Privacy Analyst- HQ
$119,422–$126,393 year
HybridSanta Clara, California, United States or Santa Clara, Villa Clara Province, Cuba
Job Summary
Conduct Privacy Reviews, Data Protection Impact Assessments (DPIAs), and Transfer Impact Assessments (TIAs) for new products, features, internal tools, and AI services. Evaluate data flows across SDKs, cloud infrastructure, and real-time communications systems, manage customer privacy requests including DPA negotiations, and own the end-to-end Data Subject Request process. Maintain the Record of Processing Activities, privacy notices, and sub-processor documentation while administering the privacy platform for consent management and data mapping. Support privacy audits, certifications, and AI governance reviews covering training data and model transparency. Monitor evolving global regulations to develop guidance, training, and playbooks that improve compliance across the organization. This role combines privacy operations, customer-facing support, AI governance, and program management in a fast-paced technology environment. The position requires a Bachelor's degree, 5+ years of experience in privacy or compliance within a SaaS or technology company, and the ability to work in the office three times per week.
Required Qualifications
- Bachelor's degree or equivalent experience
- 5+ years of experience in privacy, compliance, legal operations, or risk management within a SaaS, cloud, or technology company
- Strong knowledge of GDPR, CCPA/CPRA, LGPD, and modern privacy operations
- Hands-on experience with DPIAs, RoPA, DSRs, DPAs, and vendor privacy assessments
- Ability to understand technical concepts such as data flows, cloud architecture, SDKs, and encryption while effectively partnering with both engineering and legal teams
- Ability to be in the office 3x per week
- Work Authorization: Applicants must be legally authorized to work in the United States at the time of hire. This position is not eligible for current or future employment visa sponsorship.
Desired Qualifications
- IAPP certification (CIPP/E, CIPP/US, CIPM, CIPT, or AIGP)
- Experience supporting SOC 2 Type II, ISO 27001/27701, ISO/IEC 42001, HIPAA, or similar compliance frameworks
- Experience with AI governance, AI/ML compliance, and emerging AI regulations
- Hands-on experience administering Ketch (preferred) or comparable platforms such as OneTrust, Securiti, or TrustArc
- Experience supporting global engineering organizations and distributed teams
- Experience with privacy considerations for real-time communications, video, telephony, or media streaming technologies
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.