Senior Data Privacy Engineer at CVS Health

Chicago, Illinois, United States

CVS Health Logo
Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
HealthcareIndustries

Requirements

  • 5+ years of hands-on experience in security engineering, privacy engineering, privacy enhancing technologies or related fields
  • 5+ years of experience with privacy and data protection regulations (GDPR, CCPA, HIPAA, etc.) and translating them into technical requirements
  • 3+ years of experience in one or more programming or scripting languages (e.g. Python, Java, Go, Rust, or similar)
  • 3+ years of experience in designing and implementing cryptographic or data protection systems (e.g. encryption, tokenization, key management)
  • 3+ years of experience in performing privacy threat modeling, data flow mapping, and conducting DPIAs/PIAs
  • 3+ years of experience in working in CI/CD environments, Infrastructure as Code (IaC), and automating security/privacy checks
  • Preferred Qualifications
  • Professional Certifications such as CDPSE, CIPP, CIPT, CIPM, CISSP, or equivalent
  • Experience building and scaling privacy platforms or features in a fast-paced environment
  • Familiarity with Data Loss Prevention (DLP) systems and data mapping tools
  • Familiarity with cloud platforms (AWS, Azure, GCP) and various data technologies (SQL, NoSQL databases, data lakes, etc.)
  • Excellent communication and ability to explain complex technical and legal concepts

Responsibilities

  • Act as the technical subject matter expert on privacy, guiding product and engineering teams from the initial design phase through launch to ensure new features and systems are built with privacy controls integrated
  • Design and implement privacy-enhancing technologies (PETs), such as data anonymization, pseudonymization, encryption, masking, and differential privacy techniques
  • Conduct privacy threat modeling, data flow analysis, technical reviews and Privacy Impact Assessments (PIAs) on systems, architecture, and code to identify and mitigate privacy risks, system vulnerabilities, and regulatory compliance gaps
  • Build, maintain, and integrate internal tools for privacy automation, such as automated data discovery, classification, consent management, and policy enforcement across our technology stack
  • Work with application and data engineering teams to enforce privacy requirements throughout the entire data lifecycle, including data collection, storage, processing, access, retention, and deletion
  • Collaborate with engineering, product, legal, and compliance teams to translate privacy and regulatory requirements (e.g., GDPR, CCPA, HIPAA) into technical designs, policies, and guardrails
  • Monitor and research new privacy-enhancing technologies, evolving global regulations, and industry best practices
  • Evaluate, prototype, and operationalize advanced privacy technologies (e.g. synthetic data, privacy-preserving analytics, homomorphic encryption, secure multiparty computation)
  • Provide mentorship and guidance to other engineers on privacy-aware development practices, secure coding, and data lifecycle protection

Skills

Privacy by Design
Data Anonymization
Pseudonymization
Encryption
Data Masking
Differential Privacy
Privacy Threat Modeling
Data Flow Analysis
Privacy Impact Assessments
Data Discovery
Data Classification
Consent Management
Policy Enforcement

CVS Health

Comprehensive pharmacy and healthcare services

About CVS Health

CVS Health operates a large network of retail pharmacies and walk-in medical clinics across the United States, providing a variety of health-related products and services. Their offerings include prescription medications, over-the-counter health products, and beauty items, as well as pharmacy benefits management and specialty pharmacy services. CVS Health's integrated business model allows them to serve individual consumers, businesses, and communities effectively, with a focus on improving health outcomes and reducing healthcare costs. Unlike many competitors, CVS Health combines pharmacy services with medical care, making it easier for patients to access quality healthcare. The company's goal is to enhance access to healthcare and support individuals in achieving better health.

Woonsocket, Rhode IslandHeadquarters
1963Year Founded
DEBTCompany Stage
Healthcare, Consumer GoodsIndustries
10,001+Employees

Benefits

Health Insurance
Dental Insurance
Vision Insurance
Life Insurance
Disability Insurance
401(k) Retirement Plan
Company Equity
Wellness Program
Professional Development Budget
Paid Vacation
Paid Holidays

Risks

Legal challenges related to opioid prescriptions could harm CVS's reputation and finances.
The DOJ's intervention in a whistleblower lawsuit may increase legal costs for CVS.
The Horizon Organic Milk recall exposes potential vulnerabilities in CVS's supply chain.

Differentiation

CVS Health operates over 9,600 retail pharmacies and 1,100 walk-in clinics nationwide.
The company integrates pharmacy benefits management with specialty pharmacy services for comprehensive care.
CVS Health offers tailored medication plans through personalized medicine and pharmacogenomics.

Upsides

Expansion of telehealth services allows CVS to reach more patients remotely.
Increased consumer interest in wellness boosts demand for CVS's health-related products.
The trend towards value-based care aligns with CVS's integrated healthcare approach.

Land your dream remote job 3x faster with AI