Privacy Impact Assessment

1 week ago


Toronto, Canada ThoughtStorm Full time

MUST HAVES:
Practical knowledge of information technology concepts and processes that impact the protection of personal information (i.e. information management, knowledge management, intellectual property/copyright, information technology and electronic service delivery channels)

Leading end-to-end operational risk assessments, selecting risk methodologies, identifying privacy compliance gaps, priorities, dependencies and redundancies, and recommending process remediation or simplification

Demonstrated experience and competency to analyze policy proposals to assess / identify I&IT business implications and develop strategic policy planning options and impact analyses for clients

Privacy Impact Assessment (PIA) Specialist

**Responsibilities**:

- Develop privacy impact assessments of the Ministry’s optimization of the provincial Immunization Repository and other provincial repositories and the COVaxON solution (this includes initiatives in support of immunization administration, and vaccine distribution and delivery (inventory).
- Lead and provide technical expertise in the development of access and privacy tools to facilitate the development of I&IT requirements, implementation of security mechanisms pertaining to the creation, collection, storage, access, retrieval and disclosure of Personal Health Information (PHI)
- Engage and facilitate privacy related discussions with a wide range of business, IT, legal and privacy stakeholders across the ministry, public health units and Public Health Ontario.
- Examine complex program, policy and information system proposals to assess and document business flow and context; perform stakeholder analysis, public/private partnerships, governance structures and feasibility in terms of the protection of Personal Health Information (PHI) collected and retained
- Support projects to ensure compliance with security and privacy best practices, such as the Personal Health Information Privacy Act (PHIPA) (2004)
- Provide technical and systems advice on legacy systems, internet tools and system interfaces, information, security, technical architecture and data flows to improve protection of Personal Health Information (PHI)
- Provide technical and systems advice on data flows that flow into / originate from the Immunization Repository Optimization Program - Wave 1 & 2 and other relevant provincial repositories and COVaxON solution
- Provide technical and systems advice on data flows to the ministry, Public Health units and other stakeholders
- Develop business processes and procedures that describe information flows associated with new technologies, programs, policies or information systems to illustrate how and by whom Personal Health Information (PHI) will be collected, used, disclosed and retained
- Using system and infrastructure architectures, document physical and/or logical separation of Personal Health Information (PHI) or security mechanisms that prevent improper access to Personal Health Information (PHI) or maintain any required separation
- Provide privacy expertise, consultation, and support to project team members, senior management and colleagues in MOH advising on the legislation and regulations, in an effort to resolve potential legal or privacy problems
- Provide analysis and advice to ministries and clusters regarding the Freedom of Information Act (FOI) and privacy implications, privacy and security concepts, of new information technologies and information systems, and assist institutions in documenting their analysis
- Recommend mitigation strategies and privacy enhancing technologies in accordance with Privacy Impact Assessment (PIA) procedures
- Identify, analyze and assess emerging and critical policy issues relating to Freedom of Information (FOI) and Protection of Privacy which may have an impact on PIA methodology
- Formulate policy proposals, recommendations, strategies and options for the project team and Ministry executive to address emerging issues
- Participate and provide PIA feedback on the planning and design of solutions in support of immunization administration and optimization, and vaccine distribution and delivery (inventory).

**Skills**:
Experience and Skill Set Requirements

**Technical Knowledge - 50 points**

10+ years of experience in:

- Privacy impact assessment methodologies, tools and techniques
- Application of threat and risk analysis principles, program analysis, business analysis
- Understanding of policy development to lead or participate in the development of options and strategies on information management and privacy protection
- Practical knowledge of information technology concepts and processes that impact the protection of personal information (i.e. information management, knowledge management, intellectual property/copyright, information technology and electronic service delivery channels)
- Practical knowledge of broad political, legal, fiscal, social and governance dimensions to ensure that privacy principles



  • Toronto, Ontario, Canada SOFTLINE TECHNOLOGY Full time

    Responsibilities:Required to lead or support the development of a privacy impact assessment that evaluates whether new technologies, information systems, or proposed programs or policies meet legal and policy privacy requirements, determine and mitigate risks, and address clients' concerns.These requirements include ensuring that the program complies with...


  • Toronto, Ontario, Canada Pride Global Full time

    **Job Title: Privacy Impact Assessment (PIA) Specialist - SeniorLocation: Toronto, ON (Hybrid)Duration: 6 Months (Possible Extension)Client: Public Healthcare Sector (Preferred)Pay Rate: C$80-C$90/hrKey Responsibilities**Lead and conduct Privacy Impact Assessments (PIAs) and Privacy Threshold Assessments (PTAs) for medium to high-complexity...


  • Toronto, Ontario, Canada Russell Tobin Full time

    **Job Title: Privacy Impact Assessment (PIA) Specialist - SeniorLocation: Toronto, ON (Hybrid)Duration: 6 Months (Possible Extension)Client: Public Healthcare Sector (Preferred)Pay Rate: C$80-C$90/hrKey Responsibilities**Lead and conduct Privacy Impact Assessments (PIAs) and Privacy Threshold Assessments (PTAs) for medium to high-complexity...


  • Toronto, Ontario, Canada CCI- Computer Consultants International, Inc. Full time

    Candidates MUST be authorized to work in Canada / hold a valid work visa. CCI does not sponsor work visas.Description:· Develop privacy impact assessments and review recommendations from the privacy impact assessment (PIA) of proposed solution and business processes· Lead and provide technical expertise in the development of access and privacy tools to...


  • Toronto, Ontario, Canada Teckhorizon Inc Full time

    About The RoleWe are seeking a Senior Privacy Consultant to support the our Client in assessing privacy risks associated with new technologies, digital systems, and programs. The role ensures compliance with Ontario, federal, and private sector privacy legislation while identifying and mitigating privacy risks before solutions are implemented.Key...


  • Toronto, Canada isgSearch Internal Full time

    IT - Application & Software Development Toronto, ON Contract Jun 03, 2025 Our client has a 9 month, remote (in Canada) contract for a person with the following experience. Government experience is a must to be considered. ** Must haves**: - Minimum of 3 years’ health privacy experience conducting privacy impact assessments (PIAs) on medium to high...


  • Toronto, Canada Aviso Wealth Full time

    **Aviso Wealth**: **The Opportunity**: This can be a remote role, however for those who would like to come into the office we are at 151 Yonge St, Toronto, ON. Reporting to Director, Privacy, the PIA Specialist is responsible for helping to enhance Aviso's data privacy framework and implement privacy strategies and processes to support to Aviso's Legal...


  • Toronto, Canada Rubicon Path Full time

    A privacy consulting firm is looking for a Senior Privacy Impact Assessment (PIA) Specialist in Toronto, Ontario. This role requires leading the development of PIAs, ensuring compliance with privacy legislation, and effectively communicating privacy principles. Ideal candidates should have extensive experience in privacy assessments and legislation,...


  • Toronto, Canada Rubicon Path Full time

    A privacy consulting firm is looking for a Senior Privacy Impact Assessment (PIA) Specialist in Toronto, Ontario. This role requires leading the development of PIAs, ensuring compliance with privacy legislation, and effectively communicating privacy principles. Ideal candidates should have extensive experience in privacy assessments and legislation,...


  • Toronto, Canada Rubicon Path Full time

    A leading privacy consulting firm in Toronto is seeking a Senior Privacy Impact Assessment Specialist to lead the development of privacy assessments and ensure compliance with privacy legislation. The ideal candidate will have strong knowledge of privacy laws including FIPPA, PHIPA, and PIPEDA, alongside excellent communication and project management skills....