职位描述
NOTE:The recruiter is foreign. Full English interview required. Please submit your English resume.
【职位概述】
协助全球首席合规官,完善并落地ETS全球隐私计划在中国及亚太地区的本地化工作。本职位负责将ETS隐私政策与隐私声明的要求转化为实际运营流程,同时确保符合《个人信息保护法》《网络安全法》《数据安全法》等中国隐私法律,以及GDPR、ISO 27701等适用全球标准。理想人选需牵头跨部门协作,将隐私管理规范融入ETS各业务单元日常运营,重点聚焦中国市场合规工作。
Support the Global Chief Compliance Officer in enhancing and localizing the ETS Global Privacy Program for China and the Asia-Pacific region. This role is responsible for operationalizing the requirements of ETS's Privacy Policy and Privacy Statement while ensuring alignment with Chinese privacy laws such as the Personal Information Protection Law (PIPL), Cybersecurity Law, and Data Security Law, along with applicable global standards (e.g. GDPR, ISO 27701). The ideal candidate will lead cross-functional collaboration to embed privacy practices into ETS’s daily operations across business units, with a particular focus on compliance within the China market.
【主要职责】
1. 审核、修订并维护内部标准、流程及业务规范,推动ETS隐私政策与隐私声明落地,确保符合中国法律及全球最佳实践。
Review, adapt, and maintain internal standards, procedures, and business rules to operationalize ETS’s Privacy Policy and Privacy Notice in compliance with Chinese laws and global best practices.
2. 管理个人信息权利请求(数据主体请求)流程,支持内部升级处理,确保及时、合规解决相关诉求。
Manage the Personal Information Rights Request (Data Subject Request) process and support internal escalations, ensuring timely and compliant resolution.
3. 开展隐私影响评估,组织或指导开展同类隐私与安全评估工作。
Conduct Privacy Impact Assessments and conduct or direct similar privacy and security assessments.
4. 维护并定期更新个人信息处理活动记录,尤其针对跨境数据传输相关内容。
Maintain and regularly update records of processing activities, especially in relation to cross-border data transfers.
5. 协助制作并维护数据流图及技术/数据处理流程图。
Support the creation and upkeep of data flow diagrams and technology/data processing maps.
6. 为亚太地区各团队及相关人员提供隐私培训,开展隐私合规宣导工作。
Deliver privacy training and awareness initiatives to teams and stakeholders across the region.
7. 参与或牵头内部隐私审计、合规监控及控制测试工作。
Participate in or lead internal privacy audits, monitoring, and control testing initiatives.
8. 协同法务部门及本地管理层,配合中国监管机构问询、处理消费者投诉。
Support response efforts to Chinese regulatory authorities and consumer complaints, in coordination with Legal and local management.
9. 熟练掌握中国现行隐私法规、韩印等重点亚太地区及全球隐私标准,为业务提供本地合规落地建议。
Maintain strong working knowledge of applicable Chinese privacy regulations, significant regional (Korea and India) and global privacy standards, advising the business on local implementation.
【知识与技能】
1. 具备出色的人际沟通与协调能力,可在多元文化环境中为各级人员(包括高层管理者)提供专业建议并推动落地。
Strong interpersonal and communication skills to advise and influence across business levels, including senior management in a multicultural setting.
2. 深入理解中国数据保护相关法律(《个人信息保护法》《数据安全法》《网络安全法》),熟悉GDPR等国际隐私框架;愿意主动学习亚太地区各国隐私法规。
In-depth understanding of China’s data protection laws (PIPL, DSL, CSL) and working knowledge of international privacy frameworks (e.g. GDPR). Willingness to gain expertise in regional privacy laws is expected.
3. 具备隐私与数据保护运营实操经验,涵盖技术与流程层面的保障措施。
Hands-on knowledge of privacy and data protection operational practices, including technical and procedural safeguards.
4. 具备项目管理能力,可同时牵头或支持多项工作开展。
Project management skills with the ability to lead or support multiple initiatives simultaneously.
5. 注重细节,能够将复杂的法规条款转化为可落地的业务要求。
High attention to detail and ability to interpret complex regulatory language into business requirements.
6. 具备分析与数据处理能力,熟练使用Excel、PowerPoint、SharePoint及其他协作工具。
Analytical and data-literate, with proficiency in Microsoft Excel, PowerPoint, SharePoint, and other collaboration tools.
7. 具备流利的中英文工作能力,双语流利为必备要求。
Ability to work effectively in both English and Mandarin (fluency in both languages required).
【教育背景与工作经验】
必备条件
1. 本科及以上学历,法律、信息安全或相关专业。
Bachelor’s degree or equivalent (in Law, Information Security, or related field).
2. 3-5年跨国企业或中国本土企业隐私项目管理、数据保护、科技法律相关直接工作经验。
3–5 years of direct experience in privacy program management, data protection, or technology law in a multinational or Chinese enterprise environment.
3. 持有隐私或数据保护专业认证,如CIPP/A、CIPP/E、CIPM。
Professional certification in privacy or data protection (e.g., CIPP/A, CIPP/E, CIPM).
优先条件
1. 法学硕士(LLM)、法律博士(JD)或本地法律职业资格。
Advanced degree in Law (LLM or JD) or local legal qualifications.
2. 有与中国监管机构对接或跨境数据传输评估相关工作经验。
Prior experience working with Chinese regulators or cross-border data transfer assessments.
3. 有设计并落地隐私培训与合规宣导项目的经验。
Experience designing and implementing privacy training and awareness campaigns.
4. 有牵头跨职能团队或隐私专项工作组的经验。
Experience leading cross-functional teams or privacy working groups.