CrawlJobs Logo

Director of Privacy

PHIL

Location Icon

Location:
United States

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Phil is seeking a highly experienced and proactive Director of Privacy to establish and lead our enterprise-wide privacy program. This role is responsible for ensuring PHIL’s compliance with federal and state privacy regulations, strengthening our governance model, and operationalizing privacy practices across all business units. Reporting to the Vice President of Operational Excellence, you will serve as PHIL’s Director of Privacy and work closely with Legal, Operations, Product, Engineering, and HR. You will drive Phil’s privacy strategy, ensuring company-wide adoption of privacy standards, and serve as a subject matter expert for leadership and cross-functional teams. This role sits within the Program Management Office and will help build PHIL’s long-term privacy governance and operational scale.

Job Responsibility:

  • Own PHIL’s enterprise privacy program, serving as the company’s Privacy Officer and primary point of accountability
  • Lead compliance with HIPAA, state privacy regulations, and client-specific contractual requirements
  • Develop and maintain privacy policies, procedures, training, and documentation
  • Lead privacy risk assessments, impact assessments, and internal controls
  • Partner with Operations, Product, Engineering, Security, and Legal to operationalize privacy requirements
  • Build processes for privacy-by-design across product development and platform enhancements
  • Oversee monitoring and auditing of privacy practices to ensure sustained compliance
  • Lead PHIL’s privacy incident investigation and response processes in partnership with Security and Compliance
  • Manage reporting workflows and external notifications as required
  • Develop and deliver privacy training for teams across Phil, including Operations, Client Success, Product, and Engineering
  • Serve as the internal advisor on privacy topics, providing clear guidance to cross-functional partners
  • Establish privacy KPIs, reporting cadences, and mechanisms to track compliance, risk trends, and remediation
  • Contribute to PMO frameworks, governance structures, and cross-functional ways of working
  • Prepare materials for audits, client reviews, and regulatory inquiries

Requirements:

  • Bachelor’s degree in business, operations, compliance, information security, or a related field (or equivalent experience)
  • 7–10 years of experience in privacy, compliance, program management, or related regulated industry roles
  • Deep understanding of HIPAA, state privacy laws, data governance, and privacy operations
  • Experience building or leading an enterprise privacy program at a healthcare, pharmacy, or SaaS organization
  • Strong program management skills and comfort managing cross-functional initiatives
  • Excellent communicator who can translate regulatory requirements into actionable steps
  • Highly organized and capable of working in fast-moving, ambiguous environments
  • Clear, concise communicator and skilled at translating complexity into action plans

Nice to have:

CIPP, CHPC, or other privacy certifications preferred but not required

What we offer:
  • Ground floor opportunity with one of the fastest-growing startups in health-tech
  • Fully remote working environment
  • Competitive compensation (commensurate with experience)
  • Full benefits (medical, dental, vision)
  • 401(k) contribution opportunity

Additional Information:

Job Posted:
February 18, 2026

Employment Type:
Fulltime
Work Type:
Remote work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Director of Privacy

