Hybrid Privacy Operations Manager

Posted 1 hour ago

Apply now

About the role

  • Privacy Operations Manager leading privacy engineering and operations initiatives for Tenneco. Ensures compliance and governance in global privacy frameworks and standards.

Responsibilities

  • Serve as the SME and day-to-day lead for privacy engineering and operations, embedding privacy by design and default across products, services, and processes.
  • Lead and continuously improve the lifecycle of DPIAs, PIAs, LIAs, ROPAs, data mapping, and AI/automated decision-making risk assessments—ensuring completeness, accuracy, and timely closure of risks and actions.
  • Define and maintain privacy requirements, standards, and technical guardrails in partnership with Enterprise Architecture, Information Security, and Legal.
  • Represent Privacy on technical design/review boards; influence architectural decisions to ensure compliant, scalable solutions.
  • Directly administer, configure and plan roadmap for privacy platforms and tools (e.g., assessment workflows, consent and preference management, data mapping/ROPAs, vendor risk, cookie/tracking governance).
  • Drive automation of privacy controls and workflows (e.g., templates, playbooks, SLAs, integrations, APIs, Power Automate) to reduce cycle time and improve quality.
  • Establish and maintain data quality checks, dashboards, control matrices (e.g., RACI, requirements-to-controls traceability), and audit-ready evidence repositories.
  • Perform technical and data protection reviews of systems, applications, data pipelines, analytics/AI use cases, and vendors to identify privacy risks and required controls.
  • Design pragmatic remediation plans and partner with control owners to track mitigation to closure.
  • Own the end-to-end DSR process (intake, identity verification, scoping, fulfillment, communications, and retention of evidence) across global jurisdictions.
  • Engineer repeatable, scalable fulfillment processes leveraging automation, role-based access, and clear SLAs.
  • Measure and report DSR performance; drive elimination of root causes that generate avoidable requests.
  • Monitor privacy control effectiveness; identify gaps and manage remediation to closure.
  • Support privacy incident response and breach preparedness activities, including tabletop exercises and after-action reviews.
  • Ensure vendor/privacy due diligence is performed and aligned with contractual and regulatory requirements.
  • Define and publish KPIs/KRIs and dashboards (e.g., assessment cycle time, SLA adherence, risk backlog burn-down, DSR throughput, audit findings) for leadership visibility.

Requirements

  • Bachelor’s degree in Computer Science, Software Engineering, Data Protection/Privacy, Cybersecurity, Regulatory Compliance, or a related field (advanced degree or JD highly desirable)
  • 8+ years of progressive experience in privacy operations, privacy engineering, or closely related domains within a multinational environment
  • Demonstrated expert-level execution of DPIAs, PIAs, LIAs, ROPAs, data mapping, vendor/privacy due diligence, consent and preference management, and cookie/tracking governance
  • Hands-on experience operationalizing global privacy regulations (e.g., GDPR, CCPA/CPRA, LGPD, PIPL, PDPA) and aligning with frameworks/standards (e.g., ISO 27001, ISO 27701, ISO 42001, NIST CSF, PCI DSS, SOX, TISAX)
  • Proficiency collaborating with Enterprise Architecture and Information Security to embed privacy controls into system designs, APIs, data pipelines, analytics, and AI/ML use cases
  • Proven ability to lead complex, cross-functional programs with minimal supervision; excels in rapidly changing environments while maintaining quality and compliance
  • Good written and verbal communication skills with ability to translate technical concepts for business audiences and present credibly in technical forums
  • Experience administering or integrating privacy/GRC platforms
  • Advanced Microsoft skills (Excel, PowerPoint, Power BI); ability to build dashboards, operational workflows and executive-ready materials using Microsoft suite of tools
  • At least one privacy certification required: CIPP (E/US or other regional), CIPT, CIPM, CDPSE; security certifications (CISM, CISSP) are a plus.

Benefits

  • Competitive salary
  • Remote arrangements may be considered
  • Professional development opportunities

Job title

Privacy Operations Manager

Job type

Experience level

SeniorLead

Salary

Not specified

Degree requirement

Bachelor's Degree

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job