
Description
Our Purpose
Mastercard powers economies and empowers people in 200+ countries and territories worldwide. Together with our customers, we're helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential.
Title and Summary
Truata Data Protection Officer, Privacy, AI & Data Responsibility Founded by Mastercard and IBM in 2018, Trūata specializes in privacy-enhancing technologies for privacy risk assessment, de-identification, andtrue anonymization of data. We were one of the first companies in the EU to receive independently accredited ISO 27701 certification, the international standard for data privacy management. In 2023, Mastercard acquired full ownership of Trūata with Trūata continuing to operate as an independent entity within the Mastercard Data Insights & Analytics Organisation.
Mastercard is committed to balancing innovation while protecting individual privacy and has embraced privacy and data protection as core to the successful execution of its business strategy. As part of that commitment, Mastercard has established a world-class Privacy, AI & Data Responsibility program and is currently seeking a highly skilled Data Protection Officer for Trūata. The Trūata DPO will be responsible for ensuring Trūata's compliance with all applicable data protection laws globally, including the GDPR and national privacy legislation, engaging with data protection authorities, developing and implementing policies and procedures, working closely with Trūata's team (including its data and software engineers) to ensure the privacy-compliant delivery and enhancement of Trūata's anonymization solution and related privacy-enhancing technologies and overseeing the management of the Privacy, AI & Data Responsibility program in Trūata. The ideal candidate will have recent experience as a data protection officer, have a strong background in data protection, privacy technology, compliance, data analytics and AI.
Key Responsibilities:
• Leadership and Strategy:
• Lead and manage the Privacy, AI & Data Responsibility program in Trūata ensuring alignment with Mastercard's business objectives and regulatory requirements.
• Engage with privacy regulators, individuals and clients' DPOs.
• Foster a culture of accountability and responsibility regarding Privacy, AI & Data Responsibility among employees.
• Policy and Compliance:
• Ensure compliance with all relevant legal and regulatory requirements related to Privacy, AI & Data Responsibility.
• Develop, update, and maintain policies, procedures, and guidelines.
• Maintain privacy control frameworks, conduct regular reviews and audits of Privacy, AI & Data Responsibility practices to ensure compliance and identify areas for improvement.
• Enable and support global privacy certification schemes such as ISO27701 and the Mastercard Binding Corporate Rules.
• Stakeholder Engagement:
• Collaborate with key stakeholders, including legal, compliance, technology, and business teams, to identify business requirements resulting from new and evolving privacy laws and regulations and opportunities to thoughtfully engage with industry and policy makers to safeguard Trūata's interests and to help to build, grow, and scale Trūata's business.
• Provide guidance and thought leadership on topics including the use of emerging/advanced/privacy technologies in a privacy-compliant manner.
• Partner with business verticals and commercial legal teams on product development from the earliest stages using privacy by design methodologies, preparing data protection impact assessments as needed.
• Coordinate with regional counsel(s) to ensure compliance with other global data protection laws, consistency in privacy by design approach and knowledge sharing.
• Manage negotiations with clients, partners, and vendors to ensure privacy compliance.
• Provide training and support to employees on compliance with obligations under applicable data protection laws and internal policies
• Technology and Data Management:
• Support the development and implementation of systematic processes and procedures for the Privacy, AI & Data Responsibility program.
• Engage with tool owners to ensure proper practices are followed and applied to new tools and technologies.
• Assist in the development and implementation of automated Privacy, AI & Data Responsibility capabilities on key technology platforms (e.g., OneTrust, My Data, Confluence, Archer etc.).
Oversight and Reporting:
• Provide ongoing oversight of the Privacy, AI & Data Responsibility program in Trūata
• Prepare and deliver regular metrics and reporting on the status of the Privacy, AI & Data Responsibility program in Trūata, including to risk committees and senior management.
Qualifications:
• Bachelor's degree in Information Management, Business Administration, Law, or a related field.
• Preferred candidate will have qualified as solicitor in Ireland, with 3+ years PQE
• Strong knowledge of legal and regulatory requirements related to Irish and European Privacy, Data and AI laws
• Leadership and management skills, with the ability to lead cross-functional teams and drive organizational change.
• Excellent communication and interpersonal skills, with the ability to engage and influence stakeholders at all levels.
• Strong analytical and problem-solving skills, with the ability to develop and implement effective solutions.
• Proficiency in records management and data retention technologies and tools.
Why Join Trūata:
• Be part of a dynamic, independently-operated company that is driving responsible, ethical use of data through world-class data anonymization and related privacy technologies
• Work in a dynamic and world- renowned Privacy, AI & Data Responsibility team with excellent opportunities for professional growth and development.
• Contribute to the broader mission of Mastercard (Trūata's parent company) to connect and power an inclusive, digital economy that benefits everyone, everywhere by making transactions safe, simple, smart, and accessible.
Corporate Security Responsibility
All activities involving access to Mastercard assets, information, and networks comes with an inherent risk to the organization and, therefore, it is expected that every person working for, or on behalf of, Mastercard is responsible for information security and must:
Abide by Mastercard's security policies and practices;
Ensure the confidentiality and integrity of the information being accessed;
Report any suspected information security violation or breach, and
Complete all periodic mandatory security trainings in accordance with Mastercard's guidelines.
Apply on company website