Senior Privacy Engineer
AsanaRemote2d ago
Engineeringremotecurated-jd
Job description
Senior Privacy Engineer at Asana
About the role
Join Asana's Security team to build foundational privacy safeguards for our products and users. As a key member of the new Privacy Engineering team, you will integrate privacy considerations into our development process from the start, bridging legal, regulatory, and technical aspects. This role reports to Asana's Head of Global Privacy, Data Protection, and Compliance.
Key facts
What you'll do
- Conduct technical reviews of new features and system changes to embed privacy controls early in development.
- Translate global privacy regulations, like GDPR and CCPA, into engineering standards and tools.
- Assess and address privacy risks within AI and machine learning systems, including data pipelines and model outputs.
- Develop and maintain systems for user data rights and privacy-enhancing technologies, such as data minimization and de-identification.
- Perform privacy impact assessments and threat modeling for sensitive data processing activities.
- Advise on privacy-preserving solutions and contribute to improving the company's overall privacy posture.
- Collaborate with cross-functional teams to ensure privacy policies align with technical implementations.
- Create customer-facing trust documentation and support privacy incident response.
- Design and implement privacy-preserving analytics and measurement systems.
Requirements
- 6+ years of software engineering experience, with at least 3 years focused on privacy or data protection.
- Deep understanding of privacy principles and global regulations such as GDPR and CCPA.
- Proven experience building technical controls for data governance, including classification, lineage, retention, and deletion.
- Familiarity with privacy risks in ML systems, including training data, model memorization, and inference privacy.
- Hands-on experience applying privacy-by-design principles throughout the product development lifecycle.
- Ability to translate complex legal and regulatory requirements into clear engineering specifications.
- Experience with cryptographic techniques, anonymization, and de-identification frameworks.
- Strong communication and collaboration skills, with a history of working effectively with legal, policy, and non-technical stakeholders.
- Curiosity about AI tools and emerging technologies, with a willingness to learn and apply them.
Nice to have
- None specified.
Skills & tools
- Software Engineering
- Privacy Engineering
- Data Protection
- GDPR
- CCPA
- AI/ML Privacy
- Cryptography
- Anonymization
- De-identification
- Data Governance
- Privacy-by-Design
Practical notes
- This role is eligible for remote work within the US or hybrid work in our San Francisco office.
- For hybrid roles, in-office days are typically Monday, Tuesday, and Thursday, with flexibility for Wednesday and Friday based on work type and team collaboration.
- The estimated base salary range for this role in the US is:
- Zone A: $235,000 - $267,000
- Zone B: $211,000 - $240,000
- Zone C: $189,000 - $216,000
- Actual salary will depend on location and individual qualifications.
- Compensation may also include equity and benefits.
- Asana encourages applications from candidates with diverse backgrounds and experiences. If you don't meet every requirement, you are still encouraged to apply.