Jobs and Careers
FE

Lead Data Privacy Analyst - Remote

Ferguson
UKRemotefull_timeVerifiedPosted 2 Dec 2024
💰 $143,052/yr($81,660/yr$143,052/yr)

About the role

Job Posting:

Since 1953, Ferguson has been a source of quality supplies for a variety of industries. Together We Build Better infrastructure, better homes and better businesses. We exist to make our customers’ complex projects simple, successful, and sustainable. We proactively solve problems, adapt and grow to continuously serve our customers, communities and each other. Ferguson is proud to provide best-in-class products, service and capabilities across the following industries: Commercial/Mechanical, Facilities Supply, Fire and Fabrication, HVAC, Industrial, Residential Trade, Residential Building and Remodel, Waterworks and Residential Digital Commerce. Ferguson has approximately 36,000 associates across 1,700 locations. Ferguson is a community of proud associates who operate with the shared purpose of building something meaningful. You will build a career that you are proud of, at a company you can believe in.

We have an exciting opportunity for a Lead Data Privacy Analyst to join the Information Security GRC team within the Ferguson IT organization! The Data Privacy Lead Analyst will aid with and participates in the planning, design, implementation, operation, and maintenance of IT Governance, Risk & Compliance (GRC) efforts intended to support the data privacy program. The role will focus on U.S. privacy laws and regulations. The ideal candidate will have a deep understanding of data protection principles, privacy frameworks, and federal and state-specific privacy regulations, including CCPA and other U.S. state data privacy laws. This role includes ensuring compliance, performing risk assessments, and supporting privacy operations to protect sensitive data and foster trust in our practices.

This role is approved to be fully remote and can be based anywhere in the United States.

Duties and Responsibilities:

  • Track and ensure compliance with U.S. data privacy regulations, included but not limited to CCPA and other state-specific laws.
  • Conduct privacy impact assessments (PIAs) and data protection assessments (DPAs) for projects involving personal and sensitive data.
  • Draft, review, and update data privacy policies and procedural standards to align with evolving regulations and best practices.
  • Collaborate with legal, IT, vendor risk management, and other multi-functional teams to educate and guide on data privacy practices.
  • Design and conduct privacy training programs for employees to promote compliance and awareness throughout the organization.
  • Prepare documentation, maintain records, and aid in data privacy audits and assessments to ensure regulatory alignment.

Qualifications and Requirements:

  • Minimum of 2 years of experience in data privacy, data protection, or compliance roles with a U.S. focus and 7-10 years plus of overall IT experience.
  • Bachelor’s degree or equivalent experience in information security, computer science, or a related field.
  • Experience in a large, sophisticated organization.
  • Experience with Securiti.ai, One Trust, or other enterprise data privacy platform.
  • Experience with data mapping tools and process activity documentation.
  • Knowledge of key U.S. data privacy laws and standards such as CCPA and other US state regulations.
  • Professional certification (e.g., CIPP/US, CIPM, CIPT) is preferred.
  • Proven experience in planning, organizing, and developing IT security teams and strategy, whether staff or third parties
  • Support compliance with the Ferguson Enterprise Data Privacy Platform.
  • Exposure to data processing, hardware platforms, enterprise software applications and outsourced systems, with preference in Microsoft Technologies.
  • Expertise in using cloud-based solutions necessary to enable the distributed enterprise.
  • Good understanding of computer systems characteristics, features and integration capabilities.
  • Proven leadership ability: ability to instill confidence in the business and demonstrate the business value of IT.
  • Exceptional leadership skills with the ability to develop and communicate an enterprise security vision that inspires and motivates staff and aligns to the IT and business strategy.
  • Effective influencing and negotiation skills in an environment where resources may not be in direct control of this role.
  • Strong analytical skills, ability to think critically and strategically.
  • Strong intuition for business, including industry, domain-specific knowledge of the enterprise and its business units.
  • Success in using both traditional best practices, such as IT service management practices based on ITIL, as well as emerging methods like DEV/SEC/OPS that are optimized for agility.
  • Demonstrated ability to develop and implement a strategic people plan that ensur

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Ferguson

View company profile →