Senior Director, Privacy

We're looking for a talented Senior Director, Privacy to join our dynamic and co...
Location
Location
United States , San Francisco; Remote; New York; Austin; Seattle; Mountain View; Washington DC
Salary
Salary:
211800.00 - 340200.00 $ / Year
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Necessary qualifications to practice law in your local jurisdiction
  • 10+ years practicing law, ideally with at least 3+ years of in-house experience at an enterprise SaaS company
  • 3+ years of direct people management experience (A globally distributed team is a plus)
  • CIPP certification
  • Passion to understand our customers, products, culture, and business model
  • Deep knowledge of applicable privacy regulations (GDPR, CCPA/CPRA, etc.)
  • Extensive experience working to negotiate complex technology transaction agreements, with an ability to embrace “smart risk” and develop customer-centric solutions
  • Strong judgment, intellectual curiosity, and a moral compass that takes your understanding, work product, and client relationships to the next level
  • Demonstrated growth mindset and the ability to thrive in a dynamic, fast-paced, and remote-friendly workplace
Job Responsibility
Job Responsibility
  • Oversee a team of attorneys and privacy professionals responsible for managing and updating privacy contracts, such as Data Processing Addendums and Business Associate Agreements
  • Act as a subject matter expert and escalation point for the Commercial Legal team
  • Collaborate with Governance, Risk & Compliance, Product Legal, and Trust (Information Security) teams to ensure our products and services comply with industry standards, certifications, and best practices
  • Collaborate with stakeholders across Legal (including Commercial Legal, Public Policy, and Product Legal) to ensure that our customer-facing Privacy contracts, communications, and practices take a “customer first” approach
  • Contribute to building data privacy-conscious products that our customers trust and love
  • Creatively build upon and drive awareness around privacy and data protection issues, including developing and delivering training to Commercial Legal, Sales, and Customer Support teams
  • Engage with the privacy legal community and partner with Privacy Team leadership to understand evolving issues, develop team strategy, and to help Atlassian provide an industry-leading privacy program for our customers and colleagues
What we offer
What we offer
  • health coverage
  • paid volunteer days
  • wellness resources
  • Fulltime
Read More
Arrow Right

Director of Privacy - Go-to-Market (GTM) and Trust

We are looking for a highly skilled and internationally experienced Privacy atto...
Location
Location
Salary
Salary:
Not provided
https://www.atlassian.com Logo
Atlassian
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of privacy (or related) experience, with expertise in all privacy areas including partnering directly with GTM and Trust functions
  • Qualified to practice law in your local jurisdiction
  • Deep understanding of privacy laws, regulations, and frameworks, such as GDPR, CCPA/CPRA, HIPAA, and ISO 27701
  • A smart approach to risk-taking and decision-making that aligns with Atlassian’s fast-paced, agile and innovative culture
  • Understanding of the diverse business cultures and regulatory environments across EMEA, and the ability to deliver privacy solutions that anticipate and address the unique privacy needs of customers
  • Simplifier communication skills that translate complex privacy and technical concepts into easily digestible content for customers and internal stakeholders
  • The ability to thrive in a fast-changing environment
  • A growth mindset, resilience, and a healthy sense of humor
Job Responsibility
Job Responsibility
  • GTM and Trust support: Provide expert privacy counsel to GTM and Trust teams throughout the customer lifecycle, including pre-sales content development, compliance with global privacy laws, customer migrations to Cloud and support for strategic and novel privacy negotiations
  • Customer support: Engage directly with customers to address specific privacy needs and expectations unique to the EMEA region, adapting guidance to reflect local business practices and cultural nuances
  • Regulatory compliance: Advise on the impact of emerging global privacy laws and regulations, and help prepare practical responses to new requirements
  • Cross-functional engagement: Collaborate with internal stakeholders, including other Legal pillars, Sales, Trust, Engineering, Product, Security, People, and IT, to ensure privacy considerations and customer needs are integrated into business initiatives and roadmaps
What we offer
What we offer
  • health and wellbeing resources
  • paid volunteer days
Read More
Arrow Right

