> Markdown version of [/jobs/ext/2095706-head-of-privacy](https://www.wearedevelopers.com/jobs/ext/2095706-head-of-privacy). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Head of Privacy - **Company:** Perk - **Location:** London, UK - **Experience:** Expert - **Salary:** £91,446.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Software as a Service, Cyber Security, Data Governance, Data Streaming, Privacy Controls, Large Language Models, User Administration - **Published:** August 17, 2026 - **Apply:** https://www.adzuna.co.uk/jobs/details/5844340165 ## About the Role * Has genuine curiosity about frontier model capability - you'll actively follow what's happening with LLMs, both in terms of their capabilities and risks, and have a view on where they're heading * Is comfortable working in AI tools like Claude (including building skills files and workflows) as part of their daily practice * Has a thoughtful opinion on how the practice of law will evolve - and is excited to be part of shaping that evolution rather than watching it happen * Understands (or wants to understand) the regulatory landscape around AI - including the EU AI Act and emerging global frameworks You don't need to be an engineer on day one. But you do need to arrive with curiosity, a willingness to experiment, and the conviction that AI has changed how legal teams operate. Essentials In all instances, you must be able to demonstrate: * AI fluency (as we summarise that term above). * Experience driving operational outcomes. * Exceptional storytelling capabilities, as part of an overall package of excellent communication and interpersonal skills, with the ability to communicate and collaborate effectively at all levels of our organisation. * A willingness to seek growth, in your personal and professional life. * Experience working with fast-paced engineering/product development teams. * Knowledge of global privacy, cybersecurity and AI regulations, such as GDPR, CCPA, EU AI Act, NIS2, DORA, EU Data Act, and other regional laws in those fields; it helps if you understand related frameworks and standards, such as ISO 27001, 27701, 23894 and 42001, NIST Privacy and AI Risk Management frameworks, SOC 2, and Privacy by Design (PbD) principles. On the last bullet: we are interested in your practical abilities, not how much of GDPR/ CCPA you can recite from memory. We encourage curious individuals who possess a genuine passion for learning and growth, even if they do not meet every requirement listed, to apply for this role. We firmly believe in providing opportunities for motivated individuals to expand their skills and thrive within our team. ## Description Perk is the intelligent platform for travel and spend - bringing travel bookings, events, expense management, and invoice payments together in one AI-powered platform. We serve thousands of businesses globally, from high-growth start-ups to major enterprises, and we're backed by world-class investors. We're a SaaS and AI technology scale-up, with hubs across Europe and the US. We're building a company where AI isn't just the backbone of the product - it's in how every team works. Across Perk, we use tools like Claude and Gemini to move faster, think bigger, and deliver at a scale that would be impossible without them. We rebranded from TravelPerk to Perk in March 2025 to reflect the breadth of what we've become, and what we're going to be. If you want to do the most impactful work of your career, in a team that's genuinely reimagining what in-house privacy looks like, we'd love to hear from you. What's the role? You're a leader (or a person looking to lead) with around seven years' experience developing their specialism in Privacy. Perhaps you're frustrated at your lack of autonomy? Perhaps you have radical ideas as to how a modern privacy team functions, but you don't have the platform to execute those ideas? Great: you may be what we're looking for. You will help to build and scale our customer trust program, and you'll drive our privacy operations strategy. To help Perk win, you will simplify the increasingly complex regulatory landscape of privacy, AI, cybersecurity, and data governance into outcomes that our customers can feel. You will be highly literate in (and capable of independently deploying) technology to create user-friendly automated workflows that drive innovation and maintain product development velocity, all while ensuring the best-in-class data protection standards our customers and staff expect. What will your day-to-day look like? This is a "doing" role - with a strong strategic component - where a strong bias to action is critical. It is not an abstract strategy role, and you won't be reviewed on the quality of your decks or memos. Rather: you will deliver high-impact, creative, commercial solutions to improve our privacy posture and scale our privacy program; you will collaborate with and work through teams to keep integrating privacy by design into our products; you'll also identify and manage the privacy and AI compliance risks that matter most, support key business and product choices, strengthen our culture of privacy, and help other leaders make well-informed decisions involving the responsible use of data. You will also collaborate closely with the DPO, and build trust continually with the Security, People/HR, Procurement, Product and Engineering, Data, Revenue, and Customer Care teams to ensure alignment on company initiatives involving the processing of personal data. You'll manage a team of two. What will the role entail? On taking the role, you will: * Own and evolve Perk's global privacy program, setting