Privacy Operations Program Manager
Stripe•3h ago
United StatesRemoteFull-timeMid Level5+ yrs exp
H-1B sponsor
Top focus
Program ManagerOperations Manager
- Who we are
- About Stripe
- Stripe is a financial infrastructure platform for businesses. Millions of companies—from the world's largest enterprises to the most ambitious startups—use Stripe to accept payments, grow their revenue
- accelerate new business opportunities. Our mission is to increase the GDP of the internet
- we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career.
- About the team
- The Privacy Operations team is a pivotal part of the global privacy program at Stripe. Our vision is operational excellence—a team that is proactive, streamlined
- deeply embedded in the way Stripe works. Privacy Operations is the authoritative operational hub for privacy processes, enabling high-quality privacy experiences for users and data subjects
- owning clear and auditable documentation for internal stakeholders and external regulators. We partner with Privacy Legal and Privacy Engineering to protect user data.
- What you'll do
- In this role, you'll own the programs central to how Stripe handles privacy at scale. You'll drive end-to-end management across data subject requests, privacy impact assessments, records of processing activities, transfer impact assessments
- cookie compliance, making day-to-day decisions that keep operations regulatory-ready and auditable. You'll also identify where processes can be tightened or automated
- build the documentation and tooling that make the team's work consistent and sustainable.
- You'll work as a key connector between Privacy Legal, Privacy Engineering
- cross-functional partners across the company, translating global privacy requirements into practical operations. As a primary point of contact for incoming privacy requests, you'll handle triage and routing
- build the playbooks and response libraries that allow the team to deliver high-quality, consistent privacy experiences for Stripe users and for the regulators who depend on clear, auditable records.
- Responsibilities
- Own end-to-end program management across core privacy programs such as data subject requests (DSRs), PIAs and DPIAs, records of processing activities (ROPA), transfer impact assessments (TIAs)
- cookie compliance, making day-to-day operational decisions, enforcing processes to ensure regulatory readiness
- measuring compliance at scale
- Identify and implement process improvements, including leveraging AI tooling to automate routine tasks, developing structured workflows to sustain quality standards
- maintaining accurate, auditable program records including playbooks and process documentation
- Create and maintain clear, auditable privacy documentation, including privacy assessments, program playbooks, and customer response libraries, to provide scalable, consistent privacy operational support
- Work with Privacy Legal and Privacy Engineering to fulfill user requests, build and deepen expertise on global privacy and data-protection requirements
- escalate novel or complex requests with appropriate context and documentation
- Rotate through the team's weekly runner model as the primary point of contact for incoming privacy requests, routing across intake channels and managing Jira run tickets
- Who you are
- We're looking for someone who meets the minimum requirements to be considered for the role. If you meet these requirements, you are encouraged to apply. The preferred qualifications are a bonus, not a requirement.
- Minimum requirements
- 5+ years of demonstrated privacy program management and a proven track record of operationalizing and scaling cross-functional organization-wide programs from the ground up
- Excellent collaboration, communication, and relationship-building skills, and the ability to convey complex ideas succinctly to all audiences
- Demonstrated experience with privacy legislation such as GDPR, CCPA, LGPD, and PIPEDA. Experience with US state legislation, HIPAA, and GLBA is a plus.
- Hands-on experience with privacy impact assessments (PIAs and DPIAs), data subject request workflows, records of processing activities (ROPA), or other core privacy program operations
- Ability to analyze complex problems to identify root causes and trends, and to document complex narratives in a simplified way that others can use
- Curious and self-motivated with a strong affinity for vision setting, strategic problem solving, and driving outcomes
- Experienced in juggling multiple projects in a fast-paced, high-growth environment, with tight timelines and shifting priorities
- A team player, willing to pitch in where needed
- Preferred qualifications
- Experience in fast-paced, high-growth environments. Previous tech industry experience is a plus.
- Demonstrated experience using AI to accelerate day-to-day privacy operations work
- Experience with third-party risk management, RFP and DDQ response processes, or cross-border transfer assessments
- Privacy certification such as CIPP/E, CIPP/US, or CIPM is a plus
Required skills
privacy program managementGDPRCCPALGPDPIPEDAHIPAAGLBAprivacy impact assessmentsdata subject requestsrecords of processing activities