Salary
💰 $104,500 - $174,100 per year
About the role
- Provides compliance expertise and consultation on a broad set of regulations and complex technical problems related to consumer and employee privacy, including consideration of strategic and legal impacts regarding decisions made
- This role serves as an authoritative expert on specific regulatory requirements and PSE's responsibilities relating to all relevant privacy compliance matters
- Develops and implements strategies across multiple departments that ensure compliance with regulatory requirements
- Additionally, this role builds upon and coordinates existing components of PSE's privacy compliance to further develop a mature Privacy Compliance Program
- Upholds the safety compliance standards inherent in PSE’s operating and/or field procedures related to work responsibilities, and promotes and supports a culture of total safety
- Conducts routine risk assessment to guide programmatic activities and priorities
- Collaborates with internal and cross-department staff to develop and distribute appropriate reporting of compliance health/status
- Identifies areas subject to regulatory requirements, develops an operational/compliance plan
- Identifies areas of potential non-compliance with regulatory requirements and facilitates the development and implementation of remediation/correction action plans with operational business owners
- Provides technical direction, interpretation and leadership to those responsible for complying with relevant codes and regulations, including contractors/consultants where necessary
- Provides coaching, direction and leadership to support compliance team members in achieving results
- Prepares framework for ensuring responsible employees are trained and understand PSE’s interpretation of relevant codes and regulations
- Actively manages the compliance monitoring process
- Interfaces with business units to provide support and address privacy concerns
- Ensures continued evaluative success through improved methods
- Monitors and provides follow-up reporting to ensure remediation plans are completed
- Provides guidance and expectations for improvements to ensure non-compliance is not repeated
- Conducts annual reviews of the type of customer information collected and retained in accordance with applicable regulatory requirements
- Monitors and tracks new compliance requirements
- Develops processes, procedures and tools to evaluate operational impacts of new regulatory requirements
- Leads team of employees in affected areas of the business through development of implementation plan to ensure compliance with the new requirements
- Supports business units in developing process controls to monitor compliance with applicable codes and regulatory requirements
- Leads and/or participates in process improvement initiatives to enhance current compliance processes
- Reviews and updates annual privacy training
- Reviews vendor contracts and practices to ensure proper handling of personal information, data sharing limitations, and consent requirements are in alignment with applicable regulations and policies
- Supports investigations into potential privacy breaches, coordinates responses and remediation activities, and reports incidents as required by law and regulation
- Maintains knowledge of industry developments and best practices and their application at PSE to further business objectives
- Participates in privacy related seminars, initiatives and industry groups
- Performs other duties as assigned
Requirements
- Bachelor's degree in business, engineering, legal or related field; or equivalent combination of education and relevant work experience
- 10 years relevant experience including 7 years in utility operations or the energy sector with specific involvement with codes and regulations
- 3 years of experience with compliance programs (development, evaluation and/or audit)
- Knowledge of program management principles, practices, theories and problem-solving approaches to solve complex problems and perform sophisticated analyses
- Excellent verbal and written communication and presentation skills and techniques, with an ability to express complex technical concepts in business terms
- Demonstrated ability to provide strong technical and process leadership without direct authority to a wide variety of staff
- Strong project management or related experience
- Familiarity/experience with the WUTC Data Sharing and Protection Policy (desired)
- Familiarity/experience with the California Consumer Privacy Act (CCPA) (desired)
- Electric and/or gas utility experience (desired)