Job Summary
| Role | Data Privacy / Security Architect |
| Role Count | 1 |
| JD & Role Summary | Lead the privacy and security architecture for the Enterprise TDM Accelerator. Define policy-driven masking, tokenisation, encryption, access, audit, retention, and deletion controls that enable the safe use of production-like data in lower environments. Support Data Protection Impact Assessments (DPIAs), assess re-identification risk, and provide evidence required for security, privacy, and governance approvals. Work with legal, risk, compliance, data owners, and engineering teams to ensure the platform meets regulatory and enterprise control obligations. |
| Key Responsibilities | • Define enterprise masking, tokenisation, encryption, redaction, retention, and access-control policies. • Lead DPIA activities and provide architecture inputs, control evidence, and remediation recommendations. • Assess re-identification, linkage, inference, and residual privacy risks across masked and synthetic datasets. • Define least-privilege access, segregation-of-duties, audit logging, monitoring, retention, and deletion controls. • Translate regulatory and enterprise privacy requirements into implementable platform patterns. • Review masking rules and approve treatment strategies for sensitive and regulated data classes. • Support FPOB, security, risk, privacy, and architecture assurance reviews through approval closure. • Maintain privacy threat models, decisions, control mappings, and compliance evidence. |
| Skills | • Data Privacy Architecture • Security Architecture • DPIA • Data Masking and Tokenisation • Re-identification Risk Assessment • Identity and Access Management • Audit and Retention Controls • Regulatory Compliance |
Key Responsibilities
| Role | Data Privacy / Security Architect |
| Role Count | 1 |
| JD & Role Summary | Lead the privacy and security architecture for the Enterprise TDM Accelerator. Define policy-driven masking, tokenisation, encryption, access, audit, retention, and deletion controls that enable the safe use of production-like data in lower environments. Support Data Protection Impact Assessments (DPIAs), assess re-identification risk, and provide evidence required for security, privacy, and governance approvals. Work with legal, risk, compliance, data owners, and engineering teams to ensure the platform meets regulatory and enterprise control obligations. |
| Key Responsibilities | • Define enterprise masking, tokenisation, encryption, redaction, retention, and access-control policies. • Lead DPIA activities and provide architecture inputs, control evidence, and remediation recommendations. • Assess re-identification, linkage, inference, and residual privacy risks across masked and synthetic datasets. • Define least-privilege access, segregation-of-duties, audit logging, monitoring, retention, and deletion controls. • Translate regulatory and enterprise privacy requirements into implementable platform patterns. • Review masking rules and approve treatment strategies for sensitive and regulated data classes. • Support FPOB, security, risk, privacy, and architecture assurance reviews through approval closure. • Maintain privacy threat models, decisions, control mappings, and compliance evidence. |
| Skills | • Data Privacy Architecture • Security Architecture • DPIA • Data Masking and Tokenisation • Re-identification Risk Assessment • Identity and Access Management • Audit and Retention Controls • Regulatory Compliance |
Skill Requirements
| • Data Privacy Architecture • Security Architecture • DPIA • Data Masking and Tokenisation • Re-identification Risk Assessment • Identity and Access Management • Audit and Retention Controls • Regulatory Compliance |