
Privacy Manager
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
• Lead the implementation of the NIST Privacy Framework at Sezzle, transforming the roadmap into an operational program, which includes establishing Current and Target Profiles, performing gap analyses, creating a prioritized and costed action plan, and ensuring continuous monitoring in compliance with US and Canadian privacy regulations.
• Take ownership of privacy risk assessments and Privacy Impact Assessments for new products, features, and third-party vendors.
• Manage an intake and disposition procedure for privacy reviews.
• Develop and sustain the enterprise data inventory and data map in collaboration with the Engineering team.
• Monitor the lifecycle of consumer information and oversee the automation and fulfillment of access, deletion, and opt-out requests.
• Implement de-identification and aggregation standards along with their corresponding approval workflows.
• Collaborate with Engineering, Product, and Marketing teams to integrate privacy-by-design principles.
• Facilitate the cross-functional privacy working group while maintaining the decision log and obligations register.
• Monitor program metrics and assist in reporting to executives and the board.
• Work alongside Information Security on privacy incidents and risks associated with cross-border data transfers.
• A minimum of 4 years of dedicated experience in managing data privacy programs.
• Proven experience in launching at least one privacy program or a significant component from its early stages to a stable state.
• Demonstrated experience in implementing a recognized privacy or security framework; strong preference for the NIST Privacy Framework, with NIST CSF or ISO 27701 also considered relevant.
• Solid working knowledge of CCPA/CPRA and broader US state privacy laws, as well as TCPA, GLBA, PIPEDA, and Quebec Law 25.
• Expertise in de-identification, aggregation, and other privacy-enhancing techniques.
• Capacity to convert complex legal requirements into actionable business processes.
• High emotional intelligence with the ability to influence both technical and non-technical stakeholders.
• Proficiency in leading cross-functional working groups and delivering clear presentations to executives.
• Capability to manage multiple high-stakes projects in a dynamic environment.
• Possession of CIPM along with CIPP/US or CIPP/C certifications is preferred; CIPT certification is a plus.
• Familiarity with privacy technology platforms such as OneTrust, Securiti.ai, or WireWheel is advantageous.
• Experience with data infrastructure analytics.
• Knowledge of navigating financial regulations and compliance frameworks such as GLBA and PCI-DSS.
• Experience in a public company setting, including supporting audit committee or board-level reporting.
• Unlimited PTO, volunteer hours, and sabbatical options.
• Comprehensive life, STD/LTD, medical, dental, and vision insurance.
• Highly discounted LifeTime gym membership.
• 401k plan with a matching contribution.
• Collaborative and enjoyable work environment with supportive colleagues.
• An opportunity to be part of the fastest-growing FinTech alongside a team of motivated and driven professionals.
Medtronic
Sunbelt Rentals, Inc.
The Cigna Group
U.S. Bank
Get handpicked remote jobs straight to your inbox weekly.