for the UK entities in jurisdictions where they operate, working with regional DPOs as required where resources are shared
  • Where appropriate and within your expertise, provide advice and guidance on technical DP matters including DP contract clauses where the contract is governed by English law
  • Retain external advisors when needed to ensure appropriate levels of specialism are enlisted when required
  • Ensure UK DP-owned actions arising from all applicable audit, assurance and testing activities are completed on time
  • Fulltime
Read More
Arrow Right