Privacy Counsel

Stripe Logo

Stripe

๐Ÿ“Remote - United States

Summary

Join Stripe's Privacy Legal team and tackle complex privacy issues at the intersection of cutting-edge technology. You will partner with cross-functional teams to assess privacy and security risks, develop and implement privacy infrastructure and policies, and manage privacy compliance functions. Responsibilities include overseeing data protection impact assessments, responding to data subject access requests, and managing privacy and security incidents. You will also support commercial transactions by negotiating and drafting data processing agreements. This role requires a J.D. degree, at least 6 years of experience as a privacy lawyer, and a robust understanding of the tech environment. The ideal candidate will be a skilled negotiator and team player with strong communication and project management skills.

Requirements

  • J.D. degree (or foreign equivalent) with membership in at least one US state bar
  • Minimum of 6 years of experience as a privacy lawyer, with extensive knowledge of global privacy laws and regulations, including GDPR, CCPA, and GLBA
  • A robust understanding of tech environment and a demonstrated ability to converse with software engineers in depth about the ways Stripe collects and processes data
  • Experience managing data security incidents and familiarity with data breach notification requirements
  • Proficiency in negotiating and drafting complex contracts involving privacy and security
  • Strong organization and project management skills with the ability to work well on both long and short-term projects
  • Excellent written and oral communication skills

Responsibilities

  • Partner closely with cross-functional teams (e.g., Product, Engineering, Security, Data Science, GTM) to assess potential privacy and security risks for Stripe's products and operational processes and design mitigative measures
  • Develop, enhance, and implement Stripe's privacy infrastructure, policies, and procedures to effectively scale privacy throughout the organization and embed privacy-by-design principles in Stripe's product development lifecycle and operational processes
  • Oversee and manage privacy compliance functions, including Stripe's processes for conducting Data Protection Impact Assessments (DPIAs), responding to Data Subject Access Requests (DSARs), and maintaining Records of Processing Activities (ROPAs) to ensure compliance with applicable privacy regulations
  • Manage and coordinate the response to privacy and security incidents, collaborating closely with cross-functional teams to assess and mitigate risks, ensure compliance with data breach notification requirements, and develop and implement effective resolution strategies
  • Support commercial transactions by negotiating and drafting Data Processing Agreements (DPAs) and other privacy-related contractual provisions, ensuring compliance with applicable data protection laws while facilitating business objectives
  • Help build Stripeโ€™s compliance program for AI and ML

Preferred Qualifications

  • The ability to make prudent judgment calls in ambiguous situations that balance data protection needs with Stripeโ€™s business interests
  • The ability to drive consensus among cross-functional stakeholders and ensure successful implementation of decisions
  • Proactive, hands-on attitude with a sense of urgency and ability to maintain a positive outlook with a sense of humor
  • A skilled advisor and negotiator who can actively work with the business and commercial teams to engineer pragmatic solutions
  • A team player who is willing to pitch in where needed in a fast-paced, growing company
  • An exceptionally hard worker, capable of getting things done as well as strong interpersonal and people management skills

Share this job:

Disclaimer: Please check that the job is real before you apply. Applying might take you to another website that we don't own. Please be aware that any actions taken during the application process are solely your responsibility, and we bear no responsibility for any outcomes.

Similar Remote Jobs