Data Protection Specialist – Part-Time Contract
📍 Vancouver or Calgary | Hybrid preferred, client open to remote for ideal candidate
🕒 Part-Time Contract
We’re supporting a large Canadian organization looking for an experienced Data Protection Specialist to provide additional capacity across privacy, technology governance, and digital solution reviews.
This role will wcippork closely with stakeholders across Privacy, Legal, Cybersecurity, Enterprise Architecture, Procurement, AI Governance, technology teams, and the broader business.
What you’ll be doing:
- Conduct Data Protection and privacy assessments for new and changing digital solutions
- Review cloud platforms, SaaS applications, integrations, cybersecurity technologies, AI solutions, and vendor platforms
- Assess personal and sensitive information handling, including data flows, residency, retention, access, transfer, and deletion
- Support Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs)
- Identify privacy risks, mitigations, controls, conditions, and evidence requirements
- Assess third-party vendors, subprocessors, and cross-border data processing arrangements
- Support privacy reviews involving AI and generative AI use cases
- Prepare clear assessment findings and recommendations for both technical and business stakeholders
- Track outstanding privacy requirements, remediation actions, and supporting evidence
- Help improve privacy assessment templates, processes, and reusable guidance
What we’re looking for:
- CIPP/C certification required
- 5+ years of privacy / Data Protection experience
- Strong experience conducting PIAs, DPIAs, privacy risk assessments, or technology privacy reviews
- Experience reviewing SaaS, cloud services, vendor practices, technical documentation, and data flows
- Strong knowledge of Canadian privacy requirements, including PIPEDA, BC PIPA, and Alberta PIPA
- Experience with cross-border privacy and Data Protection considerations
- Strong written, analytical, and stakeholder-management skills
- Comfortable managing multiple concurrent assessments with limited supervision
Nice to have:
- CIPP/E, CIPP/US, CIPM, CIPT, or similar certifications
- Experience with GDPR, US state privacy laws, or other international privacy frameworks
- Experience assessing AI / generative AI technologies
- Exposure to cybersecurity, identity platforms, monitoring technologies, or digital analytics
- Experience with ServiceNow or similar governance/workflow platforms
This is a strong opportunity for a privacy professional who enjoys working at the intersection of Data Protection, technology, cybersecurity, and enterprise governance.