> Markdown version of [/jobs/ext/2295534-director-of-privacy-compliance](https://www.wearedevelopers.com/jobs/ext/2295534-director-of-privacy-compliance). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Director of Privacy & Compliance - **Company:** Emerald Holding, Inc. - **Location:** United States (Remote available) - **Experience:** Expert - **Salary:** $120,000.0 - $135,000.0 - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Software as a Service, Cyber Security, Data Security, Data Processing, Data Management - **Published:** August 29, 2026 - **Apply:** https://ats.rippling.com/emeraldx/jobs/23276151-2083-40eb-b37b-5bb6dbcd4c69 ## About the Role Required * 8+ years of privacy, data protection, or related legal experience, with at least 3 years in a senior or lead privacy role at a global company or top-tier law firm. * Deep, hands-on expertise with GDPR and at least one other major global privacy regime (CCPA/CPRA, LGPD, PIPL, etc.). * Hands-on OneTrust experience is required - including cookie banner deployment and configuration, DSR workflow automation, assessment management (PIAs/DPIAs), and vendor risk management modules. * Track record of drafting and negotiating commercial contracts, data processing agreements, and SCCs. * Experience managing or mentoring legal professionals; comfort with hybrid IC/manager responsibilities. * Exceptional written and verbal communication skills - able to distill complex legal and technical concepts for executive and non-legal audiences. Preferred * CIPP/E, CIPP/US, CIPM, or equivalent privacy certification. * Experience with legal operations technology (CLM platforms, e-billing, matter management tools). * Background in SaaS, technology, or other data-intensive industries. * Familiarity with AI governance frameworks and emerging AI regulation * ISO27001 or SOC2 certification experience ## Description We are looking for a seasoned Director of Privacy & Compliance to serve as the company's expert on global data privacy and as a trusted partner to our business and commercial teams. Reporting directly to the Deputy General Counsel, this role is the operational owner of our end-to-end privacy program and carries shared accountability for regulatory compliance, legal operations excellence, and commercial contract support., 1. Privacy Program Ownership * Own and continuously mature the global privacy program, including program strategy, roadmap, and governance framework. * Manage the full cookie consent management lifecycle using OneTrust including cookie banner configuration, geolocation-based consent logic, template and category management. * Administer the end-to-end Data Subject Request (DSR) workflow: intake, identity verification, response orchestration, and fulfillment tracking within statutory deadlines across all applicable jurisdictions. * Lead Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs) for new products, features, third-party integrations, and high-risk processing activities; embed privacy-by-design into the product development lifecycle. * Advise on privacy considerations for AI and machine learning initiatives, including lawful basis for automated decision-making, data minimization in model training, and compliance with emerging AI regulations (EU AI Act, CCPA/GDPR AI requirements); partner with Product to embed privacy-by-design into AI development * Draft, negotiate, manage, and maintain Data Processing Agreements (DPAs), Standard Contractual Clauses (SCCs), and Binding Corporate Rules (BCRs) with vendors, partners, and customers. * Oversee and maintain the company's Records of Processing Activities (RoPA) and ensure accuracy across all business units. * Manage relationships with Data Protection Authorities (DPAs) and serve as or coordinate with the company's Data Protection Officer (DPO) as applicable. 2. Legal & Regulatory Compliance * Monitor the global privacy and data protection regulatory landscape; translate emerging requirements (new laws, guidance, enforcement actions) into actionable compliance obligations and internal policy updates. * Own privacy-related policies, notices, and internal standards - including the external Privacy Notice, Cookie Policy, and internal data handling standards - ensuring they remain accurate and audit-ready. * Partner with Information Security on data breach response plans, ensuring privacy obligations are embedded in incident response procedures. * Advise on AI/ML governance from a privacy lens, including requirements under emerging AI regulations. 3. Legal Operations Management * Directly manage the Legal Operations Manager, setting priorities, driving professional development, and ensuring operational excellence across the legal department. * Oversee legal operations functions including matter management, outside counsel management, legal spend tracking, contract lifecycle management (CLM) tooling, and legal department reporting. 4. Commercial Contract Support * Support commercial and enterprise contract negotiations particularly where privacy, data use, or data security provisions are in scope. * Review, redline, and advise on customer and vendor agreements including MSAs, SaaS agreements, NDAs, and data-related addenda. * Develop and maintain standard contract templates, playbooks, and fallback positions to accelerate deal cycles. * Act as a trusted legal partner to Sales, Procurement, and Partnerships teams on time-sensitive commercial matters. ## Related Videos - [Secure and Private AI - DeepMask](https://www.wearedevelopers.com/videos/1665-secure-and-private-ai-deepmask) - [Crypto-secure Data Management with In-Database Blockchain](https://www.wearedevelopers.com/videos/632-crypto-secure-data-management-with-in-database-blockchain) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Implementing continuous delivery in a data processing pipeline](https://www.wearedevelopers.com/videos/73-implementing-continuous-delivery-in-a-data-processing-pipeline) - [How to govern Vibe Coding for the Enterprise](https://www.wearedevelopers.com/videos/100290-how-to-govern-vibe-coding-for-the-enterprise) - [Rethinking Recruiting: What you didn’t know about Responsible AI](https://www.wearedevelopers.com/videos/1090-rethinking-recruiting-what-you-didn-t-know-about-responsible-ai) ## Related Articles - [Panel Discussion: Responsible AI in Practice - Real-World Examples and Challenges](https://www.wearedevelopers.com/magazine/488-panel-discussion-responsible-ai-in-practice-real-world-examples-and-challenges) - [Navigating the AI Shift](https://www.wearedevelopers.com/magazine/629-navigating-the-ai-shift) - [Coffee with Developers - Maria Apazoglou - Making AI understandable for all in production](https://www.wearedevelopers.com/magazine/475-coffee-with-developers-maria-apazoglou-making-ai-understandable-for-all-in-production) - [Should AI be Regulated? The Arguments For and Against](https://www.wearedevelopers.com/magazine/271-should-ai-be-regulated-the-arguments-for-and-against) - [Got AI ideas but no money? Here are 10 free ways to level up your AI skills with Google Cloud](https://www.wearedevelopers.com/magazine/600-got-ai-ideas-but-no-money-here-are-10-free-ways-to-level-up-your-ai-skills-with-google-cloud) - [Trustworthy AI Starts at Deployment: 5 Checks Before You Ship](https://www.wearedevelopers.com/magazine/753-trustworthy-ai-starts-at-deployment-5-checks-before-you-ship)