
Chief Privacy Officer (Hybrid - Baltimore)
Aegon · United States
- Hybrid
- Full-time
- $300,000 / year
- United States
Job highlights
- Lead privacy and security team operations.
- Develop and implement comprehensive privacy program.
- Advise on global privacy and cybersecurity laws.
- Manage legal matters and outside counsel.
- Oversee budget and strategic initiatives.
About the role
Chief Privacy Officer
The Chief Privacy Officer (CPO) is responsible for the Privacy & Security (PSL) Team and Transamerica’s Privacy Program within the Legal & Compliance Department. The CPO leads and provides oversight on the daily operations of the privacy program, cybersecurity compliance, development, implementation, and maintenance of policies and procedures, monitoring program compliance, and investigation and advice relating to incidents and breaches in compliance with applicable privacy laws and regulations.Responsibilities
- Lead the PSL Team in developing, implementing, administering, and adhering to Transamerica’s and Aegon’s policies and procedures covering the privacy of and access to protected data and information.
- Further build-out, continuously improve, and support a strategic and comprehensive privacy program that defines, develops, maintains, and implements policies and procedures to ensure consistent, effective privacy practices that minimize risk and ensure the confidentiality of protected information.
- Provide advice on U.S. and international privacy and information management laws and regulations; anticipate and advise the company on legal trends impacting the organization; adeptly consider business concerns when advising on organizational-level policy and legal decisions.
- Collaborate with and support key members of the Legal & Compliance team, Transamerica and Aegon management, Chief Data Officer, Chief Information Security Officer, as well as boards, committees, and functions to ensure appropriate practices and procedures for privacy and confidentiality of protected information.
- Lead negotiations in disputes and/or regulatory matters specific to privacy and information management that have a significant impact on the company.
- Manage privacy and information management related legal matters handled by outside counsel.
- Review and advise on current cybersecurity compliance requirements to identify opportunities and gaps.
- Understand best practices in cybersecurity frameworks and standards, monitor their evolution, and ensure continuous calibration of Transamerica’s cyber compliance framework.
- Support, advise, and protect the organization during privacy and/or cybersecurity incidents.
- Serve as a main source of advice to executive and functional leadership.
- Be accountable for the budget and cost controls for the PSL team, working closely with the General Counsel on departmental budget and cost control initiatives.
- Serve on committees and other groups that have a significant impact on the overall organization.
- Work closely with Aegon’s privacy team on strengthening privacy and security compliance across Transamerica and Aegon.
Qualifications
- Juris Doctor or equivalent international degree.
- Active license to practice law in a U.S. state or the District of Columbia.
- U.S. and international privacy and cybersecurity experience.
- Understanding of U.S. and state privacy laws and regulations (e.g., HIPAA, GLBA, CCPA, CPRA).
- Understanding of international privacy laws and regulations (e.g., GDPR, PIPEDA, LGPD, PIPA).
- Ten years of legal experience with a focus in privacy and cybersecurity (15+ years preferred).
- Strong experience managing a privacy and cybersecurity compliance program or privacy and cybersecurity legal team.
- Experience working in/with the insurance or broader financial services industry is ideal.
- Solid program management and compliance capabilities.
- Substantial experience leading and managing people.
- Ability to effectively communicate, in both written and oral format, with the intended audience.
- Ability to exercise sound judgment and prioritize in a fast-paced environment.
- Ability to exercise agility, adaptability, and practicality in providing legal advice.
- Comfortable in rapidly changing corporate and legal environments.
Working Conditions
- Office Environment
- Occasional Travel
Salary
The salary for this position generally ranges between $235,000 - $350,000 annually. Actual starting pay is determined by qualifications, experience, geography, work location designation, and operational needs. Salary may vary above and below the stated amounts as permitted by applicable law. This position is typically eligible for an Annual Bonus based on the Company Bonus Plan/Individual Performance and is at the Company’s discretion.Key skills/competency
- Chief Privacy Officer
- Privacy Program Management
- Cybersecurity Compliance
- Data Privacy Laws
- Information Management
- Legal Counsel
- Risk Mitigation
- Regulatory Compliance
- Team Leadership
- Financial Services Industry
Skills & topics
- Chief Privacy Officer
- Privacy Program
- Cybersecurity Compliance
- Data Privacy
- Information Security
- Legal Counsel
- Compliance Officer
- Risk Management
- GDPR
- CCPA
- HIPAA
- Financial Services
- Insurance
- Leadership
- Lawyer
How to get hired
- Tailor your resume: Highlight your extensive experience in privacy and cybersecurity law, program management, and team leadership, specifically mentioning US and international regulations like GDPR, CCPA, and HIPAA.
- Showcase leadership: Emphasize your track record in managing legal teams and driving compliance initiatives within the financial services or insurance sector.
- Prepare for case studies: Be ready to discuss complex privacy incidents, regulatory disputes, and how you've advised executive leadership on legal and policy decisions.
- Understand Aegon's context: Research Aegon's business, its commitment to data privacy, and how the CPO role supports its overall legal and compliance strategy.
Technical preparation
Master US and international privacy laws.,Understand cybersecurity frameworks and standards.,Develop and implement compliance policies.,Analyze legal and regulatory trends.
Behavioral questions
Describe a major privacy incident you managed.,How do you advise leadership on complex legal issues?,Explain your approach to leading a legal team.,How do you balance business needs with privacy risks?
Frequently asked questions
- What are the key privacy laws a Chief Privacy Officer at Aegon must understand?
- A Chief Privacy Officer at Aegon should have a deep understanding of U.S. state and federal privacy laws such as HIPAA, GLBA, CCPA, and CPRA, as well as international regulations including GDPR, PIPEDA, LGPD, and PIPA. This comprehensive knowledge is crucial for developing and maintaining a robust privacy program.
- What is the required legal background for the Chief Privacy Officer role at Aegon?
- The role requires a Juris Doctor or equivalent international degree and an active license to practice law in a U.S. state or the District of Columbia. A strong legal background with at least ten years of experience focused on privacy and cybersecurity is essential, with 15+ years being preferred.
- How does the Chief Privacy Officer collaborate with other departments at Aegon?
- The CPO collaborates closely with key members of the Legal & Compliance team, Transamerica and Aegon management, the Chief Data Officer, and the Chief Information Security Officer. This collaboration ensures the organization maintains appropriate practices and procedures for the privacy and confidentiality of protected information.
- What is Aegon's stance on hybrid work for the Chief Privacy Officer position?
- The Chief Privacy Officer position at Aegon is designated as hybrid, requiring some in-office presence. This arrangement allows for a balance between collaborative in-office work and flexibility, supporting effective team engagement and operational needs.
- What kind of experience is most valued for managing privacy compliance at Aegon?
- Aegon highly values candidates with strong experience managing a privacy and cybersecurity compliance program or leading a privacy and cybersecurity legal team. Prior experience within the insurance or broader financial services industry is also considered a significant advantage for this role.