Act as the Privacy Subject Matter Expert across North America and Latin America jurisdictions and the Data Protection Officer in Canada
Drive the implementation of Northern Trust privacy risk strategies and initiatives across respective jurisdictions/legal entities
Support Data Privacy requirements across other legal entities/jurisdictions as delegated by the Chief Privacy Officer
Serve as a “Trusted Adviser” embedding Privacy risk and compliance into day-to-day activities
Liaise with Data Protection Regulators and Clients and present on Northern Trust’s Privacy Risk Program as needed
Provide privacy risk advice to Business Units and Corporate Functions, including pro-active, competent, and pragmatic advice, interpretation, clarification on regulatory issues, and formal training to all levels of staff
Undertake Privacy risk monitoring and testing, advise management of potential compliance problems, and recommend procedural changes
Responsibilities
For assigned Business Units, provide risk challenge, advice, and support on key developments including regulatory engagement, business developments, and emerging issues
Oversee the review, interpretation, and dissemination of current and proposed laws and regulations for assigned Subject Matter Expert risk areas
Manage Programs/Projects required to implement regulatory change and enhancements to the applicable control framework
Collaborate and work closely with the Chief Privacy Officer, other Regional Heads of Privacy, and the Global Privacy Operations Team; support others with less experience or knowledge of specific compliance topics to drive and sustain a culture of compliance
Represent Privacy Risk in Client Due Diligence reviews, ad hoc programs, and other internal/external forums
Provide regulator reports on Data Privacy Risk to the respective legal entity Boards and Committees
Provide support to the Chief Privacy Officer on other Privacy risk reduction initiatives as directed
Develop creative ways for embedding Privacy risk into key operational processes to ensure partners understand their compliance duties
Identify situations to strengthen the management of regulatory risk (including outside assigned SME areas) and recommend plans to the Chief Privacy Officer
Work closely with Global Privacy Operations to execute, monitor, and assess the adequacy and effectiveness of measures, controls, and procedures put in place by business units to address compliance with regulatory obligations
Proactively identify control gaps, assess impact to privacy, and identify and design solutions to strengthen resilience and sustainable operations