Privacy Program Manager
Job Overview:
Legal and Compliance manages all legal and regulatory matters, including privacy, contracts, corporate governance, compliance, employment law, intellectual property, government relations, and claims, while supporting Coursera's and Udemy's platforms and partnerships. The Privacy Program Manager is responsible for operationalizing and scaling the company's global privacy program across products, platforms, and business functions. Working closely with Legal, Security, Engineering, Product, Marketing, and other cross-functional partners, this role translates privacy and data protection requirements into scalable operational processes, governance, and technical controls that embed privacy by design across the organization. The role owns core privacy operations, including privacy impact assessments, records of processing activities, vendor privacy reviews, and data subject rights requests, while driving automation, self-service capabilities, and continuous improvement to enable the business to meet privacy obligations efficiently at scale.
Responsibilities:
Lead and continuously improve core privacy program operations, including privacy impact assessments (DPIAs), records of processing activities (ROPAs), vendor privacy reviews, and privacy compliance workflows, using privacy management tools and workflow automation where appropriate.
Design, implement, and manage scalable processes for data subject rights requests and general privacy inquiries, partnering with Engineering and Support teams to improve efficiency while meeting regulatory deadlines.
Partner with Product, Engineering, Security, Legal, Marketing, Procurement, and other stakeholders to conduct privacy reviews for new products, features, vendors, and business initiatives, embedding privacy by design into business processes.
Develop and maintain privacy policies, standards, operational guidance, training, records, and self-service resources that enable teams to manage routine privacy obligations independently, with clear escalation paths where appropriate.
Monitor changes in global privacy laws and regulations, translating legal requirements into practical operational processes, controls, and guidance.
Define and report on privacy program metrics, identify opportunities to improve operational efficiency, and support initiatives related to incident response, data retention, cross-border data transfers, and broader privacy governance.
Qualifications:
5+ years of experience in privacy, data protection, compliance, or a related program management function.
Demonstrated experience supporting a privacy program subject to the General Data Protection Regulation (GDPR) and one or more U.S. state privacy laws, such as the California Consumer Privacy Act (CCPA), within a multinational or complex organization.
Demonstrated experience translating privacy and data protection requirements, including GDPR and CCPA, into operational processes, policies, controls, guidance, or technical requirements in partnership with Legal, Engineering, Product, and Security teams.
Experience conducting operational privacy activities, including DPIAs, maintaining ROPAs, managing data subject rights requests, vendor privacy reviews, privacy due diligence, and privacy contract reviews.
Experience implementing, administering, or optimizing a privacy management platform (such as OneTrust, TrustArc, or a comparable solution) to support privacy operations, workflow automation, and program governance.
Bachelor's degree (or equivalent practical experience) and a Certified Information Privacy Professional (CIPP), Certified Information Privacy Manager (CIPM), Certified Information Privacy Technologist (CIPT), or equivalent privacy certification.
Nice to haves:
Experience working in a technology, software-as-a-service (SaaS), or online education environment.
Experience supporting privacy programs for artificial intelligence (AI) or machine learning products.
Experience supporting compliance with additional global privacy laws, including APAC and Latin American privacy frameworks.
Experience defining and reporting operational metrics, KPIs, or dashboards for privacy programs.
Law degree or equivalent legal training.
Coursera offers competitive pay and fair compensation practices across all regions. Job titles may span multiple career levels, and the targeted hiring base salary range for this role in Canada is CAD 78,400 to CAD 98,000. Actual compensation will depend on factors such as experience, education, transferable skills, business needs, and location. This range may be adjusted over time and may include eligibility for variable pay, equity, and comprehensive benefits.
Keep Learning
If this opportunity interests you, you might like these courses on Coursera:
Privacy Law and Data Protection
Data Privacy, Security, Governance, Risk, and Compliance
For more information about how Coursera collects and uses your personal information, please see our Global Applicant Privacy Notice.