What are the responsibilities and job description for the Compliance Consultant position at Medtronic?
The Data Protection and Privacy Consultant (“Consultant”) provides leadership and direct support for the strategy, design, development, implementation, and ongoing management of Medtronic’s EMEA Data Protection & Privacy program activities that address and support regional (EMEA) regulatory requirements and best practices.
The Consultant reports to the EMEA Privacy Compliance Program Director and is a key member of the integrated EMEA Data & Privacy Center of Expertise (“COE”).
This seasoned professional actively engages with other privacy professionals within the team, as well as regional and Operating Units personnel and leaders, to provide privacy expertise and influence, as well as to manage operational execution and compliance with EMEA legal, regulatory and business data protection and privacy requirements.
A Day in the Life
- Lead by example to model a culture of ethics and integrity; exercise sound judgment and courage as a trusted partner for internal clients;
- Provide data protection and privacy subject matter expertise as key resource for the EMEA privacy program, regional business partners and other key stakeholders;
- Collaborate with business resources and key stakeholders on implementation of new legal and regulatory requirements relating to data protection and privacy impacting the Medtronic legal entities in EMEA;
- As appropriate, conduct and evaluate privacy impact assessment (PIA) activities and/or business consulting for new product and service development, material changes to existing products and services and business consultation requests, as required by the PIA standard and procedures. Support analysis of results of assessments to identify trends and patterns that can be used to improve review efficiencies, existing processes, and standards;
- Design and execute region or business level privacy assessments that results in program enhancement, mitigation and remediation activities as appropriate;
- Collaborate with key stakeholders, to support incident response management, root cause analysis and remediation for privacy incident or breaches and regulator/ government privacy issue inquiries and requests as necessary;
- Collaborate with key stakeholders to develop, obtain required approval and implementation of global, regional or business level data protection and privacy policies, standards and procedures;
- Support data protection and privacy operational compliance monitoring and auditing activities at regional level (EMEA);
- Ensure local record keeping and reporting in accordance with global standards and regional/local requirement;
- Coordinate and design a data protection and privacy training and awareness program in the region in alignment with the broader data protection and privacy training and awareness program as well as ensure standards and processes to monitor individual completion of mandatory training;
- As appropriate, develop and support standards and processes for Operating Unit access to model data protection and privacy documents such as confidentiality notices, consents, authorization forms, contract language, and other related required documents;
____________________________________________________________________________
Must Have: Minimum Requirements
- 10 years of privacy experience with a Bachelor’s Degree or 7 years of privacy experience with a Master’s or Advanced degree
- Knowledge of and experience supporting business understanding and compliance with EU privacy laws;
- Ability to navigate complex privacy issues and identify tangible solutions;
- Experience supporting a data privacy, security or equivalent function directly or indirectly for a large, regulated and matrixed organization
Nice to Have
- Knowledge of and experience supporting business understanding and compliance with privacy laws in Eastern Europe, Middle East and/or Africa, ISO and other standards bodies and international standards
- Proven track record of successful and broad influence management
- Experience in the healthcare industry
- Strong knowledge of, and experience in program and project management
About Medtronic
Together, we can change healthcare worldwide. At Medtronic, we push the limits of what technology, therapies and services can do to help alleviate pain, restore health and extend life. We challenge ourselves and each other to make tomorrow better than yesterday. It is what makes this an exciting and rewarding place to be.
We want to accelerate and advance our ability to create meaningful innovations - but we will only succeed with the right people on our team. Let’s work together to address universal healthcare needs and improve patients’ lives. Help us shape the future.