Compliance Manager, IT/Tech
Listed on 2026-01-03
-
IT/Tech
Data Security, Cybersecurity
Description
Are you passionate about data privacy and ready to grow your career in risk management? Join us as a Privacy Risk Professional and play a pivotal role in strengthening our enterprise privacy and compliance efforts. You’ll help drive Citizens’s customer‑first, innovation‑driven growth by identifying, assessing, and managing privacy risks across business lines. This role offers valuable exposure to financial institution operations, laws and regulations, cybersecurity, and data protection practices.
Key Responsibilities- Collaborate with business lines to identify, mitigate, and manage privacy risks
- Conduct privacy vendor assessments with internal stakeholders and third‑party teams
- Implement Privacy by Design practices to proactively address privacy risks
- Drive cross‑functional strategies to ensure compliance with Citizens policies and current/future privacy laws
- Provide guidance and challenge to business units on privacy‑related risks
- Assess privacy controls for compliance with laws, regulations, and internal policies
- Perform independent risk assessments across regulatory frameworks (GLBA, GDPR, CCPA, COPPA, TCPA, CAN‑SPAM, etc.)
- Complete Privacy Impact Assessments for new initiatives and products
- Support investigations and remediation of privacy incidents
- Design and analyze key risk and performance metrics to identify trends and measure program effectiveness
- Partner with Second Line of Defense teams to enhance risk culture and control effectiveness
- Contribute to the development and continuous improvement of the Privacy Program
- Use data analytics tools to manage privacy‑related data and generate actionable insights
- 2+ years of experience in privacy or related risk domains
- Strong understanding of privacy risks in banking and experience building privacy programs
- Experience with marketing/ad tech privacy risks preferred
- Familiarity with consent and preference management laws preferred
- Incident response experience, including investigations and notifications, is a plus
- Ability to interpret and apply privacy laws and policies to real‑world scenarios
- Legal research skills preferred
- Detail‑oriented and thorough in handling sensitive data
- Excellent communicator who can simplify complex privacy concepts
- Collaborative team player open to feedback and cross‑functional work
- Independent self‑starter who can prioritize and execute tasks with minimal oversight
- Critical thinker with strong problem‑solving and risk assessment abilities
- Technically proficient in Microsoft Excel (pivot tables, VLOOKUP, formulas, visualization)
- Experience with tools like One Trust, Tableau, Python, Gen AI, SQL is preferred
- Comfortable working with large datasets and using data to drive decisions
- Proficient in Microsoft Office suite
- Bachelor’s degree required
- IAPP certification strongly preferred
- CISSP/CISA certification welcomed
- AWS Cloud Practitioner certification welcomed
- AI governance certification welcomed
The salary range for this position is $110,000 to $120,000 per year, plus an opportunity to earn additional incentive earnings. Actual pay is based on various factors including but not limited to the work location, and relevant skills and experience.
We offer competitive pay, comprehensive medical, dental and vision coverage, retirement benefits, maternity/paternity leave, flexible work arrangements, education reimbursement, wellness programs and more. Note, Citizens’s paid time off policy exceeds the mandatory, paid sick or paid time‑away policy of every local and state jurisdiction in the United States. For an overview of our benefits, visit
Equal Employment OpportunityCitizens, its parent, subsidiaries, and related companies (Citizens) provide equal employment and advancement opportunities to all colleagues and applicants for employment without regard to age, ancestry, color, citizenship, physical or mental disability, perceived disability or history or record of a disability, ethnicity, gender, gender identity or expression, genetic information, genetic characteristic, marital or domestic partner status, victim of domestic violence, family status/parenthood, medical…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).