Cetera Financial Group

Senior Privacy Specialist

Cetera Financial Group$90K — $120K *
Finance & Insurance
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Business, Legal Studies, Information Security, or related field.
  • 6+ years of experience in privacy, compliance, risk, legal, or related field.
  • Experience supporting or executing privacy programs in financial services or regulated industry preferred.
  • Strong analytical and problem-solving skills for interpreting regulatory requirements.
  • Demonstrated ability to manage work independently and exercise sound judgment.

Responsibilities

  • Own and execute components of the enterprise privacy program aligned with regulatory requirements.
  • Manage intake and resolution of privacy-related inquiries with prioritization.
  • Maintain and enhance privacy policies and procedures based on regulations and business needs.
  • Guide internal stakeholders on privacy requirements and best practices.
  • Manage portions of enterprise data inventory, including data mapping and documentation.
  • Evaluate and improve vendor risk assessments and compliance with privacy standards.
  • Coordinate and manage privacy incidents, ensuring proper documentation and response.

Benefits

  • Hybrid work model allowing flexibility in work location.
  • Opportunities for professional development and certifications in privacy.
  • Collaborative work environment fostering cross-functional teamwork.
  • Comprehensive health and wellness programs.
  • Supportive culture for privacy and compliance excellence.
Full Job Description
Job Description

The Privacy Specialist serves as a key contributor to the enterprise privacy program for a FINRA-registered broker-dealer and SEC-registered investment adviser.

This role operates with a high degree of independence and judgement, leading assigned privacy workstreams and supporting compliance with applicable regulations, including GLBA and Regulation S-P. The Privacy Specialist partners cross-functionally to implement privacy practices, assess risk, and enhance program effectiveness.

The position works under the direction of the Principal Privacy Officer and is responsible for driving execution of core privacy activities, identifying opportunities for process improvement, and ensuring operational alignment with regulatory expectations and internal standards.

What You'll Do:
  • Privacy Program Execution & Governance
    • Own and execute assigned components of the enterprise privacy program, ensuring alignment with regulatory requirements and internal policies.
    • Manage intake, triage, and resolution of privacy-related inquiries, exercising judgement in prioritization and response.
    • Maintain and enhance privacy policies, procedures, and standards, recommending updates based on regulatory changes and business needs.
    • Provide guidance to internal stakeholders on privacy requirements and best practices.
  • Data Inventory & Data Mapping
    • Manage assigned portions of the enterprise data inventory, including data mapping and system documentation.
    • Analyze data flows and data usage to identify potential privacy risks or gaps.
    • Partner with business and technology teams to ensure data inventory accuracy and completeness.
    • Recommend improvements to data governance processes and documentation standards.
  • Vendor Risk & Third-Party Oversight
    • Lead privacy-related components of vendor risk assessments, including review of data protection documentation.
    • Evaluate vendor practices and identify gaps relative to regulatory and company standards.
    • Partner with Risk, Legal, and Procurement to ensure appropriate mitigation strategies are implemented.
    • Track and report on vendor-related privacy risks and remediation status.
  • Privacy Incident Management
    • Manage intake, tracking, and coordination of privacy incidents in accordance with established protocols.
    • Evaluate incident details and escalate issues as appropriate, applying judgment to assess risk and impact.
    • Identify trends in incidents and recommend process or control improvements.
    • Coordinate cross-functional response efforts and ensure proper documentation and resolution.
  • Vendor Risk & Third-Party Oversight
    • Lead privacy-related components of vendor risk assessments, including review of data protection documentation.
    • Evaluate vendor practices and identify gaps relative to regulatory and company standards.
    • Partner with Risk, Legal, and Procurement to ensure appropriate mitigation strategies are implemented.
    • Track and report on vendor-related privacy risks and remediation status.
  • Privacy Incident Management
    • Manage intake, tracking, and coordination of privacy incidents in accordance with established protocols.
    • Evaluate incident details and escalate issues as appropriate, applying judgment to assess risk and impact.
    • Identify trends in incidents and recommend process or control improvements.
    • Coordinate cross-functional response efforts and ensure proper documentation and resolution.


What You Need to Have:
  • Bachelor's degree in Business, Legal Studies, Information Security, or related field.
  • 6+ years of experience in privacy, compliance, risk, legal, or related field.
  • Experience supporting or executing privacy programs, preferably in financial services or a regulated industry.
  • Strong analytical and problem-solving skills, with the ability to interpret regulatory requirements and apply them in practice.
  • Demonstrated ability to manage work independently and exercise sound judgment in decision-making.


What's Nice to Have:
  • Experience with privacy regulations such as GLBA, Regulation S-P, and state privacy laws (e.g., CCPA).
  • Professional certifications (e.g., CIPP, CIPM, CIPT).
  • Experience with privacy management tools (e.g., OneTrust).
  • Experience in financial services is a plus.
  • Strong communication skills with the ability to influence stakeholders across functions.


#LI-Hybrid

Please review our Workforce Privacy Policy for further details on what information we collect and the purposes for collection.

About Cetera Financial Group

Cetera Financial Group is a network of independent broker-dealer firms that provide financial advice to individuals and small businesses. The company was founded in 2010 and is headquartered in El Segundo, California. Cetera Financial Group offers a range of services, including investment advice, financial planning, and insurance products. The company has over 8,000 financial advisors and manages over $200 billion in assets.
Learn more about Cetera Financial Group
Size
8,000 employees
Industry
Founded
2010

Similar Jobs

More Jobs at Cetera Financial Group

More Finance & Insurance Jobs

Find similar Senior Privacy Specialist jobs: