Data Protection & Privacy Manager

The Regional
Gold River, United States of America
12 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Intermediate
Compensation
$ 185K

Job location

Gold River, United States of America

Tech stack

Artificial Intelligence
Computer Security
Information Systems
Data Governance
Information Leak Prevention
ETL
Data Security
Information Security Management
Java Persistence API
Machine Learning
Multi-Cloud
Information Technology

Job description

Are you a data protection and privacy professional who thrives in complex, highly regulated environments? Do you have the expertise to build enterprise data protection programs, strengthen privacy-by-design practices, and safeguard sensitive information across cloud and on-premises systems? Are you ready to help shape the future of data security and privacy for one of the largest human services technology systems in the nation?, Under the direction of the Chief Information Security Officer (CISO), the Data Protection & Privacy Manager is responsible for leading enterprise data protection, privacy, and governance initiatives across the CalSAWS environment. This position develops and advances concepts, strategies, and standards related to Data Security Posture Management (DSPM), Data Loss Prevention (DLP), Insider Risk, data classification, and privacy-by-design practices.

The incumbent serves as the enterprise subject matter expert for data protection and privacy while partnering with business, security, procurement, counties, and vendors to ensure sensitive information is appropriately governed, protected, and managed throughout its lifecycle.

Key areas of responsibility include:

  • Developing and leading a scalable enterprise data protection and governance program that ensures data is accurate, secure, and consistently managed across the organization
  • Executing enterprise strategies for Data Security Posture Management (DSPM), Data Loss Prevention (DLP), and Insider Risk programs
  • Leading discovery, classification, and risk assessment activities for CalSAWS data across cloud, endpoint, network, email, and enterprise environments
  • Defining and implementing enterprise data governance policies aligned with security, privacy, compliance, and ethical AI principles
  • Providing strategic direction for data protection controls spanning data at rest, data in motion, and data in use
  • Overseeing the development, deployment, and continuous improvement of Data Loss Prevention policies and monitoring capabilities
  • Advancing behavioral analytics and insider risk detection capabilities by leveraging security telemetry and analytics tools to identify anomalous access and data movement patterns
  • Serving as the enterprise subject matter expert on data governance, data security, AI/ML technologies, and emerging privacy risks
  • Providing governance oversight for enterprise data initiatives, AI/ML programs, and digital transformation efforts
  • Leading the enterprise Insider Risk Program, including investigation protocols, case management, escalation processes, and evidence preservation
  • Performing security reviews of technical architecture, system enhancements, and vendor proposals to ensure compliance with security and privacy requirements
  • Identifying program-level risks and control deficiencies while recommending and tracking corrective actions to completion

Who is CalSAWS?

The California Statewide Automated Welfare System (CalSAWS) is the largest county-based human services system in the nation. In June 2019, all 58 California counties formed the CalSAWS Consortium as a Joint Powers Authority (JPA) to govern system operations and represent the collective interests of every county.

As of October 2023, CalSAWS successfully unified all counties into a single statewide system. CalSAWS is now in its Maintenance and Operations (M&O) phase, ensuring reliable, secure, and efficient system functionality for millions of Californians.

This role represents a critical opportunity to improve enterprise alignment upstream of delivery, helping CalSAWS reduce downstream friction, improve coordination, and support more cohesive customer and workforce experiences statewide.

EMPLOYMENT: For candidates employed with a county in California who are not able to support a staff member on the CalSAWS project, the CalSAWS Consortium contracts with Regional Government Services (RGS) to provide staff for the consortium. Hires from this recruitment and selection process are expected to work for the CalSAWS Consortium through the contract with Regional Government Services (RGS), which provides staff for the consortium.

Requirements

  • A bachelor's degree in information security, computer science, information systems, cybersecurity, or a related field. Master's degree preferred.
  • Five (5) years of experience in information security or data protection, with demonstrated depth in DSPM, DLP, and insider risk disciplines in a multi cloud environment., privacy, data security, or a similar operational role.
  • Two (2) years of program leadership, governance, or supervisory experience.

Preferred certifications include:

  • CISSP, CISM, CRISC, CCSP, CDPSE, or equivalent security certifications
  • Privacy certifications such as CIPP/US or CIPM
  • ITIL or similar operational framework certifications

All positions may be subject to some short-term travel in order to conduct project business with the State and counties. The CalSAWS project office is currently located in Gold River, California.

Benefits & conditions

SALARY: $9,684.12 - $15,375.00 monthly depending on experience.

About the company

Regional Government Services Authority (RGS) is a Joint Powers Authority (JPA) serving the needs of cities, counties, special districts, joint powers authorities, and other governmental entities since 2002. RGS works exclusively for the benefit of public agencies, providing a ready source of support and consulting services to meet the needs of its partner agencies in a broad range of disciplines and to help local governments meet three challenges: 1. Decreasing revenues 2. Increasing demands (and costs) for services, and 3. Loss of experienced staff. Local government leaders knew that these challenges were likely to continue, so agencies would have to work together - uniting not only their voices but their resources to advocate and become more efficient. The idea behind the creation of RGS was to form an agency that would help local governments share expertise and improve efficiencies. This was an emerging need. It did not require that each agency hire full-time staff. With the creation of this JPA, agencies could, in effect, share expertise through a third-party., Today, RGS is governed by several member agencies, all with the common goal expressed in the JPA's MISSION STATEMENT: To provide quality, innovative, cost-effective services exclusively to public agencies. In November 2020, the 5-year Strategic Plan was adopted. Current member agency representation can be found on the Board of Directors page of this website. RGS developed a highly flexible platform of administrative support, benefit plans and programs that could serve the diverse needs of cities, special districts, counties and other joint powers authorities. Flexibility was vital because the needs of partner agencies varied and because RGS services were 100 percent fee-based. Thus, RGS costs have always been able to ramp up or down quickly, as demand changed. To further understand RGS main service lines, please see the RGS Services Brochure or the Services area of the website.

Apply for this position