Job Family :
Cyber Consulting
Travel Required :
Up to 10%
Clearance Required :
Ability to Obtain Public Trust
What You Will Do :
As a privacy specialist on our Technology Advisory team, your key responsibilities will include:
Prepare documents such as Privacy Impact Assessments (PIAs), System of Records Notices (SORNs), Privacy-related policies and directives, Privacy Act Statements, Privacy Notices, or privacy-related documents and ensure they meet standards prior to publication.
Support the privacy continuous monitoring strategy by conducting regularly scheduled reviews of PIAs and SORNs, policies, program plans, and other privacy documents, as required.
Assist with implementation of National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, Rev. 5 (Rev 5) controls, to include developing new or revised policies, procedures, and other privacy artifacts to align with the Rev 5 controls and additional supplemental guidance, as necessary.
Conduct privacy analysis on the application of Rev 5 controls to provide privacy artifacts for submission into the Security Implementation Plan as part of the authority to operate (ATO) for IT systems and review other related artifacts.
Provide support in the creation and maintenance of privacy policies, directives, standard operating procedures (SOPs), and other documentation relevant to the operations of the Privacy Program to ensure they are up-to-date and address existing and/or new requirements, standards, audits, or assessment findings, or best practices.
Provide privacy analysis on policies to identify and address privacy implications.
Review and provide recommendations on pertinent developments in federal privacy policy to determine impacts to the organization and the Privacy Program.
Develop and maintain a Privacy Program dashboard and tracker to document, monitor, manage, and provide metrics on ongoing projects, initiatives, and tasks to ensure projects are on track and deadlines are met. Generate periodic status reports on ongoing efforts.
Organize and maintain office records and documentation.
Provide support on privacy initiatives or requirements and perform privacy analysis on research studies and projects, information technology systems and applications, data intakes, and other critical business operations to identify privacy implications or risks and propose mitigation strategies. This includes, but is not limited to work on breaches, audits, rulemakings, data disclosure, analysis of structured and unstructured data sets, etc., and other tasks as necessary.
What You Will Need :
A minimum of five (5) years of demonstrable experience working in a consulting or operations environment
Master's Degree
Demonstrated experience should include a researching, coordinating, and developing narrative style privacy compliance documentation such as Privacy Impact Assessments (PIAs), Privacy Threshold Analysis, System of Records Notices (SORNs), Privacy-related policies and directives, Privacy Act Statements, and Privacy Notices, implementing NIST National Institute of Standards and Technology (NIST) Special Publication (SP) 800-53, Rev. 5 (Rev 5); analyzing privacy risk and providing recommendations related to the disclosure of data, structured and unstructured data sets, disclosure techniques, similar existing data releases, and risk profiles.
Experience advising and recommending privacy safeguards and/or Personally Identifiable Information (PII) reduction methods to organization leadership, personnel, policy-makers, and project teams on a wide-array of projects or initiatives
Deep knowledge of various privacy regulatory authorities, directives, and frameworks, including the NIST Privacy Framework, Privacy Act of 1974, HIPAA, NIST 800-53 Rev 5 Privacy Controls, and more.
Understanding of the differences between Privacy and Information Security; and similarly, the integration points and intersectionality of Privacy and Information Security
What Would Be Nice To Have :
CIPP or CIPM preferredWhat We Offer:
Guidehouse offers a comprehensive, total rewards package that includes competitive compensation and a flexible benefits package that reflects our commitment to creating a diverse and supportive workplace.
Benefits include:
Medical, Rx, Dental & Vision Insurance
Personal and Family Sick Time & Company Paid Holidays
Parental Leave
401(k) Retirement Plan
Group Term Life and Travel Assistance
Voluntary Life and AD&D Insurance
Health Savings Account, Health Care & Dependent Care Flexible Spending Accounts
Transit and Parking Commuter Benefits
Short-Term & Long-Term Disability
Tuition Reimbursement, Personal Development, Certifications & Learning Opportunities
Employee Referral Program
Corporate Sponsored Events & Community Outreach
Care.com annual membership
Employee Assistance Program
Supplemental Benefits via Corestream (Critical Care, Hospital Indemnity, Accident Insurance, Legal Assistance and ID theft protection, etc.)
Position may be eligible for a discretionary variable incentive bonus
About Guidehouse
Guidehouse is an Equal Employment Opportunity / Affirmative Action employer. All qualified applicants will receive consideration for employment without regard to race, color, national origin, ancestry, citizenship status, military status, protected veteran status, religion, creed, physical or mental disability, medical condition, marital status, sex, sexual orientation, gender, gender identity or expression, age, genetic information, or any other basis protected by law, ordinance, or regulation.
Guidehouse will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of applicable law or ordinance including the Fair Chance Ordinance of Los Angeles and San Francisco.
If you have visited our website for information about employment opportunities, or to apply for a position, and you require an accommodation, please contact Guidehouse Recruiting at 1-571-633-1711 or via email at [email protected] . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodation.
Guidehouse does not accept unsolicited resumes through or from search firms or staffing agencies. All unsolicited resumes will be considered the property of Guidehouse and Guidehouse will not be obligated to pay a placement fee.