Data Protection Specialist leading privacy assessments, controls, and compliance for Fidelity Canada’s investment services. Advising business and technology teams while mitigating data protection risks.
Responsibilities
Lead execution and enhancement of data protection and privacy practices across Fidelity Canada
Conduct privacy reviews and assessments for projects, systems, and business processes involving personal data
Lead Privacy Impact Assessments and identify risk mitigation measures
Recommend, implement, and monitor data protection controls and remediation activities
Maintain privacy risk, control, and assessment inventories with audit-ready documentation
Collaborate with Technology, Security, Risk, Compliance, and Legal teams on privacy requirements and controls
Support compliance with privacy regulations, internal policies, and ethical data use standards
Assist with investigation, tracking, and remediation of privacy incidents and breaches
Develop and maintain privacy metrics, dashboards, scorecards, and management reporting
Deliver privacy awareness, training, and communication initiatives
Drive continuous improvement of the privacy and data protection program
Act as a subject matter expert and key advisor to business and technology teams
Identify and mitigate privacy risks while ensuring personal data is handled in compliance with regulatory requirements and internal standards
Requirements
1+ year of experience in data privacy, data protection, information risk management, or a related field
Degree in Computer Science, Software Engineering, Economics or Mathematics, or equivalent working experience
Experience recommending and implementing privacy operating controls
Hands-on experience conducting Privacy Impact Assessments and managing remediation activities
Ability to manage multiple priorities and projects with strong attention to detail
Experience maintaining tracking tools, inventories, reports, and compliance documentation
Strong analytical, organizational, and communication skills
Experience working with business and technology stakeholders
Knowledge of Data Governance, Data Management, cybersecurity, or information security is an asset
Professional data privacy certifications such as CIPP, CIPM, or CIPT are an asset
Strong practical knowledge of Data Protection principles and Privacy Impact Assessment processes and tools
Ability to develop practical solutions under pressure
Strong written and verbal communication skills
Good interpersonal and collaborative skills
Knowledge of financial services, products, processes, and industry is an asset
Ability to work independently and handle non-routine situations
Judgment to identify, diagnose, and solve problems
Solid understanding of data flows, technological environments, and operational processes
Current work authorization for Canada is required
Benefits
Discretionary performance bonus
RRSP contribution after 6 months of employment, with no employee matching required
Flexible working arrangements
Comprehensive health benefits starting on the first day, with 100% employer-paid premiums
Up to $5,000 annually for mental health services and therapy
Parental leave top-up to 100% of salary for 25 weeks
Up to $650 for home office equipment
Generous time off policy
2 paid days annually to volunteer at a charity of choice
Diversity and inclusion programs, including Employee Resource Groups
Professional development opportunities, including access to over 11,000 training and development courses
Tuition reimbursement
Monetary rewards for completing a required designation
Privacy and regulatory compliance manager leading Plooto’s privacy program and responsible AI governance. Supporting risk management and compliance for its Canadian payment automation platform.
Director leading Board and committee compliance reporting for Sun Life, a global financial services company. Developing KRI metrics, regulatory insights and risk narratives for senior leadership.
Health Compliance Officer inspecting continuing care homes for Government of Alberta. Conducting investigations, compliance reviews, and regulatory oversight across Alberta.
Regulatory Strategist guiding Latin American drug submissions and lifecycle management for Syneos Health’s life sciences services. Providing regional expertise, coordinating authorities, and leading cross - functional submission teams.
Regulatory Consultant using Veeva Vault RIM to coordinate drug regulatory submissions for Syneos Health. Supporting Vertex submission managers with publishing, project tracking, and content planning.
Billing Compliance Analyst ensuring accurate matter setup, rates, and invoices. Supporting eBilling compliance and reporting for Canadian law firm McCarthy Tétrault.
Senior Compliance Analyst maintaining Canadian securities and crypto compliance programs at Crypto.com. Translating CSA and CIRO requirements into policies, controls, training, and operational practices.
GRC/Compliance Lead guiding SOC 2, ISO, and customer assurance for enterprise AI platforms. Building practical compliance into regulated, mission - critical software delivery.
Group Manager leading regulatory reporting change management at TD Securities, a capital markets services provider. Managing requirements, data analytics, stakeholders, and regulatory initiatives.