This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Sr. Staff Engineer, Data Security and Privacy, you will play a critical role in designing, building, and scaling the systems, processes, and controls that protect the company and our users’ data and ensure trust in our products. Working as part of the Information Security team, you will partner closely with Engineering, Legal, and cross-functional stakeholders to embed privacy-by-design principles into our infrastructure and translate regulatory requirements into scalable technical solutions. This is a hands-on role for a senior individual contributor who thrives at the intersection of security, privacy, and data infrastructure. You will shape how we discover, classify, and protect information, lead privacy risk mitigation efforts, and help evolve our data security capabilities as the company grows.
Job Responsibility:
Partner with Engineering, Legal, Product, IT, and other cross-functional stakeholders to design and embed privacy and data protection principles across the entire organization
Partner with Stakeholders to translate legal and regulatory obligations into actionable technical requirements, policies, and controls
Develop privacy-enhancing capabilities such as data minimisation, anonymisation, and access-control frameworks that scale with our infrastructure
Design and implement data classification and handling frameworks to provide appropriate protection throughout the data lifecycle
Build and maintain comprehensive data inventories and data flow maps
Collaborate with Engineering teams to apply appropriate controls at every point in the data pipeline
Conduct technical risk assessments of internal and third party systems and applications
Contribute to Data Protection Impact Assessments (DPIAs)
Partner with Legal to transform evolving regulatory frameworks into secure, scalable engineering solutions
Lead and coordinate the company’s technical response to data breaches or security incidents
Design and implement processes and tooling to detect, investigate, and remediate Incidents
Partner with Stakeholders to design and implement automated workflows and tools to streamline privacy operations
Deploy and manage data loss prevention (DLP) capabilities
Implement continuous auditing, monitoring, and alerting
Act as a trusted advisor to Stakeholders on the technical implementation of privacy and security controls
Provide strategic input on product design decisions and architectural choices
Partner with cross functional teams to develop and execute vendor risk assessments
Collaborate with Legal on technical aspects of contractual reviews
Contribute to the development of internal policies, standards, and procedures
Requirements:
10+ years of hands-on experience in information security, privacy engineering, or related roles
Strong understanding of global data protection laws and regulations (e.g. GDPR, CCPA) and their technical implications
Proven experience in incident response, data protection engineering, and risk assessments
Familiarity with data classification, mapping, and governance methodologies
Experience with DLP technologies and implementing privacy workflows and automation
Familiarity with workflow automation tools and ticketing systems (e.g. Jira, ServiceNow)
Strong analytical, problem-solving, and communication skills, with the ability to work effectively across cross-functional teams
Nice to have:
Experience in using third party privacy automation tooling is a plus
Industry certifications (e.g. CISSP, CISA, CISM) are a plus