Jobs and Careers
DE
Technical Privacy Analyst Intern
DevoUnited States, United Statesfull_timeVerifiedPosted 18 Apr 2024
About the role
Devo, the cloud-native logging and security analytics company, empowers security and operations teams to maximize the value of all their data. Only the Devo platform delivers the powerful combination of real-time visibility, high-performance analytics, scalability, multi-tenancy, and low TCO crucial for monitoring and securing business operations as enterprises accelerate their shift to the cloud. Headquartered in Boston, Mass., Devo is backed by Insight Partners, Georgian, and Bessemer Venture Partners. Learn more at www.devo.com.
Devo is seeking a motivated, proactive, and intellectually curious person interested in gaining experience within a technology company’s Governance, Risk and Compliance department who has an understanding of data privacy frameworks, privacy by design principles, and how to operationalize them for SaaS solutions.This person will sit within the Governance, Risk, and Compliance (GRC) team and work closely with Security, Legal, Product Managers, Engineers, members of the Marketing team, as well as other cross-functional stakeholders to consult and advise on privacy practices within the organization. This person’s responsibilities will span the entirety of Devo’s portfolio of SaaS solutions and occasionally corporate or shared services (e.g., People Team, Finance, etc.). In order to manage this effectively, this person must be able to quickly grasp and retain a basic understanding of each product’s functionality, organizational structure, and underlying infrastructure. An understanding of development practices, SaaS delivery models, CloudOps and DevOps a plus.
Job Summary:
Devo is seeking a motivated, proactive, and intellectually curious person interested in gaining experience within a technology company’s Governance, Risk and Compliance department who has an understanding of data privacy frameworks, privacy by design principles, and how to operationalize them for SaaS solutions.This person will sit within the Governance, Risk, and Compliance (GRC) team and work closely with Security, Legal, Product Managers, Engineers, members of the Marketing team, as well as other cross-functional stakeholders to consult and advise on privacy practices within the organization. This person’s responsibilities will span the entirety of Devo’s portfolio of SaaS solutions and occasionally corporate or shared services (e.g., People Team, Finance, etc.). In order to manage this effectively, this person must be able to quickly grasp and retain a basic understanding of each product’s functionality, organizational structure, and underlying infrastructure. An understanding of development practices, SaaS delivery models, CloudOps and DevOps a plus.
Responsibilities:
- Conduct privacy risk and privacy impact assessments of new and existing Devo products, services, and processes and document results.
- Assist with the completion of DPIAs and pre-DPIAs in accordance with customer and regulatory requirements. Identify risk to both technical and non-technical stakeholders across the business and advise on risk mitigation strategies.
- Assist with developing and providing training on Devo’s privacy program, including ensuring detailed data inventories and data flow mappings across each product’s data processing activities are kept up-to-date and accurate.
- Review and develop privacy controls documentation and related evidence necessary to demonstrate compliance with applicable laws and regulations.
- Analyze system designs and data flows to identify opportunities for improvement in relative to privacy by design principles.
- Build strong cross-functional relationships with product and engineering teams and advise on data privacy-related issues.
- Work closely with the Data Protection Officer and other members of the Legal team to identify trends in privacy and regulatory requirements and compliance enforcement, and advise on necessary changes to the data privacy program.
- Review and develop privacy policies, guidelines, and best practices.
- Work with the Security, Legal, Sales, and Services/Care team members to respond to customer assessment requests.
- Project management skills with emphasis on organization, prioritization, and attention to detail;
- Strong technical and business writing skills;
- Strong sense of accountability with the ability to work independently with minimal direction and follow-up;
- Desire to manage multiple, varied priorities with a proactive lens and operating with a sense of urgency;
- Proven analytical and troubleshooting skills;
- Excellent communication and collaboration skills, with the ability to build effective relationships with stakeholders across organizational levels;
- Generally adept at picking up new technologies – experience with GRC and Privacy tools such as TrustArc, OneTrust, and Servicenow is a plus.
- Experience in privacy, data governance, or similar field a plus;
- Experience with technical privacy concepts (e.g., privacy by design principles) and regulations (e.g., GDPR, CCPA, etc.). Privacy certification from the IAPP or equivalent (CPIM, CIPP/E/A/US, or CDPSE) a plus;
- You’ll join a company where we value our people and provide the tremendous opportunities that come with a hyper-growth organization.
- Be part of an international company with a strong team culture that celebrates success. Share our core values: Be bold - Be Inventive - Be humble - Be an ally.
- Work in an environment that will challenge you and enable you to grow as a professional.
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s