Description:
Job Description:This position provides specialist expert advice and program operations support on all aspects of privacy & data protection to the Chief Privacy Officer (CPO) for A Mission Critical Enterprise Software Company. The role will help handle privacy reviews, data subject rights (DSR) requests, privacy-related inquiries, data processing agreement (DPA) escalations, and, in partnership with the CPO, help execute privacy program priorities.
The Senior Privacy, Data & AI Governance Counsel is a key subject matter expert on US privacy, cybersecurity, data, and AI governance rules. They will work closely with key stakeholders across the Legal Commercial, Compliance, Procurement, Security, Product & Engineering, IT, HR, Sales, and Marketing teams.
This position will help ensure that we minimize company privacy & data protection risks by increasing compliance with privacy and data protection rules.
The position will also help demonstrate to customers, regulators, and the public that A Mission Critical Enterprise Software Company has its privacy, data & AI governance house in order and can be trusted as a cloud service provider.
The successful candidate is comfortable balancing compliance and risk-minimization with business value-creation goals in their day-to-day work and a pragmatic, tech-savvy, and a solutions-oriented professional.
Duties and Responsibilities:
This position's key duties and responsibilities include:
- Conducting privacy & AI governance reviews of vendors, products, and internal programs involving the processing of personal data
- Handling and responding to data subject rights (DSR) requests and other privacy inquiries
- Maintaining and updating internal and external privacy and data protection policies, standards, guidance, and other documentation
- Creating customer-facing FAQs, data sheets, and other documentation related to A Mission Critical Enterprise Software Company's products and services' personal data processing, to help customers conduct their own privacy review of our products and services
- Supporting audits, assessments, and certifications, including responding to customer privacy and security questionnaires and addressing common privacy-related questions
- Facilitating due diligence and transitions in mergers, acquisitions, and divestitures, as needed
- Advising Sales & Marketing teams on privacy & data protection requirements relevant to sales and marketing activities, covering email marketing, telephone marketing, events marketing, online marketing, etc.
- Collaborating with other members of the Legal, Security, Engineering, Product, Marketing, HR, Sales, and other cross-functional teams
- Providing expert support in internal investigations, security incidents, and data breaches
- Monitoring privacy/data protection, cybersecurity, data governance, and AI governance laws and regulatory trends, developments, and industry best practices
- Driving internal training and awareness of A Mission Critical Enterprise Software Company's privacy/data protection, cybersecurity, data governance, and AI governance obligations
- Identifying awareness and training needs, providing expert input on global training program, and delivering privacy training, as needed
- Supporting the CPO in privacy program management and operations
Required Qualifications:
Qualified applicants must have:
- 5+ years of full-time experience on privacy/data protection, data governance, and AI governance laws and program operations
- 3+ years of experience in the tech industry, with at least 2+ years in the B2B tech industry
- 2+ year conducting privacy & AI governance reviews, including recommending appropriate risk-minimization controls
- Qualified US attorney
Nice-to-haves:
We like to see the following in our qualified applicants:
- Experience in the enterprise cloud software tech industry
- First-principles, risk-based, and data-driven approach to prioritizing and general decision-making
- Highly developed people skills (e.g., collaboration, communication, compassion)
- Experience using privacy program management tools
Education:
- An advanced (master's or doctorate) law degree
- Completion of privacy & data protection-related courses and/or certifications