W2 - Business Analyst/Consultant IV (Privacy program process development, NIST RMF) - Remote/Local

๐ŸŒ Remote, USA ๐Ÿš€ Full-time ๐Ÿ• Posted Recently

Job Description

    Description:The client is looking for one (1) Business Analyst/Consultant IV Will close to submissions on 3/19/26 4:00PM CST. Top Required Skills & Years of Experience:Excellent communication skills and the ability to engage with stakeholders at all levels, translating complex technical and legal ideas to business stakeholders and decision-makers. (8-10+ years)Demonstrated experience in privacy program process development and implementation. (8-10+ years)Strong knowledge of privacy laws and regulations (e.g., GDPR, CCPA, HIPAA) and NIST Risk Management Frameworks (e.g., NIST RMF, NIST PF, NIST CSF). (8-10+ years)Nice to Have Skills:Expertise in risk management, data governance, and compliance frameworks.Experience conducting privacy impact assessments and developing privacy processes.Strong project management skills with the ability to execute strategic privacy initiatives.Interview Process: virtual via Teams. Please make sure candidates are able to interview ASAP and have open availability to avoid reschedule requests or delays.Duration of the Contract: until 6/30/26 with extension likely. Initial contract term is 6-9 months.Onsite or Remote? Must be CURRENT WI residents. No relocation allowed. Primarily remote with 1 day PER MONTH onsite at Madison office. Project details (project overview, who the contractor will work with, soft skills needed, etc.):This is a joint initiative between DOA's Division of Legal Services and DOA's Division of Enterprise Technology. The contractor will report to DOA's Lead Privacy Counsel with dotted line reporting responsibilities to the State of Wisconsin Chief Information Officer (CIO), Chief Information Security Officer (CISO), Chief Technology Officer (CTO), and DOA's Data Manager. The contractor will be responsible for developing, documenting, and, as feasible, implementing or operationalizing, privacy program policies and plans to enhance privacy governance, compliance, and risk management practices for the agency, that can later inform enterprise recommendations for all executive branch agencies.Additional details: Interested contractors should submit a resume highlighting relevant experience in privacy program development, particularly with respect to creating processes and communicating with varied stakeholders.Overview:Seeking an experienced contractor to design, develop, and help stand up a comprehensiveprivacy program at the Wisconsin Department of Administration. The contractor will beresponsible for developing, documenting, and, as feasible, implementing or operationalizing,privacy program policies and plans to enhance privacy governance, compliance, and riskmanagement practices for the agency, that can later inform enterprise recommendations for allexecutive branch agencies.Scope of Work: Along with legal counsel and others, the contractor will perform the followingtasks:1. Policy & Governance Framework Development:Establish privacy procedures tailored to the agency's operations.o Establish a privacy governance structure, including roles and responsibilities.o Define key performance indicators (KPIs) for privacy program success.2. Regulatory Compliance & Risk Management:Create processes to ensure compliance with federal, state, and local privacy lawsand regulations.Create processes for Privacy Threshold Assessments (PTAS) and Privacy ImpactAssessments (PIAs).Identify systems that process personally identifiable information (PII) and otherregulated data, and identify key stakeholders associated with those systems perNIST Risk Management Frameworks (e.g., system owner, authorizing official,etc.).3. Training & Awareness:Create privacy communication materials, best practice guidelines, and training.Develop/recommend best practices to foster a culture of privacy compliance withinthe agency.4. Incident Response & Data Breach Management:Along with Chief Information Security Officer (CISO) and legal counsel, developprivacy mandates within existing incident response plans.Along with CISO and legal counsel, establish procedures for reporting andremediating privacy incidents.5. Vendor & Third-Party Risk Management:Along with legal counsel, conduct privacy assessments of key vendors andpartners.Along with legal counsel, recommend strategies to standardize contracting anddata sharing agreements (DSAs) and/or templatize appropriate data protectionand privacy clauses within contracts.6. Privacy Technology & Automation:Assess and recommend privacy-enhancing technologies (PETs) and automationtools.Support integration of data/privacy tools and controls into agency IT systems,including the governance, risk, and compliance (GRC) platform.Collaborate with IT and security teams to embed privacy by design principles intoall aspects of the system development lifecycle (SDLC). Well Qualified Applicant Qualifications & Competencies:
  • Knowledge of privacy laws and regulations (e.g., GDPR, CCPA, HIPAA).
  • Experience conducting privacy impact assessments and developing privacy processes.
  • Strong project management skills.
  • Ability to execute strategic privacy initiatives independently, with general/minimal oversight.
  • Expertise in risk management, data governance, and compliance frameworks.
  • Professional certifications such as Certified Information Privacy Professional (CIPP), Certified Information Privacy Manager (CIPM), Certified Information Privacy Technologist (CIPT) or similar preferred.
  • Contract Duration:Initial contract term: 6-9 months.Reporting Structure:This is a joint initiative between DOA's Division of Legal Services and DOA's Division ofEnterprise Technology. The contractor will report to DOA's Lead Privacy Counsel withdotted line reporting responsibilities to the State of Wisconsin Chief Information Officer(CIO), Chief Information Security Officer (CISO), Chief Technology Officer (CTO), andDOA's Data Manager.This role presents an exciting opportunity for an experienced privacy professional to establish abest-in-class privacy program for a government agency. Interested contractors should submit aresume highlighting relevant experience in privacy program development, particularly with respectto creating processes and communicating with varied stakeholders. Pay rate: $/hr on W2.

Apply tot his job

Apply To this Job

Ready to Apply?

Don't miss out on this amazing opportunity!

๐Ÿš€ Apply Now

Similar Jobs

Recent Jobs

You May Also Like