Senior Director & Associate General Counsel

PagerDuty is seeking an exceptional attorney with deep product, IP, security and...
Location
Location
United States , San Francisco
Salary
Salary:
199000.00 - 334000.00 USD / Year
https://www.pagerduty.com Logo
PagerDuty
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 10+ years of relevant legal experience with deep expertise in at least three of the following areas: Security, Privacy, IP, Commercial Contracts, Litigation, AI or Regulatory compliance
  • prior experience advising throughout the product development lifecycle, covering security, privacy, intellectual property, contracts, regulatory compliance issues and more
  • admitted into and in good standing with at least one U.S. state bar
  • prior experience managing and developing successful teams
  • proven ability to concisely communicate and explain critical legal decisions with context, building trusted executive relationships
  • track record of successful implementation of cross functional strategy and creation of systems and processes to promote efficient scale of the organization
  • deep understanding of U.S. and international privacy and security regulatory frameworks and ability to translate multi-jurisdictional requirements into practical legal guidance
  • outstanding professional judgment and client service focus
  • team player with a positive attitude and love of solving problems
Job Responsibility
Job Responsibility
  • Lead and manage the Product & Privacy legal team, including managing PagerDuty's intellectual property portfolio, supporting the product, engineering and security teams, and managing our global privacy program
  • build strong relationships across the organization and create systems and processes to support business goals
  • advise stakeholders in developing and launching technology products to mitigate risk and maintain compliance in a fast-moving environment
  • promote business flexibility
What we offer
What we offer
  • Competitive salary
  • comprehensive benefits package
  • flexible work arrangements
  • company equity
  • ESPP (Employee Stock Purchase Program)
  • retirement or pension plan
  • generous paid vacation time
  • paid holidays and sick leave
  • Dutonian Wellness Days & HibernationDuty - companywide paid days off in addition to PTO
  • paid parental leave: 22 weeks for pregnant parent, 12 weeks for non-pregnant parent
  • Fulltime
Read More
Arrow Right

Director Legal Affairs

We are a fast-paced, growth-driven company seeking an experienced and business-m...
Location
Location
United States of America , San Antonio
Salary
Salary:
Not provided
https://www.circlek.com Logo
Circle K
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Licensed Attorney: Active license to practice law in good standing in at least one U.S. jurisdiction
  • Experience: Minimum of 10 years of legal practice, ideally a combination of top-tier law firm and in-house corporate legal department experience
  • Industry Expertise: Strong experience advising clients in the retail, convenience store, or petroleum industries highly preferred
  • Legal Skillset: Mastery in contract drafting, negotiation, regulatory compliance, privacy, and business counseling
  • Exceptional Communicator: Outstanding writing, verbal communication, and interpersonal skills, with the ability to influence and advise senior leadership
  • Self-Starter with Collaborative Spirit: Ability to work independently while thriving in a cross-functional, global environment
  • Relationship-Builder: Proven track record of developing strong internal and external professional relationships
  • Organized and Detail-Oriented: Excellent organizational skills with the ability to manage multiple complex projects simultaneously under tight deadlines
  • Positive and Strategic Mindset: A proactive, solutions-oriented approach with a positive attitude and a strong commitment to excellence
Job Responsibility
Job Responsibility
  • Serve as a trusted advisor to senior management, offering strategic guidance that balances legal risk with business objectives
  • Draft, negotiate, and review contracts at global, national, regional, and local levels across procurement, fuel operations, IT, marketing, and general business operations
  • Provide strategic counsel to global fuel teams on supply, distribution, regulatory, and transactional matters
  • Navigate a broad regulatory landscape, ensuring compliance with FTC competition laws, liquor licensing, environmental regulations, lottery rules, and local/state legal requirements
  • Oversee privacy compliance initiatives to ensure alignment with evolving U.S. privacy laws and regulations
  • review and negotiate privacy-related contracts
  • Review, draft, and negotiate IT contracts and technology agreements
  • Support marketing initiatives by drafting disclaimers, contest rules, terms and conditions, and providing risk mitigation advice on promotions and campaigns
  • Identify, recommend, and implement improvements that streamline legal department operations and enhance overall business efficiency
  • Provide education, training, and mentoring to internal legal team members and business units
What we offer
What we offer
  • Work closely with executive leadership on critical business initiatives
  • Support a growing, global company with diverse legal challenges
  • Opportunities for leadership and career advancement
  • Fulltime
Read More
Arrow Right
New

Senior Director Privacy Counsel

Location
Location
United States , Austin; New York
Salary
Salary:
Not provided
bumble.com Logo
Bumble Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Worked as in-house privacy counsel for a public, consumer technology company with a large global user base
  • Experience leading significant data breach or incident response from detection through regulatory reporting and remediation
  • Experience designing or scaling a global privacy compliance program across multiple jurisdictions (e.g., GDPR, CCPA/CPRA, UK DPA)
  • Implementation of frameworks, tools, or documentation such as ROPA, DPIAs, or training programs
  • Fulltime
Read More
Arrow Right
New

