Privacy and Security Engineer

Kubota Holdings Europe

$110K — $130K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree or equivalent experience required.
  • Minimum of 5 years in a consumer finance environment.
  • At least 7 years in privacy or security roles.
  • Certifications like CIPP, CIPM, CIPT, CISA, CRISC preferred.
  • Strong understanding of U.S. privacy and security regulations.
  • Experience with frameworks like GAPP, ISO 27000, NIST-SP, COBIT, and SSAE18.
  • Familiarity with role-based access and segregation of duties.

Responsibilities

  • Led enterprise privacy and compliance programs as the main contact for regulations and audits.
  • Managed internal and external audits with third-party assessors for compliance.
  • Served as a subject matter expert on various privacy regulations and standards.
  • Developed and maintained privacy, security, and compliance documentation and policies.
  • Conducted privacy assessments, data mapping, and access reviews for risk management.
  • Collaborated with teams to implement privacy technologies and ensure regulatory readiness.

Benefits

  • Supportive team environment for career growth.
  • Opportunities for training in evolving privacy technologies and regulations.
  • Engagement with diverse teams for cross-functional collaboration.
  • Involvement in significant compliance initiatives impacting enterprise-wide operations.
Full Job Description
About the Role:

This position will support the Privacy and Security Manager in developing and maintaining a comprehensive enterprise-wide privacy program. The Privacy Engineer will lead several efforts pertaining to privacy governance, data collection practices, and administrative security. The Privacy Engineer will also be responsible for supporting privacy-related procurement and overseeing vendor management activities.

What You'll Do:
  • Led enterprise privacy and compliance programs, serving as the primary point of contact for regulatory, audit, and governance initiatives.
  • Managed and coordinated internal and external audits, partnering with third-party assessors to ensure successful compliance outcomes.
  • Acted as a subject matter expert on NIST 800-53/66/171, HIPAA, FERPA, GDPR, FedRAMP, and FISMA requirements.
  • Developed and maintained privacy, security, and compliance documentation, policies, standards, and control repositories.
  • Conducted privacy impact assessments, data mapping, data classification, and access/privilege reviews to strengthen data protection and risk management.
  • Collaborated across business and technology teams to implement privacy technologies, drive regulatory readiness, deliver training, and ensure ongoing compliance with evolving legal requirements.


What We're Looking For:
  • Bachelor's degree or equivalent work experience required.
  • Minimum of 5 years of relevant experience in consumer finance environment required.
  • At least 7 years of privacy or security experience required.
  • Certifications such as CIPP, CIPM, CIPT, CISA, CRISC preferred.
  • Strong understanding of U.S. privacy and security regulations.
  • Experience with privacy and security frameworks such as GAPP, ISO 27000, NIST-SP, COBIT and SSAE18, etc.
  • Understanding of "role-based access" and "segregation of duties" protocols.
  • Experience supporting/interpreting 3rd party risk assessments and privacy compliance activities.
  • Strong experience with privacy-related contract review and vendor management processes.
  • Experience with Incident Response and Business Continuity Planning / Disaster Recovery Planning.


PHYSICAL REQUIREMENTS:

Typical office environment.

DISCLAIMER:

The information provided in the description has been designed to indicate the general nature and level of work performed by incumbents within the classification. This description is not intended to be a comprehensive inventory of all duties, responsibilities, qualifications and working conditions required of employees assigned to this job/classification. This job is intended to include the current essential functions of the job. Management reserves the right to add or modify the duties and responsibilities and to designate other functions as essential at any time.

Similar Jobs

More Jobs at Kubota Holdings Europe

More Information Technology Jobs

Find similar Privacy and Security Engineer jobs: