{"21154666":{"jobPath":"/jobs/21154666/lecturer-information-systems-26-cybersecurity-management-pool","source":"naylor","job":"21154666","jobTitle":"Lecturer - Information Systems %26 Cybersecurity Management (pool)"},"20414718":{"jobPath":"/jobs/20414718/chief-information-security-officer-ciso","source":"naylor","job":"20414718","jobTitle":"Chief Information Security Officer (CISO)"},"20415479":{"jobPath":"/jobs/20415479/cyber-security-operations-specialist-svp","source":"naylor","job":"20415479","jobTitle":"Cyber Security Operations Specialist (SVP)"},"21154570":{"jobPath":"/jobs/21154570/it-information-security-analyst-i","source":"naylor","job":"21154570","jobTitle":"IT Information Security Analyst I"},"20415911":{"jobPath":"/jobs/20415911/se-am-internal-auditor","source":"naylor","job":"20415911","jobTitle":"SE/AM Internal Auditor"},"20415910":{"jobPath":"/jobs/20415910/senior-it-auditor-applications","source":"naylor","job":"20415910","jobTitle":"Senior IT Auditor (Applications)"},"20415377":{"jobPath":"/jobs/20415377/information-security-specialist-training-awareness-m-w-d","source":"naylor","job":"20415377","jobTitle":"Information Security Specialist Training & Awareness (m/w/d)"},"21026154":{"jobPath":"/jobs/21026154/cybersecurity-engineering-full-time-adjunct-faculty","source":"naylor","job":"21026154","jobTitle":"Cybersecurity Engineering Full Time Adjunct Faculty"},"21178043":{"jobPath":"/jobs/21178043/security-awareness-specialist","source":"naylor","job":"21178043","jobTitle":"Security Awareness Specialist "},"20957644":{"jobPath":"/jobs/20957644/it-auditor","source":"naylor","job":"20957644","jobTitle":"IT Auditor"},"20421767":{"jobPath":"/jobs/20421767/is-control-testing-information-security-specialist-d-m-w","source":"naylor","job":"20421767","jobTitle":"IS Control Testing - Information Security Specialist (d/m/w)"},"20415892":{"jobPath":"/jobs/20415892/avp-it-manager-based-in-ocbc-new-york","source":"naylor","job":"20415892","jobTitle":"AVP, IT Manager (Based in OCBC New York)"},"20416122":{"jobPath":"/jobs/20416122/fraud-and-security-manager","source":"naylor","job":"20416122","jobTitle":"Fraud and Security Manager"},"20415094":{"jobPath":"/jobs/20415094/principal-product-manager-thinkfolio","source":"naylor","job":"20415094","jobTitle":"Principal Product Manager - thinkFolio"},"21026091":{"jobPath":"/jobs/21026091/special-assistant-or-associate-professor-position-in-information-systems-and-business-analytics","source":"naylor","job":"21026091","jobTitle":"Special Assistant or Associate Professor Position in Information Systems and Business Analytics"},"20416086":{"jobPath":"/jobs/20416086/vice-president-data-ethics","source":"naylor","job":"20416086","jobTitle":"Vice President, Data Ethics"},"20774236":{"jobPath":"/jobs/20774236/enterprise-it-security-analyst-2","source":"naylor","job":"20774236","jobTitle":"Enterprise IT Security Analyst 2"},"20414926":{"jobPath":"/jobs/20414926/internal-auditor-director-vice-president-hong-kong","source":"naylor","job":"20414926","jobTitle":"Internal Auditor, Director/ Vice President, Hong Kong"},"21031807":{"jobPath":"/jobs/21031807/internal-auditor","source":"naylor","job":"21031807","jobTitle":"Internal Auditor"},"20967395":{"jobPath":"/jobs/20967395/sr-internal-auditor","source":"naylor","job":"20967395","jobTitle":"Sr. Internal Auditor"},"21053116":{"jobPath":"/jobs/21053116/professor-of-practice-part-time-cybersecurity-management","source":"naylor","job":"21053116","jobTitle":"Professor of Practice (Part-Time) - Cybersecurity Management"},"20414732":{"jobPath":"/jobs/20414732/information-security-specialist-dlp","source":"naylor","job":"20414732","jobTitle":"Information Security Specialist (DLP)"},"20415943":{"jobPath":"/jobs/20415943/senior-it-manager-ebanking-mobile-banking","source":"naylor","job":"20415943","jobTitle":"Senior IT Manager (eBanking / Mobile Banking)"},"21164871":{"jobPath":"/jobs/21164871/information-security-analyst-2-risk-management-digital-technology-solutions","source":"naylor","job":"21164871","jobTitle":"Information Security Analyst 2 - Risk Management, Digital Technology Solutions"},"20416171":{"jobPath":"/jobs/20416171/avp-cyber-security-engineer-information-security-services-technology-operations","source":"naylor","job":"20416171","jobTitle":"AVP, Cyber Security Engineer, Information Security Services, Technology & Operations"}}
CDPSE
CDPSE - Certified Data Privacy Solutions Engineer
CISA
CISA - Certified Information Systems Auditor
CISM
CISM - Certified Information Security Manager
CRISC
CRISC - Certified in Risk and Information Systems Control
CSX-P - Cybersecurity Practitioner Certification
Cybersecurity Fundamentals Certificate
Internal Number: 71392
The Opportunity
Reporting to the Director, Compliance Support (CS), this role offers a unique opportunity to be at the forefront of the Commissioner’s legislated oversight mandate. Through relationship building, strong leadership and effective investigation and communication skills you will influence and effect changes in the development and implementation of initiatives, programs, policies, goals and proposed legislative schemes in the public, health and private sectors.