Senior Director Privacy Counsel

Bumble’s mission is to foster healthy and equitable relationships across the glo...
Location
Location
United States , Austin; New York
Salary
Salary:
205000.00 - 275000.00 USD / Year
bumble.com Logo
Bumble Inc.
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • J.D. degree and active bar membership in good standing
  • 12+ years of relevant privacy and data protection experience, including in-house counsel roles with U.S.-based global companies
  • Deep understanding of global privacy regulations, including GDPR, UK GDPR, CCPA/CPRA, biometric specific laws and other U.S. privacy and data security frameworks
  • Demonstrated experience leading complex data breach and incident response programs, including coordination with InfoSec, legal assessments, and notification requirements
  • Hands-on experience owning and managing ROPA, DPIAs, and other GDPR compliance artifacts
  • Practical, risk-based mindset and strong organizational skills—comfortable building scalable systems that reduce redundancy and ensure compliance
  • Ability to distill complex regulatory requirements into clear, actionable advice tailored for business partners
  • Experience building teams and/or leading through senior cross-functional partners — setting standards, coaching, and creating clarity across ambiguous, high-impact work
  • Strong interpersonal and communication skills with a proven track record of influencing and collaborating across diverse global teams, including the ability to present to and advise senior leaders across the organization and the members of the Audit Committee
  • Deep alignment with Bumble’s mission, values, and global focus
Job Responsibility
Job Responsibility
  • Define Bumble’s global privacy strategy, operating model, and multi-year roadmap, navigating new uses of member data in AI models as well as the emerging regulatory schemes that will govern this work
  • Provide critical strategic legal guidance regarding privacy usage that drives both innovation and the Company’s commitment to privacy while building an efficient & scalable privacy compliance function - and partnering hands-on with leaders across the organisation
  • Drive scalable, cross-functional privacy compliance programs aligned with global frameworks including GDPR, UK DPA, CCPA/CPRA, and other U.S. state-level privacy laws, creating a data governance framework and implementing a data governance structure
  • Provide regular privacy reporting and presentations to the Audit Committee and senior leadership, clearly communicating risk, readiness, trends, and decisions in a way that supports strong governance
  • Partner closely with an external Data Protection Officer (DPO) and internal senior leaders to navigate EU and UK obligations, US privacy frameworks, and evolving regulatory expectations, negotiating solutions that preserve relationships and outcomes
  • Lead Bumble’s privacy-related cyber incident and data breach response program end-to-end in close partnership with Information Security—owning readiness and investigation/triage protocols related to privacy, making notification and regulatory reporting decisions across jurisdictions, coordinating regulator engagement, and driving post-incident remediation and lessons learned—serving as the senior escalation point for high-severity matters
  • Own and maintain core GDPR compliance documentation, including Records of Processing Activities (ROPA), Data Protection Impact Assessments (DPIAs), and Lawful Basis assessments and draft and negotiate Data Processing Agreements
  • Partner closely with InfoSec, Product, and Engineering teams to ensure security safeguards, privacy-by-design, and clear roles and responsibilities in incident preparedness
  • Partner closely with the member support function to respond to requests from members for access to or deletion of their data, and assist on (i) regulatory investigations from regulators in the US, UK and EU
  • and (ii) member claims in civil courts, in relation to Bumble’s response to members’ requests
  • Fulltime
Read More
Arrow Right

