The selected colleague will work at an MUFG office or client sites four days per week and work remotely one day. A member of our recruitment team will provide more details.
OverviewLeads the development and management of the organization's global privacy compliance program, ensuring adherence to evolving regulations such as GDPR and CCPA. Partners with Legal, Technology, and business units to drive secure data practices, oversee risk assessments, manage privacy incidents and DSARs, and deliver reporting to senior leadership. This role plays a key part in embedding privacy-by-design, monitoring controls, and fostering a strong culture of data protection across a complex, regulated environment.
Responsibilities- Manage design and maintenance of the privacy compliance program
- Interpret and apply global and local privacy regulatory changes, including data transfer requirements
- Conduct or oversee privacy impact assessments (third parties, products, technology)
- Manage privacy incident reviews and remediation activities
- Information Handling & Data Protection: Ensures appropriate collection, use, storage, transfer, and disposal of highly confidential information, including sensitive personal information, in alignment with global and regional data protection and privacy regulations
- Establish and enforce controls to safeguard data confidentiality, integrity, and availability while promoting a culture of responsible data stewardship across the organization
- Oversee Data Subject Access Requests (DSARs) through remediation
- Partner with Legal, Technology, and business units to ensure secure data handling
- Oversee monitoring and quality assurance for privacy controls
- Lead privacy metrics analysis and reporting for senior leadership
- Manage development of training and awareness materials
- Liaise with internal auditors and testing teams
- Oversee geographic and business risk and control assessments
Functional skills- Advanced knowledge of global privacy regulations, including:
- General Data Protection Regulation (GDPR)
- California Consumer Privacy Act (CCPA)
- Personal Information Protection Law (PIPL)
- General Data Protection Law (LGPD)
- Experience developing and implementing privacy frameworks
- Proven expertise in:
- Risk assessment
- Regulatory interpretation
- Compliance reporting
Experience- Six+ years of experience in compliance, legal, or privacy roles
- Experience preferably within financial services or regulated industries
- Solid experience with privacy regulations and compliance documentation
Education- Degree or equivalent work experience equally preferable
- Bachelor's degree in law, finance, computer science, business administration, or a related discipline
- Graduate degree or equivalent work experience beneficial
Certifications- Certified Information Privacy Professional (CIPP) or equivalent data privacy certification preferred
The typical base pay range for this role is $122,000 to $166,000 depending on job-related knowledge, skills, experience and location. This role may also be eligible for certain discretionary performance-based bonus and/or incentive compensation. Additionally, our Total Rewards program provides colleagues with a competitive benefits package (in accordance with the eligibility requirements and respective terms of each) that includes comprehensive health and wellness benefits, retirement plans, educational assistance and training programs, income replacement for qualified employees with disabilities, paid maternity and parental bonding leave, and paid vacation, sick days, and holidays. For more information on our Total Rewards package, please click the link below.
MUFG Benefits Summary
The above statements are intended to describe the general nature and level of work being performed. They are not intended to be construed as an exhaustive list of all responsibilities duties and skills required of personnel so classified.