This is not an IT position. This position requires someone who is able to apply legislative requirements and information security and privacy principles to ensure compliance with Alberta's privacy and access legislation.
For example, in this role you may:
review a privacy impact assessment that involves the use of artificial intelligence.
be involved in the Commissioner's investigation into the adequacy of an organization's security measures to protect personal and health information involved in a privacy breach.
examine business models and contracts concerning virtual care platforms to determine compliance with health information and private sector privacy legislation.
Responsibilities:
The position’s specific accountabilities include:
Reviewing the decisions of public bodies, private organizations and health custodians for compliance with applicable legislation;
Reviewing privacy impact assessments, providing comments and making recommendations;
Reviewing privacy breaches to ensure compliances with applicable legislations;
Conducting informal investigations to ensure legislative compliance;
Issue findings and make recommendations on access and privacy issues;
Reviewing and comment on initiatives, policies, contracts, procedures and practices of public bodies, custodians, and private sector organizations to support compliance with the Acts;
Consulting and providing education concerning complex and multi-jurisdictional access and privacy issues; and
Educating and informing the public and public bodies, custodians and organizations on the Acts.
To be successful in this role, you must have:
The ability to interpret and apply legislation to specific circumstances, ensuring compliance and providing well-reasoned findings and recommendations;
Good technical knowledge in information technology and security and be able to apply this in the legislative framework. For example, evaluating compliance of virtual care platforms that collect, use and disclose personal and health information of patients with the applicable legislative frameworks.
Investigation experience, including the ability to prepare investigative plans, gather evidence, conduct interviews, analyze information, and make finding and recommendations on complex and sensitive issues, preferably in areas related to information access, privacy and security; and
Experience establishing and building effective relationships with stakeholders.
Superior interpersonal skills, including the ability to manage conflict, maintain objectivity in politically sensitive or adversarial situations, demonstrate tact and diplomacy and work collaboratively with colleagues.
For a copy of the job description, please visit this link.
For a copy of the full job ad and how to apply, please visit the Job Board website.
University Degree in a related field, supplemented by at least six years of directly progressively responsible related experience, encompassing:
Interpreting and applying legislation
Information security and/or privacy compliance reviews
Research and analysis
Investigation experience
Assets:
An Understanding of access and privacy laws and principles, especially in relation to the Freedom of Information and Protection of Privacy Act (FOIP), Health Information Act (HIA), and Personal Information Protection Act (PIPA).
A professional designation in Information Security such as CISSP, CISA, CISM or related experience.
About Office of the Information and Privacy Commissioner of Alberta
The Office of the Information and Privacy Commissioner of Alberta (OIPC) is dedicated to advocating for the access and privacy rights of Albertans. It ensures that public bodies, health custodians, and private sector organizations uphold these rights as prescribed by Alberta's laws. The OIPC provides fair, independent, and impartial reviews in a timely and efficient manner.
OIPC is known for its comprehensive regulatory role, proactive engagement with technological advancements, commitment to public education, collaborative culture, and the significant impact of its work in protecting privacy and access to information.
The OIPC is an Officer of the Legislature who reports directly to the Legislative Assembly of Alberta. Through the OIPC, the Commissioner performs the compliance oversight and regulatory responsibilities set out in Alberta’s three access to information and privacy laws:
The Freedom of Information and Protection of Privacy Act (FOIP)
The Health Information Act (HIA)
The Personal Information Protection Act (PIPA)
OIPC is one of the few jurisdictions in Canada with comprehensive laws covering public, private, and health sectors. This unique legal frame...work provides an unparalleled opportunity for privacy and access practitioners to make a significant impact across diverse fields.