Director, Privacy R&D and CPO

A Director Privacy for R&D/CPO ensures compliance with global data protection la...
Location
Location
Belgium; United Kingdom , Wavre; London
Salary
Salary:
Not provided
us.gsk.com Logo
GSK
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Expertise in essential regulation guidelines and medical governance policies and procedures applicable to R&D
  • Broad scientific/ pharmaceutical industry background with more than 10 years of experience in privacy EU and ex EU
  • Previous experience in implementing / embedding Privacy risk controls into a worldwide organization
  • Proven success in developing and executing activities that improve the application of the internal control framework
  • Good understanding of privacy regulatory framework
  • Relevant experience in governance type activities with understanding of the R&D, medical, commercial and compliance functions.
Job Responsibility
Job Responsibility
  • Develop and implement a strategy to ensure Privacy by Design into R&D & CPO processes. This includes completing new or adjusting existing privacy inventories and/or privacy risk assessments and developing and implementing mitigating controls
  • Oversee the privacy strategy to ensure timely create and review existing R&D & CPO privacy inventories and privacy impact assessments to identify gaps, assign appropriate actions, and track actions to completion. Ensure new innovative areas are timely addressed and risk identified including adequate review of third-party global process relevant to the enterprise risk
  • Provide inventory and monitor R&D/CPO privacy gaps, risks and issues as well as developing adequate risk minimization measures, corrective and preventative actions. Provide status updates to senior governance bodies such as R&D’s Risk Management and Compliance Board (RDCB) and Data Ethic and Governance Council as well as CPO related board
  • Support the design of privacy-related training for R&D & CPO staff to foster a privacy by design culture
  • Analyze and implement process changes required to enhance R&D/CPO Privacy framework
  • Maintain ongoing communication with relevant LOC stakeholders, Privacy Legal, Data Privacy Officer and enterprise risk ensuring continued alignment between global and local R&D/CPO Privacy processes
  • Coordinate efforts with the privacy lead needed to respond to Data Privacy Regulators in the event of Data Privacy Breaches. Monitor frequency and resolution of breach as well as implement remediation strategy to avoid recurrence. Coordinate with privacy lead responses to Individual Rights Management requests, ensuring engagement of the right R&D stakeholders in the information collection
  • Oversee and ensure adequate privacy expertise related to the data and human biological sample reuse (including adequate support to the DSAP panel)
  • Create and maintain R&D/CPO’s approach to the GSK Privacy Enterprise Risk Plan and maintain ongoing communication with Privacy professionals in other GSK business areas as well as maintain the R&D/CPO privacy champion network
  • Provide Risk Management expertise and oversight for R&D/CPO Privacy covering all therapy areas and with global-regional-local span
  • Fulltime
Read More
Arrow Right

Director, Privacy Counsel

As a key member of the Privacy Office in Regeneron’s Law Department, this role w...
Location
Location
United States , Cambridge, MA or Sleepy Hollow, NY
Salary
Salary:
200000.00 - 330000.00 USD / Year
lawrenceharvey.com Logo
Lawrence Harvey
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • JD and licensed to practice law in New York (or eligible for licensure as a registered in-house counsel)
  • 5-7 years of legal experience at a law firm and/or in-house
  • At least 3 years of experience in privacy
  • Strong knowledge of local and global privacy laws and their application to the pharmaceutical/biotechnology industry
  • Deep understanding of privacy risks associated with ad tech and emerging technologies
  • Excellent relationship building skills
  • Demonstrated ability to work collaboratively and with all levels of the workforce
  • Exceptional oral, written, and presentation communication skills
  • High level of business acumen, influencing skills and ability to drive change
  • Willing to take on a leadership role
Job Responsibility
Job Responsibility
  • Providing advice and counseling on a wide range of privacy and related issues
  • Strategically assess potential privacy risks on new projects
  • Monitoring emerging regulations and supporting the operationalization of compliance
  • Upkeep and development of internal policies, procedures, and guidance documents
  • Working with Regeneron’s Privacy Steward Council to drive initiatives
  • Collaborating with our Government Affairs division on opportunities to influence legislation
  • Assisting contracting teams in drafting, maintaining, and negotiating data processing agreements
  • Participating in industry group meetings
  • Fulltime
Read More
Arrow Right