Job Description:
At Bank of America, we are guided by a common purpose to help make financial lives better through the power of every connection. We do this by driving Responsible Growth and delivering for our clients, teammates, communities and shareholders every day.
Being a Great Place to Work and providing a culture of caring is core to how we drive Responsible Growth. We are intentional about fostering an inclusive workplace where every teammate has the opportunity to succeed, build a career and contribute to our shared success. This includes attracting and developing exceptional talent, recognizing and rewarding performance, and supporting our teammates’ physical, emotional, and financial wellness through affordable, competitive and flexible benefits.
We value the unique perspectives individuals bring from all backgrounds and career paths - whether shaped by military service, community college education, or a wide range of work and life experiences. These journeys foster resilience, leadership and innovation, strengthening our workforce and positively impact the communities we serve.
Bank of America is committed to an in-office culture that supports collaboration, engagement, and career development. Our approach includes clear in-office expectations, while providing an appropriate level of flexibility based on role-specific responsibilities and business needs.
At Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us!
Job Description:
Support implementation of enterprise privacy standards, playbooks, and regulatory requirements. Partner with Enterprise Privacy, Compliance, Legal, and Technology teams to assess the impact of new and evolving privacy regulations.
Participate in privacy regulatory change initiatives, including requirements related to:
• Data Protection Impact Assessments (DPIAs)
• Privacy Impact Assessments (PIAs)
• Privacy by Design
• Records of Processing Activities (ROPA)
• Digital Objects governance
• Data inventory and registration requirements
Track regulatory implementation activities and coordinate issue resolution across multiple stakeholders. Coordinate privacy assessments and control reviews. Assist with identifying and documenting privacy risks, controls, governance routines, and remediation plans.
Support compliance reporting, metric development, and executive reporting packages. Maintain documentation supporting privacy controls, attestations, registrations, exceptions, and regulatory inquiries. Facilitate evidence collection and quality reviews for audits and regulatory examinations.
Partner with process owners to ensure privacy risks and controls are appropriately documented within enterprise process inventories. Support SPI review and alignment activities. Assist with control design, control documentation, and control effectiveness reviews. Identify gaps and recommend process improvements to strengthen privacy risk management.
Support enterprise initiatives associated with:
• Personal Information Inventories
• Digital Objects Inventories
• Application and System Inventories
Assist with ongoing governance and sustainability efforts related to inventory accuracy and regulatory reporting obligations. Develop executive-ready presentations, summaries, and status reporting. Communicate program risks, issues, dependencies, and milestones to leadership. Coordinate across multiple lines of business and corporate functions to drive consistent adoption of privacy requirements.
Responsibilities:
• Privacy Governance & Regulatory Readiness
• Data Privacy Program Execution
• Process & Control Governance
• Data & Inventory Management
• Executive Reporting & Stakeholder Engagement
• Operate effectively in a highly matrixed organization.
• Translate complex regulatory requirements into actionable business requirements.
• Drive execution across multiple workstreams simultaneously.
• Build strong partnerships across Privacy, Legal, Compliance, Technology, and Business teams.
• Produce high-quality executive communications with minimal oversight.
• Demonstrate a proactive, ownership-oriented approach to identifying and resolving issues.
• Partner closely with Business Controls, Enterprise Privacy, Compliance, Legal, Technology teams, Data Privacy Executives (DPEs), and Process Owners to ensure adherence to evolving privacy regulatory requirements and enterprise standards.
• Drive privacy governance, regulatory readiness, process alignment, inventory management, and control execution across a complex technology environment.
Required Qualifications:
• 5+ years of experience in one or more of the following:
•   Data Privacy
•   Risk Management
•   Compliance
•   Technology Governance
•   Operational Risk
•   Business Controls
• Experience implementing or supporting regulatory programs.
• Strong project management and organizational skills.
• Strong written and verbal communication skills.
• Ability to work across multiple stakeholders and organizational levels.
• Experience creating executive-level presentations and reporting materials.
• Strong analytical and problem-solving skills.
• Advanced Microsoft Excel and PowerPoint proficiency.
Desired Qualifications:
• Experience working in a large financial institution or highly regulated environment.
• Knowledge of enterprise process management, control frameworks, and risk taxonomies.
• Familiarity with privacy governance tools and inventory management platforms.
• Experience working with technology, application, data, and digital asset inventories.
Â
Shift:
1st shift (United States of America)Hours Per Week:Â
40Learn more about this Employer on their Career Site
