NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Data Privacy Officer in United States of America
4 days ago
Apply with autofill
Apply with autofill
Toast·Fintech·4 days ago
4 days ago

Senior Privacy Program Manager

Boston, United States of AmericaRemoteMid · 5+ yearsData Privacy Officer

Sign up free to see how well your resume matches this role.

Boost your chances at Toast

How you compare FREE

?
Your scoreYour score: not yet known
→
26
Top 10%Top 10%: 26 out of 100

Top 10% of NextRaise users matched against Data Privacy Officer roles in United States.

Must-have skills for this role

  • privacy program management
  • gdpr
  • ccpa
  • pipeda

PDF or DOCX · no account needed

Apply faster with autofill FREEToast uses Greenhouse - autofill it instead of retyping.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Global Privacy Program Management: Develop and maintain Toast's global privacy program, ensuring compliance with laws and best practices across the US, Canada, Europe, the UK, and other countries where Toast operates.
  • DPA Enablement: Help triage our Procurement queue and provide a first pass assessment of privacy risk and vendor stance against our standard DPA using pre-defined risk thresholds and protocols in conjunction with LLMs.
  • Privacy Rights: Continue to mature our privacy rights process and program, including driving efforts to further automate how requests are processed alongside our vendor, Ethyca, and internal business teams and developing SOPs for use in responding to privacy rights requests.
  • Privacy Reviews: Maintain our existing Jira queue for privacy review requests and oversee and improve on automation to generate a first pass privacy assessment that attorneys can then refine/finalize. Work with business/product teams to implement mitigations identified during such privacy reviews.
  • Operational Compliance & Risk Mitigation: Translate privacy requirements into actionable processes, develop and supplement privacy FAQs for different domains, manage privacy risk registers, and conduct Data Protection Impact Assessments (DPIAs) in collaboration with cross-functional teams.
  • Training & Awareness & Data Governance: Develop and deliver privacy training programs, and collaborate on data governance frameworks for data classification and lifecycle management.
  • Metrics & Reporting: Establish and track key performance indicators (KPIs) to measure program effectiveness and provide regular reports to leadership. Maintain and update the Privacy team’s Confluence page to serve as an internal resource to other teams.

What they're looking for

  • Typically requires a minimum of 12 years of related experience with a Bachelor’s degree or 8 years and a Master’s degree. Privacy certifications (CIPP/E, CIPP/US, CIPM, etc.) are preferred but not mandatory.
  • 5+ years of relevant privacy experience. SaaS or tech industry experience preferred.
  • Comprehensive knowledge of global privacy laws (GDPR, CCPA, PIPEDA, etc.), and the ability to apply them practically in a business setting.
  • A willingness to roll up your sleeves and help the team achieve its objectives without being overly concerned about the precise scope of your role. We are an outcome oriented team that likes to lean in to get things across the line in a collaborative manner (while still having fun along the way!).
  • Ability to collaborate with technical teams on data flows, architectures, and system design
  • Strong project management skills, with the capacity to align privacy initiatives with business goals and manage multiple priorities.
  • Excellent communication and interpersonal skills, with the ability to simplify complex concepts, and strong analytical and problem-solving skills with attention to detail.
  • A working knowledge of AI tools such as Claude, Gemini etc. and a willingness to use AI solutions for privacy program management.

Nice to have

  • Privacy certifications (CIPP/E, CIPP/US, CIPM, etc.)
  • SaaS or tech industry experience

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

Toast is driven by building the all-in-one restaurant platform that helps restaurants operate their business, increase sales, engage guests, and keep employees happy. We’re seeking an experienced Senior Privacy Program Manager to join Toast’s Legal & Compliance team who will play a pivotal role in shaping and maintaining a world-class privacy program. We are heavily leaned into AI automation efforts, and this is an exciting opportunity to help grow the program leveraging automation and LLMs.

As part of the dynamic and collaborative Privacy team, you will lead efforts to operationalize privacy requirements across our global operations. This is an opportunity to work on challenging and meaningful projects that make a difference in how we safeguard data and uphold privacy principles within the products and services we offer (both B2B and B2C).

Our Legal & Compliance teams are primarily concentrated in Boston, New York, Washington D.C., San Francisco, and Chicago. Candidates residing in these areas will be prioritized, as they will benefit from closer proximity to colleagues and greater access to company resources and events.

