Назад
Company hidden
6 дней назад

Senior Privacy & Compliance Program Manager (GRC)

100 000 - 145 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US/Canada
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Privacy & Compliance Program Manager (GRC): Building and strengthening privacy, compliance, and data governance practices for the Thunderbird ecosystem with an accent on vendor reviews and international privacy laws. Focus on translating legal requirements into practical technical processes, ensuring GDPR compliance, and coordinating cross-functional risk tracking.

Location: Remote Canada or Remote US. Must reside in and have permanent work authorization for these countries.

Salary: US: $115,000 - $145,000; Canada: $100,000 - $125,000

Company

hirify.global is the nonprofit-owned company behind Thunderbird and part of the Mozilla family, focused on privacy-respecting communication tools.

What you will do

  • Coordinate privacy and compliance program work, including program planning, risk tracking, and leadership reporting.
  • Translate privacy, security, and compliance requirements into practical processes for products, infrastructure, and support workflows.
  • Manage vendor and tool reviews, documenting data flows and assessing privacy, security, and operational risks.
  • Support global data governance, including DSAR workflows, records of processing, and privacy policy maintenance.
  • Partner with technical teams to implement privacy-by-design practices for new products and services.
  • Lead compliance and audit-readiness efforts, focusing on ISO-related readiness and control implementation.

Requirements

  • 8+ years of professional experience in software, SaaS, or technical product environments.
  • 5+ years of hands-on experience in privacy operations, GRC, legal operations, or vendor governance.
  • Experience with international privacy requirements, specifically GDPR and EU privacy laws.
  • Technical fluency to understand data movement across cloud services, telemetry, and data storage.
  • Strong program management skills with the ability to build pragmatic processes for a growing organization.
  • Must have permanent work authorization for the US or Canada; no visa sponsorship provided.

Nice to have

  • Experience with ISO 27001 or SOC 2 readiness and audits.
  • Background in open-source, consumer software, or mission-driven technology organizations.
  • Privacy certifications such as CIPP/E, CIPP/US, or CIPM.
  • Experience with GRC platforms and vendor management tools.

Culture & Benefits

  • Fully remote work with schedule flexibility and a monthly remote work stipend.
  • Comprehensive health, dental, and vision insurance, plus disability and life insurance.
  • Annual bonus program and professional development stipend with Coursera access.
  • 24 days PTO per year, plus wellbeing days and a year-end company shutdown.
  • 401(k) / RRSP contributions and paid parental leave.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →