This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The Director, Privacy Operations, leads and governs enterprise-wide privacy operations. This role owns the multi-year roadmap for privacy technologies, GRC workflows, and operational controls. The Director partners with cross-functional teams and experts to set enterprise standards and drives maturity against defined KPIs. The role guides cross-functional execution (Product, Engineering, Security, Marketing, Legal, and Data) to deliver scalable, resilient, and compliant outcomes globally, and serves as the operational authority on tracking technologies and privacy tooling. Success in this role measurably reduces regulatory and brand risk, improves audit readiness, and elevates cross-functional program performance. This is a hybrid role and requires onsite work 3 days a week in our Newton, MA office.
Job Responsibility
Owns the delivery of enterprise privacy operations strategy and multi-year roadmap
Provides governance leadership and direct support for the GRC platform (e.g., OneTrust): configuration standards, access models, integrations, release/change management, and data quality in partnership with IT and Security
Establishes and oversees policies, standards, and operating procedures for Tracking Technologies (cookies, SDKs, pixels, device IDs)
monitors compliance, assesses risk, and drives remediation across products and channels
Directs the privacy incident management program: intake, triage, investigation, root-cause analysis, corrective actions, and regulatory readiness
maintains incident templates and workflows within the GRC platform and chair incident review forums
Owns the design and generation of performance metrics and reports for Privacy function and management
Leads cross-functional delivery for privacy-by-design and technical implementation guidance
Owns business continuity and disaster recovery (BC/DR) strategies and test plans for privacy systems and tools
Stays abreast of vendor roadmaps, emerging technologies, and regulatory developments then translates needs into executable operational requirements and standards
Travel: 0-10%
Requirements
Bachelor's Degree in Information Security, Information Systems, Law, or Accounting. 3+ years of additional experience would be considered in lieu of degree
10 years experience in privacy operations, compliance, audit or data protection/management roles in a multinational organization in a highly regulated or scrutinized industry
5 years experience managing system changes and configuring Governance, Risk & Compliance tools such as OneTrust or TrustArc in a controlled IT environment
Nice to have
ISO 27001/27701 & SOC2 audit experience, strongly desired
Certifications: CIPM, CIPT or CISSP preferred. CIPP-US or CIPP-E desired. CRISC/CISA and SAFe, a plus
Expert understanding of privacy and information security frameworks, controls, and risk-management methodologies
ability to translate regulatory and technical concepts into actionable business requirements
Demonstrated change leadership: ability to lead enterprise rollouts, drive adoption, and manage organizational impact across global stakeholders
Executive communication and storytelling skills demonstrates expert ability to understand and translate complex technical concepts into business requirements, frame trade-offs and influence decisions at the senior leadership level
Technical expertise: Applies deep technical knowledge of tracking technology regulations, tools, browser behavior, third-party code, tag managers, and detection/measurement strategies to identify and remediate non-compliance
Advanced understanding of change management and security administration best practices a must
Program and people leadership: Participates in team capacity planning, goal setting, coaching, and performance management for internal teams and vendors
Measurement-driven proven ability to define KPIs and manage operations using dashboards and leading indicators
What we offer
Bonus
RSUs
Medical, dental, and vision insurance
Paid vacation, sick, holiday, and parental bonding leave
401(k) retirement plan
Long-term and short-term disability insurance
Life insurance
Money-saving discounts and financial planning tools
Tuition assistance and education coaching
Caregiving support and resources for the children and adults in your family