
Privacy Operations Lead
Posted 3 days ago

Posted 3 days ago
This is a fully remote position, open to applicants in United States.
• Take ownership of customer and prospect privacy risk assessments, Data Protection Impact Assessments (DPIAs), and transfer impact assessments from start to finish.
• Act as the technical representative during customer privacy evaluations and vendor due diligence discussions.
• Develop and maintain data flow diagrams and records of processing for hosted, dedicated, and self-hosted environments.
• Monitor the datacenter, region, or cloud involved in each data flow, ensuring accuracy as products evolve.
• Convert GDPR, UK GDPR, CCPA/CPRA, US state privacy laws, and developing AI regulations into actionable requirements.
• Establish privacy requirements for product and infrastructure modifications, encompassing retention, logging, telemetry, subprocessors, and training data lineage.
• Propel the implementation of privacy requirements with the responsible teams.
• Manage privacy control operations, including retention and deletion enforcement, DSAR and deletion processes, consent and opt-out management, de-identification, and redaction.
• Define, implement, test, and audit privacy controls in collaboration with the Engineering team.
• Create and execute operational auditing and remediation processes.
• Oversee subprocessor and vendor privacy evaluations, including colocation and infrastructure service providers.
• Maintain documentation supporting Data Processing Agreements (DPAs) and the trust center.
• Develop privacy playbooks, self-service guides, and training materials for Engineering, Support, and Sales Engineering teams.
• Collaborate with the Legal team on DPAs, Standard Contractual Clauses (SCCs), transfer mechanisms, and residency obligations for dedicated deployments.
• Work with the Security team to leverage privacy and security evidence for SOC 2, ISO 27001, and PCI DSS compliance.
• Report directly to the Director of Information Security and work closely with Legal, Engineering, and Solutions/Sales Engineering departments.
• Significant experience in privacy operations, legal operations, or technical privacy and compliance roles.
• Proven track record of managing privacy assessments from beginning to end and taking responsibility for outcomes.
• Demonstrated capability in managing privacy operational systems at scale, including data maps, DSAR workflows, consent management, retention processes, or similar tools.
• Ability to interpret architecture diagrams and trace data flows through datacenter and cloud infrastructures.
• Understanding of logs and retention settings with the ability to identify privacy deficiencies.
• Practical experience with GDPR and CCPA/CPRA regulations.
• Up-to-date knowledge of emerging AI regulations.
• Capability to engage directly with Fortune 500 privacy teams or Data Protection Officers (DPOs).
• Excellent writing skills.
• Strong inclination towards automating and documenting processes.
• Comfortable navigating ambiguity and evolving legal landscapes.
• Nice to have: Certifications such as CIPM, CIPT, CIPP/E, or equivalent.
• Nice to have: Familiarity with programming languages and technologies such as Python, Go, Rust, TypeScript, SQL, Docker, AWS, on-premise or colocation infrastructure, ML/AI data pipelines, training-data governance, hybrid privacy models, SOC 2, ISO 27001, HIPAA, or PCI DSS.
• Equity.
• Bonus: 10% annual bonus.
• Remote work options.
• Compensation aligned with demonstrated experience.
• Benefits are stated as excluded from the base salary, although specific benefits are not listed.
Cube Care Company
ALB Conciergerie
ALB Conciergerie
Get handpicked remote jobs straight to your inbox weekly.