 

A day in the life (Responsibilities) 

  • Global Privacy Program Management: Develop and maintain Toast's global privacy program, ensuring compliance with laws and best practices across the US, Canada, Europe, the UK, and other countries where Toast operates.
  • DPA Enablement: Help triage our Procurement queue and provide a first pass assessment of privacy risk and vendor stance against our standard DPA using pre-defined risk thresholds and protocols in conjunction with LLMs.
  • Privacy Rights: Continue to mature our privacy rights process and program, including driving efforts to further automate how requests are processed alongside our vendor, Ethyca, and internal business teams and developing SOPs for use in responding to privacy rights requests.
  • Privacy Reviews: Maintain our existing Jira queue for privacy review requests and oversee and improve on automation to generate a first pass privacy assessment that attorneys can  then refine/finalize. Work with business/product teams to implement mitigations identified during such privacy reviews.
  • Operational Compliance & Risk Mitigation: Translate privacy requirements into actionable processes, develop and supplement privacy FAQs for different domains,  manage privacy risk registers, and conduct Data Protection Impact Assessments (DPIAs) in collaboration with cross-functional teams.
  • Training & Awareness & Data Governance: Develop and deliver privacy training programs, and collaborate on data governance frameworks for data classification and lifecycle management.
  • Metrics & Reporting: Establish and track key performance indicators (KPIs) to measure program effectiveness and provide regular reports to leadership. Maintain and update the Privacy team’s Confluence page to serve as an internal resource to other teams.

 

What you'll need to thrive (Requirements)

  • Typically requires a minimum of 12 years of related experience with a Bachelor’s degree or 8 years and a Master’s degree. Privacy certifications (CIPP/E, CIPP/US, CIPM, etc.) are preferred but not mandatory.
  • 5+ years of relevant privacy experience. SaaS or tech industry experience preferred.
  • Comprehensive knowledge of global privacy laws (GDPR, CCPA, PIPEDA, etc.), and the ability to apply them practically in a business setting.
  • A willingness to roll up your sleeves and help the team achieve its objectives without being overly concerned about the precise scope of your role. We are an outcome oriented team that likes to lean in to get things across the line in a collaborative manner (while still having fun along the way!).
  • Ability to collaborate with technical teams on data flows, architectures, and system design
  • Strong project management skills, with the capacity to align privacy initiatives with business goals and manage multiple priorities.
  • Excellent communication and interpersonal skills, with the ability to simplify complex concepts, and strong analytical and problem-solving skills with attention to detail.
  • A working knowledge of AI tools such as Claude, Gemini etc. and a willingness to use AI solutions for privacy program management.

 

AI at Toast

At Toast, one of our company values is that we're hungry to build and learn. We believe learning new AI tools empowers us to build for our customers faster, more independently, and with higher quality. We provide these tools across all disciplines, from Engineering and Product to Sales and Support, and are inspired by how our Toasters are already driving real value with them. The people who thrive here are those who embrace changes that let us build more for our customers; it’s a core part of our culture.


Our Total Rewards Philosophy

We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters’ changing needs. Learn more about our benefits at https://careers.toasttab.com/toast-benefits.

 

#LI-DNI

The base salary range for this role is listed below. The starting salary will be determined based on skills, experience, and geographic location. In addition to base salary, our total rewards components include cash compensation (overtime, bonus/commissions if eligible), equity, and benefits. You can learn more about how we align pay with local labor markets in our Geographic Pay Zone Philosophy.

Zone A
$183,000—$293,000 USD
Zone B
$159,000—$254,000 USD
Zone C
$143,000—$229,000 USD

How Toast Uses AI in its Hiring Process

Throughout the hiring process, our goal is to get to know you. We use AI tools to support our recruiters and interviewers with tasks like note-taking, summarization, and documentation of interviews to ensure they can be fully focused on your conversation. All hiring decisions are made by people. We ask that you complete interviews and assessments on your own, without real-time AI tools, recording, or transcription bots, unless we tell you otherwise in advance. To learn more: https://careers.toasttab.com/ai-in-hiring

Our Approach to Hybrid Working

We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the hospitality community, regardless of location. Please visit the Locations page on our career site to learn more about our in-office expectations by region: https://careers.toasttab.com/locations-toast

People Are the Secret Ingredient in Our Recipe for Success

At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry brings together people with a wide range of backgrounds, experiences, and perspectives, and we value that same breadth at Toast. We strive to build a culture grounded in authenticity, respect, and humility, where every Toaster has a real opportunity to grow, contribute, and do their best work—raising the bar in delivering exceptional experiences for our customers and each other.

Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

------

For roles in the United States, it is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Fintech

Company

ToastFintech
Boston, United States of America

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Toast's careers site·first seen 16 Sept 2026·last verified 16 Sept 2026·How we source jobs

Similar jobs

  • Senior Infrastructure Engineer - Data Protection at usaaSan Antonio Home Office I, United States of America–match not yet calculated
  • Infrastructure Engineer I - Data Protection at usaaSan Antonio Home Office I, United States of America–match not yet calculated
  • Privacy Analyst at publicpartnershipsNew York, United States of America–match not yet calculated
  • Senior Privacy Counsel at AbridgeSF Office, United States of America–match not yet calculated
  • Sr Manager, Ads Privacy at PayPalSan Jose, United States of America–match not yet calculated

Browse more jobs

  • Data Privacy Officer jobs in United States
  • Compliance Manager jobs in United States
  • Company Secretary jobs in United States
  • Compliance Specialist jobs in United States
  • Data Privacy Officer jobs in United Kingdom
  • Data Privacy Officer jobs in India