About This Role
Strava is the leading digital community for active people with more than 120 million athletes, in more than 190 countries.
The platform offers a holistic view of your active lifestyle, no matter where you live, which sport you love and / or what device you use.
Everyone belongs on Strava when they are pursuing an active life.
We're looking for an experienced Manager, Privacy & Data Protection to join the Strava Legal team! You’ll work hand-in-hand with stakeholders in Legal and across the company to architect and implement compliance with data protection laws and privacy regulations that protect Strava’s community of athletes, partners, and employees.
This role is based in our San Francisco office with a hybrid in-office work requirement of at least 3 days per week.
For more information on compensation and benefits, please click here.
You’re excited about this opportunity because you will :
- Drive the design, maintenance, and improvement of Stava’s global privacy and data protection program
- Identify strategic priorities by keeping up with emerging legislation, current trends, and best practices related to privacy, data protection, and compliance
- Manage internal processes for privacy and data protection-related inquiries, incidents, initiatives, and activities
- Develop and maintain risk registers, impact assessments, vendor questionnaires, records of processing activities, and similar global privacy initiatives
- Review Data Processing Agreements and work cross-functionally with internal stakeholders on privacy and data protection matters
- Spearhead technology-based solutions to drive efficiencies for privacy operations
- Support privacy training and awareness efforts across the company, including identifying ways to embed data protection and privacy-by-design into Strava’s products and services
You will be successful here by :
- Having a fierce passion for privacy and data protection.
- Relentlessly focusing on attention to detail
- Thriving in ambiguity and excelling at risk-based analysis
- Working cross-functionally with senior executive leaders to drive change
- Understanding that nothing is somebody else’s problem
We’re excited about you because :
- You can distill complex regulatory requirements into actionable advice for cross-functional teams
- You have 8+ years of privacy and data protection experience
- You have deep knowledge of global data privacy frameworks, including GDPR, CCPA, and COPPA
- You have in-house experience at a multinational, consumer-facing technology company
- You have a CIPP, CIPM, or related certification