Privacy Program Manager
Job description
About the role
Join the Legal and Compliance team to scale privacy operations for the combined Coursera and Udemy organization. You will translate complex regulatory requirements into functional technical controls and workflows that support our global product and business initiatives. In this capacity, you will act as the central privacy expert, interfacing between legal guidance and operational teams to ensure consistent execution. The role requires ownership of end to end privacy program activities from risk assessment to policy deployment and ongoing monitoring. You will drive initiatives that embed privacy into product development and business partnerships while maintaining a strong focus on regulatory alignment. Success in this position will be measured by the robustness of privacy controls, the efficiency of request handling, and the reduction of compliance risk across markets. You will contribute to building a privacy culture that supports trust with learners, customers, and partners globally.
Key facts
What you'll do
- Oversee core privacy operations including the execution of data protection impact assessments, maintenance of records of processing activities, and execution of vendor privacy audits.
- Design and refine procedures for receiving, verifying, and fulfilling data subject rights requests and general privacy inquiries while collaborating closely with Engineering and Support teams.
- Lead privacy reviews for new features, products, and business partnerships to ensure privacy by design principles are applied consistently.
- Develop, standardize, and maintain internal privacy documentation, training materials, and self-service resources to improve team understanding and compliance.
- Monitor global regulatory changes and update operational controls, policies, and workflows to sustain compliance with evolving legal requirements.
- Compile and report on privacy program metrics, providing insights that support decisions on data retention, incident response, and cross border data transfers.
- Coordinate with security, product, and legal stakeholders to address privacy risks and to implement controls that reduce organizational exposure.
- Serve as a point of contact for privacy related inquiries from internal and external stakeholders, ensuring responses are accurate and aligned with policy.
- Drive the administration of privacy management platforms, ensuring data integrity, process adherence, and continuous improvement of workflows.
- Partner with procurement and legal teams on vendor due diligence and contract reviews to embed privacy requirements and data protection clauses.
- Establish and manage privacy dashboards and operational key performance indicators to track program effectiveness and identify trends.
- Support the planning and execution of incident response activities, including documentation, assessment of regulatory notification requirements, and coordination with relevant stakeholders.
Requirements
- Bring a minimum of 5 years of professional experience in data protection, privacy, or compliance program management within complex organizational environments.
- Demonstrate proven expertise with the General Data Protection Regulation and at least one U.S. state privacy law such as the California Consumer Privacy Act within a multinational company context.
- Show a strong track record of translating legal requirements into operational policies, technical controls, and business processes that are practical and enforceable.
- Possess direct hands on experience with data protection impact assessments, records of processing activities, vendor due diligence, and contractual privacy reviews.
- Have hands on experience administering privacy management platforms such as OneTrust or TrustArc, including configuration, data entry, and report generation.
- Hold a Bachelor degree or equivalent professional experience combined with a relevant privacy or information security certification such as CIPP, CIPM, or CIPT.
- Exhibit strong analytical, problem solving, and communication skills necessary to navigate ambiguity and manage multiple priorities in a fast paced setting.
- Demonstrate the ability to work independently and collaboratively, managing workload and deadlines across competing demands.
- Show commitment to continuous learning, adapting to new regulations, technologies, and privacy enhancing practices.
- Maintain professionalism and discretion when handling sensitive information and privacy related issues.
Nice to have
- Bring a background in SaaS, online education, or technology sectors, with an understanding of the associated privacy challenges and business models.
- Have experience supporting privacy programs for machine learning or artificial intelligence products and related data governance issues.
- Show familiarity with privacy frameworks and regulatory developments in Latin American or Asia Pacific regions.
- Demonstrate experience building privacy dashboards and defining operational key performance indicators that drive program improvements.
- Possess a law degree or equivalent legal training with knowledge of privacy law and regulatory practice.
Practical notes
- Employment is full time.
- The salary range for this position in Canada is CAD 78,400 to CAD 98,000.
- Compensation may include variable pay, equity, and a comprehensive benefits package.
- Applications must be submitted through the official Coursera careers page; only applications received via this channel will be considered.
- Coursera is an Equal Opportunity Employer, and accommodation requests may be directed to recruiting@coursera.org.
Skills & tools
- Privacy management software such as OneTrust or TrustArc.
- GDPR and CCPA compliance frameworks and related regulatory requirements.
- Privacy by design methodologies integrated into product and business processes.
- Data protection impact assessments to evaluate risks and recommend mitigations.
- Records of processing activities to maintain accurate and up to date documentation.