Senior Director, Global Privacy & Data Protection
$255,000–$290,000 year
HybridSan Diego, California, United States
Job Summary
Build and lead Trulioo's global privacy and data protection strategy across priority markets, products, customers, and operating environments. Serve as the designated Data Protection Officer for Europe, providing independent advice on GDPR and related obligations while advising executive leadership on privacy risk and regulatory changes. Mature the privacy program by integrating privacy by design into product development, commercial contracting, and agile operating rhythms, and own governance policies including data retention, classification, and handling. Lead incident readiness and response, supporting investigations, breach assessments, and regulatory notifications. Partner with Product, Engineering, Legal, and go-to-market teams to embed privacy into architecture decisions, release processes, and customer engagements, and guide responsible AI governance. Represent Trulioo in regulatory and industry engagements, negotiate DPAs and vendor terms, and develop executive-level insights into program maturity and risk visibility.
Required Qualifications
- 15+ years of experience in privacy, data protection, technology law, regulatory advisory, or related legal and risk leadership roles
- significant in-house experience
- Extensive expertise in GDPR
- European data protection expectations
- U.S. state privacy laws
- Canadian privacy laws
- Demonstrated ability to serve as a senior privacy leader or Data Protection Officer in a complex, global technology environment
- Experience advising Product, Engineering, Security, Legal, and go-to-market teams on privacy by design, data protection risk, product launches, and customer-facing commitments
- Practical experience with PIAs, DPIAs, data mapping, transfer mechanisms, DPAs, SCCs, vendor risk, data subject rights, retention, and privacy incident response
- Strong understanding of privacy issues tied to emerging identity technology and use cases including biometrics, identity, AI, behavior analysis, automated processing, fraud prevention, and device intelligence
- Track record building or maturing privacy program operations in agile, high-growth, regulated, or enterprise SaaS environments
- Executive presence, sound judgment, and the ability to translate regulatory complexity into clear business decisions
- Strong people leadership skills, with the ability to build capability, set direction, and raise the operating maturity of a privacy function
- Law degree or equivalent legal/privacy qualification
- membership in good standing with a relevant law society or bar
Desired Qualifications
- Law degree or equivalent legal/privacy qualification; membership in good standing with a relevant law society or bar is strongly preferred
- Experience in RegTech, FinTech, identity verification, fraud prevention, payments, financial services, or enterprise SaaS
- Working knowledge of privacy and data protection frameworks in Asia-Pacific, India, China, and Latin America
- Experience supporting AI governance, responsible AI programs, model governance, or data ethics frameworks
- Familiarity with information security, data governance, cybersecurity, enterprise risk, or public-company readiness programs
- Privacy certifications such as CIPP/E, CIPP/US, CIPP/C, CIPM, CIPT, or equivalent credentials
- Experience speaking externally, publishing privacy insights, or representing a company in industry forums
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.