
Privacy Manager
Posted Aug 6

Posted Aug 6
This is a fully remote position, open to applicants in United States.
β’ Lead the implementation of the NIST Privacy Framework at Sezzle, transforming the roadmap into an operational program, which includes establishing Current and Target Profiles, performing gap analyses, creating a prioritized and costed action plan, and ensuring continuous monitoring in compliance with US and Canadian privacy regulations.
β’ Take ownership of privacy risk assessments and Privacy Impact Assessments for new products, features, and third-party vendors.
β’ Manage an intake and disposition procedure for privacy reviews.
β’ Develop and sustain the enterprise data inventory and data map in collaboration with the Engineering team.
β’ Monitor the lifecycle of consumer information and oversee the automation and fulfillment of access, deletion, and opt-out requests.
β’ Implement de-identification and aggregation standards along with their corresponding approval workflows.
β’ Collaborate with Engineering, Product, and Marketing teams to integrate privacy-by-design principles.
β’ Facilitate the cross-functional privacy working group while maintaining the decision log and obligations register.
β’ Monitor program metrics and assist in reporting to executives and the board.
β’ Work alongside Information Security on privacy incidents and risks associated with cross-border data transfers.
β’ A minimum of 4 years of dedicated experience in managing data privacy programs.
β’ Proven experience in launching at least one privacy program or a significant component from its early stages to a stable state.
β’ Demonstrated experience in implementing a recognized privacy or security framework; strong preference for the NIST Privacy Framework, with NIST CSF or ISO 27701 also considered relevant.
β’ Solid working knowledge of CCPA/CPRA and broader US state privacy laws, as well as TCPA, GLBA, PIPEDA, and Quebec Law 25.
β’ Expertise in de-identification, aggregation, and other privacy-enhancing techniques.
β’ Capacity to convert complex legal requirements into actionable business processes.
β’ High emotional intelligence with the ability to influence both technical and non-technical stakeholders.
β’ Proficiency in leading cross-functional working groups and delivering clear presentations to executives.
β’ Capability to manage multiple high-stakes projects in a dynamic environment.
β’ Possession of CIPM along with CIPP/US or CIPP/C certifications is preferred; CIPT certification is a plus.
β’ Familiarity with privacy technology platforms such as OneTrust, Securiti.ai, or WireWheel is advantageous.
β’ Experience with data infrastructure analytics.
β’ Knowledge of navigating financial regulations and compliance frameworks such as GLBA and PCI-DSS.
β’ Experience in a public company setting, including supporting audit committee or board-level reporting.
β’ Unlimited PTO, volunteer hours, and sabbatical options.
β’ Comprehensive life, STD/LTD, medical, dental, and vision insurance.
β’ Highly discounted LifeTime gym membership.
β’ 401k plan with a matching contribution.
β’ Collaborative and enjoyable work environment with supportive colleagues.
β’ An opportunity to be part of the fastest-growing FinTech alongside a team of motivated and driven professionals.
May Mobility
Deutsche Telekom IT Solutions Slovakia
hims & hers
GT Independence
Get handpicked remote jobs straight to your inbox weekly.