Privacy Program Analyst
Listed on 2026-09-08
-
IT/Tech
Information Security & Data Protection, Cybersecurity, IT Consultant, IT Business Analyst
ABOUT KALLES GROUP:
Everyone deserves to be secure. Our mission at Kalles Group is to help secure the future for companies of all shapes and sizes.
While our expertise spans multiple disciplines, our method remains consistent: building trust and relationship with people -- whether you are a client, a consultant, or--in this case--a candidate.
No matter what role you come from--whether you're an executive or just starting your career-you can expect our highest level of attention and respect. We want to find the right fit for each role, but we also want you to find the right fit for your career.
We believe the best way to show you what our team is like is to treat you like you're already a part of it. We hope you'll consider joining our team of experienced professionals who are building their careers at Kalles Group—and having fun while doing it.
WHAT YOU WILL DO:The Privacy Program Analyst will be part of our team of skilled, collaborative practitioners supporting privacy programs across a range of enterprise clients. You'll lead privacy assessments, strengthen data governance practices, and help clients build durable, well-documented privacy programs as a key component of our growing Privacy & Compliance practice.
If you are passionate about protecting people's data, grounded in privacy fundamentals, and experienced in leading privacy impact assessments and cross-functional risk work, we want to speak with you!
You will:- Lead end-to-end privacy impact assessments (and related assessments such as DPAs), including evaluation of first- and third-party applications, systems, and business processes, identifying privacy and technological gaps against applicable laws and business requirements.
- Evaluate privacy risks and document clear, actionable mitigation recommendations for partner teams to execute.
- Collaborate closely with Legal, IT, and Security teams to ensure privacy controls stay aligned with an evolving risk and compliance posture.
- Identify opportunities to improve privacy assessment processes, data mapping practices, and documentation, escalating recommendations to leadership as appropriate.
- Support audits, maturity assessments, and other program-level compliance initiatives.
- Respond to and help fulfill data subject access requests (DSARs).
- Maintain and build out data mapping and governance documentation.
- Support the rollout of privacy-enhancing technologies and tools.
- Identify and elevate privacy risks, and help lead incident response for privacy-related events.
- Flex across multiple privacy work streams as program needs evolve, bringing the same grounded, principles-based approach to each.
Your values:
- Integrity:
You believe in doing the right thing, even when it's uncomfortable, seemingly inefficient, or costly. - Purposefulness:
You have a desire to serve others with your skillset and an openness to continuous learning and growth. - Ownership:
You stick to your commitments, follow up with action, and seek clarity in communication & expectations.
- 3+ years of experience in privacy, risk, or compliance-related work, with hands-on experience conducting privacy impact assessments.
- Bachelor's degree in information technology, computer science, cybersecurity, or related experience required.
- IAPP certification (CIPP/US, CIPM, or CIPT) strongly preferred.
- Strong foundational understanding of privacy principles (e.g., Fair Information Practice Principles) and core privacy controls such as retention schedules and least-privilege access, well-rounded fundamentals matter more to us than mastery of any single tool.
- Working knowledge of relevant privacy regulations (e.g., CCPA, PIPEDA, and other U.S. state or sectoral privacy laws) and comfort navigating evolving regulatory landscapes.
- Experience with privacy management platforms (e.g., One Trust, Trust Arc) a plus.
- Strong attention to detail and consistency in both written and verbal communication.
- Comfortable working across multiple concurrent work streams and adapting as program priorities shift.
- Past experience conducting privacy assessments in complex, matrixed enterprise environments.
- Relevant…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).