Senior Managing Counsel for Privacy & Compliance
Houston, TX, US, 77002
NRG
NRG is a leading North American energy and home services company dedicated to helping you power, protect, and intelligently manage your home or business.As an NRG employee, we encourage you to take charge of your career and development journey. We invite you to explore exciting opportunities across our businesses. You’ll find that our dynamic work environment provides variety and challenge. Your growth is key to our ongoing success—take the lead in shaping your career development, goals and future!
Position Overview
Counsel for Privacy & Compliance will assist the DPO in the implementation of NRG’s strategic privacy objectives and privacy framework and manage several of the company’s tactical privacy programs. The successful candidate will ensure through policies, processes, programs, and controls that tactical objectives are met and that the metrics of the privacy framework support business success while promoting compliance with existing and emerging data privacy laws and best practices.
Essential Responsibilities
- Assist the DPO with the implementation of NRG’s global privacy program strategy.
- Monitor changes in privacy laws, practices, and company policies.
- Cooperate with the DPO to pivot the privacy program based on internal and external business and market changes.
- Build collaborative relationships across the business and relevant functions (e.g., Legal, Information Security, Human Resources, Brands) to achieve privacy goals.
- Assume tactical responsibilities for specific privacy programs, including the implementation of privacy solutions and technologies to support privacy compliance, factoring in the expansion of NRG’s products/services and evolving analytics strategy.
- Labor with various stakeholders to implement privacy policies, processes, and SOPs.
- Assist in developing internal tools and methodologies to ensure ongoing privacy compliance and differentiation.
- Collaborate with the DPO on risk management in privacy, including monitoring, auditing, reporting, and evaluation of the tops down enterprise privacy program.
- Work with the DPO, InfoSec, and brands on response to DSRs, privacy complaints, potential breaches, and investigations by privacy regulators.
- Support the development of a privacy and data protection team.
- Foster a culture of privacy and transparency and demonstrate leadership through policy and business partnerships. Cultivate the company’s reputation for trustworthiness related to privacy among key external stakeholders, including commercial customers, consumers, regulators, and thought leaders.
- Conduct ongoing privacy training and awareness activities, including development and delivery of a training curriculum to applicable groups, and identify opportunities to integrate awareness across business functions.
- Maintain cutting-edge knowledge of applicable privacy laws (e.g., CCPA, PIPEDA) and monitor advancements in information privacy technologies to ensure organizational adaptation and compliance.
Qualifications
Minimum
- Law degree (JD) from an ABA accredited law school.
- IAPP Certifications CIPP/US, CIPP/E, CIPP/IT and/or CIPT preferred.
- Minimum of 5 years’ experience in the privacy profession with an in-depth knowledge of North American privacy laws (US/Canada)
- Expert knowledge of general privacy policies, procedures, and best practices
- Ability to articulate privacy across the organization and drive awareness and adoption
- Excellent analytical skills and judgment
- Strong written and verbal communications and influencing skills
- Proven track record of success working with an organization’s senior leadership, and experience developing and leading project teams
Preferred
- Experience with building, implementing, and maintaining privacy programs
- Comprehensive understanding of privacy compliance frameworks, security standards and certifications, and enabling technologies
- Work experience in energy and/or smart home
- Bachelors or Graduate degree in business, public policy, data science, or regulatory compliance
- Information systems or data technology knowledge desirable
Aligned with NRG Values:
NRG is an Equal Opportunity Employer, qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.
NRG Energy is committed to a drug and alcohol-free workplace. To the extent permitted by law and any applicable collective bargaining agreement, employees are subject to periodic random drug testing, and post-accident and reasonable suspicion drug and alcohol testing. EOE AA M/F/Vet/Disability. Level, Title and/or Salary may be adjusted based on the applicant's experience or skills.
Official description on file with Talent.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Analytics Audits CCPA CIPP Compliance Monitoring PIPEDA Privacy Risk management Strategy
Perks/benefits: Career development Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.