Data Privacy Principle Expert
stc
Date: 3 weeks ago
City: Riyadh
Contract type: Full time
Job Purpose
The role holder is responsible for developing and executing stc's Data Privacy vision, policies, and compliance, oversee the Privacy Program, manage privacy risks, and ensure adherence to data protection regulations. The role holder shall carry out their duties in accordance with the stipulated business policies and procedures.
Job Responsibility
A minimum of 8 years
Nature Of Experience
Prior experience in managing large-scale Data Governance projects in setting up policies and procedures a Telecommunications organization
Job Band
STP- Similar Director Manager
Skills
Education
Bachelor Degree in Computer Science or Information Technology
Additional Education
Certifications
The role holder is responsible for developing and executing stc's Data Privacy vision, policies, and compliance, oversee the Privacy Program, manage privacy risks, and ensure adherence to data protection regulations. The role holder shall carry out their duties in accordance with the stipulated business policies and procedures.
Job Responsibility
- Develop vision and roadmap for stc Data Privacy
- Maintain and update Data Privacy Policy, Standards, Procedures
- Improve DPP Controls Definition (Privacy and Data Protection Controls)
- Create Guidelines for implementing Data Privacy policies and procedures
- Establish Enforcement Mechanism to measure and remediate stc group Subsidiaries Data Protection and Privacy Compliance
- Direct the implantation and supervision of stc’ Privacy Program
- Develop Privacy Risk Management Framework
- Develop Program Dashboard and Risk Register
- Ensure co-operation and strengthening relationship with the supervisory authority
- Prepare all personal data issues & emerging technologies for senior advisory
- Monitor and evaluate privacy laws and regulations changes
- Provide consultation to translate legal regulations into actionable business requirements
- Cooperate with RA for all privacy regulatory discussions and communications
- Ensure supporting Legal and Procurement for privacy concerns related to contractual clauses
- Establish and ensure design of Centralized Privacy Impact Assessment (PIA) Process for new/change in any personal data Processing Activities and for legacy processing activities under Records of Personal Data Processing Activities (RoPA)
- Establish and ensure design of Centralized 3rd Party Privacy Risk Management and Due Diligence Process to manage privacy risks associated with personal data processing third parties
- Ensure and monitor operational compliance of Data Subject Requests Management & Consent Management
- Develop & maintain stc personal data processing register i.e. Records of Processing Activities (RoPA)
- Ensure Consolidating, generating, and maintaining up to date and accurate Personal Data Inventory (PDI) to integrate Records of Processing Activities (ROPA) with Assets Inventory and Vendors Inventory
- Establish a privacy assurance function conducting assurance activities for all privacy operations Privacy Impact Assessment (PIA), Records of Processing Activities (RoPA), 3rd Party Management, Incident Management
- Conduct Systems Privacy Impact Assessment Compliance Monitoring in cooperation with CS GRC
- Develop a harmonized and integrated Privacy and CS Risk Management Reporting to stc Group Management via coordination with CS GRC
- Lead the design and operation of Personal Data Breach Notification Management process in line with Incident Management Process under CS Cyber Defense and ensure notifying the external regulators of Personal Data Breach incidents.
- Ensure proper alignment with CSDG Enablement in regard to any topic require sharing with the stc group subsidiaries
- Preparing periodic reports regarding the activities related to processing of Personal Data and providing recommendations to ensure monitoring , and follow up on regulatory documents issued by the external regulators related to the protection of personal data to ensure adherence
- Ensure to handle violations related to Personal Data and taking corrective actions accordingly
A minimum of 8 years
Nature Of Experience
Prior experience in managing large-scale Data Governance projects in setting up policies and procedures a Telecommunications organization
Job Band
STP- Similar Director Manager
Skills
Education
Bachelor Degree in Computer Science or Information Technology
Additional Education
Certifications
How to apply
To apply for this job you need to authorize on our website. If you don't have an account yet, please register.
Post a resumeSimilar jobs
Proposal Manager - Transport & Infrastructure
WSP in the Middle East,
Riyadh
1 day ago
Job DescriptionThe Proposal Manager will work closely with our technical and project leaders to position WSP and win profitable business, within our Transport & Infrastructure business unit. The role encompasses managing work winning activities from capture through to the convert phase of the WSP Winning Work lifecycle. The Proposals Manager’s core functional duties include managing/coordinating the interfaces between business leaders,...
用户运营专家
Meituan,
Riyadh
1 day ago
About UsKeeta, the international subsidiary of Meituan—the global delivery giant—is on a mission to transform food and consumer product delivery worldwide. With our core belief: "We help people eat better, live better," we're taking innovation to the global stage. Our story began in 2023 in Hong Kong, China, where we became an industry leader in under a year. Building on...
Reservation Manager
Fairmont Hotels & Resorts,
Riyadh
1 day ago
Company DescriptionFairmont RAMLA RIYADH seeks passionate and adventurous individuals to join our incredible team in the KSA heart of Riyadh. Our hotel offers various jobs in over thirty departments and is sure to have something that sparks your interest. We pride ourselves on the work/play lifestyle that is working in Fairmont RAMLA Riyadh, and we do our best to ensure...