a risk-based strategy, roadmap, policies and controls aligned with applicable laws, regulatory expectations and customer commitments. * Contribute to Perk's global AI governance program, working closely with Builders, Security and Legal. * Advise the CLO, executive team and business leaders on material privacy risks, helping them make practical choices that protect individuals, manage compliance exposure and support Perk's commercial objectives. * Maintain an accurate view of Perk's personal data and processing activities, including the ROPA, data flows, classification, lawful bases, cross-border transfer mechanisms and subprocessor transparency. * Oversee operational privacy controls, including retention and deletion, cookies and tracking, consent and preference management, marketing compliance, privacy notices, and individual rights and complaints (DSR). * Support data governance protocols, collaborating with the Data, Engineering, and Security teams to acquire the right governance tools. * Oversee the risk-based review of new personal data processing initiatives, including PIAs/DPIAs, LIAs, AI inventory and classification, and AI risk and impact assessments. Ensure agreed mitigation actions are tracked through to completion. * Partner with Security to align on privacy requirements and coordinate the privacy workstream for personal data breaches. Work with AI governance owners on AI incidents, including assessment, escalation, notification and remediation. * Own privacy risk reporting and assurance, including the privacy risk register, audit-ready evidence, control testing and meaningful privacy metrics covering material risks, incidents, remediation, patterns, trends, and program performance. * Collaborate with Security, Engineering, and other departments to integrate privacy by design into product development, business operations, and marketing activities, and assist in the implementation and upkeep of privacy-enhancing technologies (PET). * Monitor regulatory and enforcement developments across Perk's key jurisdictions, and ensure privacy guidelines, and other knowledge resources are clear, practical, up-to-date, and aligned with the latest regulatory updates. * Create and maintain privacy products and resources, such as our Trust Center, to effectively share privacy knowledge with both internal and external customers. * Oversee the privacy tooling and automation roadmap, ensuring scalable workflows, reliable data and clear evidence. * Oversee a risk-based third-party privacy program, including due diligence, DPAs, AI-specific terms, periodic reviews of higher-risk vendors, and clear remediation and escalation routes. * Support Revenue and customer-facing teams on delivering customers' privacy expectations, due diligence and contractual commitments, helping build trust without creating disproportionate risk. Where will the role take you? This role will provide you with exceptional experience of working in a fast scaling, global tech (and specifically SaaS/ fintech) business. You will develop the tools and techniques to deliver internal privacy and AI compliance capability at scale which subverts the expectations of stakeholders regarding law (i.e. that it is bureaucracy) and drives tangible business outcomes - while also reflecting our company's values of providing seven star service, being ethical and acting responsibly in how we handle personal data. In terms of promotions, we do not expect to hire "over your head"; instead, we are looking for you to grow and scale capability in your areas of expertise. Perk will offer you as much latitude as you want in order to deliver the best possible outcomes for your customers; and micromanagement/ layers of bureaucracy are not part of that process. We are committed to equipping you with the necessary resources to establish a world-class data privacy culture. Your efforts will contribute to the growth and prominence of your professional profile as a leading expert in the privacy field. AI Fluency: What We Expect At Perk, AI isn't a nice-to-have - it's how we work. We expect every lawyer on this team to be curious, capable, and opinionated when it comes to AI. ## Related Videos - [Data Privacy in LLMs: Challenges and Best Practices](https://www.wearedevelopers.com/videos/1218-data-privacy-in-llms-challenges-and-best-practices) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Python-Based Data Streaming Pipelines Within Minutes](https://www.wearedevelopers.com/videos/1233-python-based-data-streaming-pipelines-within-minutes) - [Data Governance in the Era of AI](https://www.wearedevelopers.com/videos/1622-data-governance-in-the-era-of-ai) - [Unlocking Value from Data: The Key to Smarter Business Decisions-](https://www.wearedevelopers.com/videos/1367-unlocking-value-from-data-the-key-to-smarter-business-decisions) - [Rethinking Recruiting: What you didn’t know about Responsible AI](https://www.wearedevelopers.com/videos/1090-rethinking-recruiting-what-you-didn-t-know-about-responsible-ai) ## Related Articles - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Should AI be Regulated? The Arguments For and Against](https://www.wearedevelopers.com/magazine/271-should-ai-be-regulated-the-arguments-for-and-against) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Stephan Gillich - Bringing AI Everywhere](https://www.wearedevelopers.com/magazine/489-stephan-gillich-bringing-ai-everywhere) - [What Are Large Language Models?](https://www.wearedevelopers.com/magazine/304-what-are-large-language-models) - [How to Become an AI Engineer](https://www.wearedevelopers.com/magazine/331-how-to-become-an-ai-engineer)