Lead Data Privacy Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

CVS Health · 6 hours ago

Lead Data Privacy Engineer

CVS Health is building a world of health around every individual, and they are seeking a Lead Data Privacy Engineer to assist in leading their Data Protection Engineering, Monitoring, and Audit efforts. This role is responsible for embedding privacy by design principles into systems and processes, ensuring compliance with privacy regulations, and collaborating with cross-functional teams to maintain a robust data security and privacy posture.

Health CareMedicalPharmaceuticalRetailSales
check
H1B Sponsor Likelynote

Responsibilities

Drive strategy, planning, prioritizing, and execution of data security and privacy initiatives to protect unstructured and structured data in hybrid environments
Design and Implementation of Privacy Enhancing Technologies (PETs), lead privacy-preserving solutions planning, design, development, implementation, and monitoring
Drive and support technical components compliance/audit processes
Provide expert guidance on secure systems architecture, design and implementation in alignment with privacy engineering principles
Continuous monitoring of emerging technologies, regulatory developments and industry trends to recommend enhancements to organizational privacy posture. Develop and maintain data protection dashboard, metrics roadmap, and scorecards
Apply threat modeling and risk analysis methodologies to mitigate privacy and security risks. Facilitate risk-based approach to develop, manage, and maintain data protection controls
Collaborate with engineering, product, legal, and compliance teams to translate privacy and regulatory requirements (e.g., GDPR, CCPA, HIPAA) into technical designs, policies, and guardrails
Foster a privacy by design culture and embed privacy requirements into engineering documentation
Lead and contribute to enterprise data governance activities, including data discovery, classification, data loss prevention, audit, and incident response
Lead project teams of talented professionals to deliver data security capabilities

Qualification

Data Privacy EngineeringPrivacy Regulations ComplianceProgramming LanguagesCryptographic Systems DesignThreat ModelingCI/CD EnvironmentsData Security TechnologiesProfessional CertificationsCloud PlatformsSecure System ArchitectureAnalytical AbilitiesCommunication SkillsInterpersonal Skills

Required

7+ years of hands-on experience in security engineering, privacy engineering, privacy enhancing technologies or related fields
7+ years of experience with privacy and data protection regulations (GDPR, CCPA, HIPAA, etc.) and translating them into technical requirements
5+ years of experience in one or more programming or scripting languages (e.g. Python, Java, Go, Rust, or similar)
5+ years of experience in designing and implementing cryptographic or data protection systems (e.g. encryption, tokenization, key management)
5+ years of experience in performing privacy threat modeling, data flow mapping, and conducting DPIAs/PIAs
5+ years of experience in working in CI/CD environments, Infrastructure as Code (IaC), and automating security/privacy checks
5+ years of data security technology experience, including data classification, DLP, insider risk, encryption, web content filtering and CASB

Preferred

Professional Certifications such as CDPSE, CIPP, CIPT, CIPM, CISSP, or equivalent
Experience with security controls alignment to key regulations like NIST, FIPS 140-2, ISO, HITRUST, HIPAA, PCI, CPRA, GDPR
Experience supporting regulatory audits, investigations, or independent assessments
Experience building and scaling privacy platforms or features in a fast-paced environment (e.g. developing & automating processes, leveraging AI ML)
Familiarity with Data Loss Prevention (DLP) systems and data mapping tools
Familiarity with cloud platforms (AWS, Azure, GCP) and various data technologies (SQL, NoSQL databases, data lakes, etc.)
Experience implementing controls at scale in regulated environments
Experience aligning technical infrastructure with regulatory obligations
Hands-on experience with secure system architecture, data encryption, tokenization, access controls or secure API design
Experience in healthcare, insurance, or highly regulated industries
Strong analytical abilities, verbal/written communication, and interpersonal skills
Demonstrated experience in secure system design and alignment with organizational/regulatory requirements
Excellent communication and ability to explain complex technical and legal concepts to diverse audiences

Benefits

Affordable medical plan options
401(k) plan (including matching company contributions)
Employee stock purchase plan
No-cost programs for all colleagues including wellness screenings, tobacco cessation and weight management programs, confidential counseling and financial coaching
Benefit solutions that address the different needs and preferences of our colleagues including paid time off, flexible work schedules, family leave, dependent care resources, colleague assistance programs, tuition assistance, retiree medical access and many other benefits depending on eligibility

Company

CVS Health

company-logo
CVS Health is a health solutions company that provides an integrated healthcare services to its members.

H1B Sponsorship

CVS Health has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2022 (1)

Funding

Current Stage
Public Company
Total Funding
$4B
Key Investors
Michigan Economic Development CorporationStarboard Value
2025-08-15Post Ipo Debt· $4B
2025-07-17Grant· $1.5M
2019-11-25Post Ipo Equity

Leadership Team

leader-logo
David Joyner
President and Chief Executive Officer, CVS Health
linkedin
leader-logo
Chandra McMahon
SVP & CISO
linkedin
Company data provided by crunchbase