Manager, Privacy Engineering jobs in United States
cer-icon
Apply on Employer Site
company-logo

Lumin Digital · 1 month ago

Manager, Privacy Engineering

Lumin Digital is a trailblazer in digital banking solutions, empowering credit unions and banks with innovative technology. The Manager, Privacy Engineering will lead teams to enhance data privacy programs and ensure compliance with privacy standards while collaborating with cross-functional teams to manage risks and monitor program performance.

Financial ServicesFinTechSaaSSoftware
check
Growth Opportunities

Responsibilities

Review privacy frameworks, standards, and guidelines as well as regulatory, industry, and business compliance requirements as decided by the company’s Data Privacy Officer(DPO) to identify, plan, design, and enhance risk treatments in conjunction with risk, legal, and security team members
Maintain accurate inventories of the company’s systems and controls in a GRC platform and complete weekly reviews to monitor and report on the effectiveness and maturity of risk management and data privacy programs
Support internal and external auditors in reviewing the suitability of design and operating effectiveness of data privacy program controls by serving as the primary point of contact for ERM for audit planning, execution, and reporting
Design and implement risk and privacy program metrics that accurately reflect program performance and enable data-driven decision-making
Produce executive and operational reporting on the performance of the privacy program, including conformance to privacy frameworks, data privacy standards, and industry best practices
Serve as the vendor owner for privacy-related vendors, including maintaining due diligence documentation, completing ongoing oversight tasks, and monitoring performance to ensure alignment with program requirements and expectations
Provide sprint, project, and architectural guidance to the privacy engineering team
Produce and deliver job-specific education and training to staff on emerging privacy threats and privacy-enhancing technologies
Collaborate with risk analysts, product managers, and legal representatives to establish and critically monitor risk treatment plans relevant to consumer privacy and data protection risks
Evaluate developments in the industry, advise the Chief Risk Officer and DPO on upcoming changes, and analyze gaps to maintain compliance as requirements evolve
Present an overview of the data privacy program to prospective clients remotely
Support responses to data subject access requests (DSARs) by coordinating responses across departments as required
Complete and update internal program documentation, including client due diligence repositories, responses to industry questionnaires, and responses to individual client privacy program questions received through RFPs and requested as part of clients’ ongoing due diligence of Lumin Digital
Perform other duties as assigned
Set clear expectations, offer direction, and ensure alignment with organizational goals while fostering a supportive environment that encourages collaboration, accountability, and growth
Coach, mentor, and provide training opportunities to build team members’ skills, promote internal growth, and prepare staff for future roles and responsibilities
Manage hiring, onboarding, performance evaluations, promotions, compensation, and terminations, ensuring fair, consistent, and compliant application of policies and procedures
Assess team performance regularly, address gaps, and ensure duties are completed efficiently and effectively in alignment with department and organizational objectives

Qualification

Data privacy managementRisk managementCompliance frameworksData inventory managementCIPP/US certificationGDPR complianceNIST Privacy FrameworkCuriosityCommunication skillsInterpersonal skills

Required

Bachelor's Degree in Management Information Systems, Information Assurance, or related field; or equivalent self-study in compliance or audit with demonstrated command of key concepts and technologies and proficiencies in technology risk treatment and monitoring, data privacy, or other technical privacy risk management domains is required
Seven (7) years of experience in a risk management or data privacy program management-related role is required
Experience interpreting and mapping data privacy standards and requirements documents into formal control statements with associated auditable tests required
Experience supporting organizational and program audits through scoping engagements, designing and refining control statements, and collaborating with auditors to obtain and provide evidence as requested required
Experience building presentations and reports to management on the performance, effectiveness, and risks of an enterprise program required
Experience working with data inventory discovery, mapping, and management tools and diagramming visualization tools required
Foundational technical knowledge of data privacy management tools, techniques, and procedures
Ability to work independently as part of a distributed team to meet deadlines related to internal projects and external audit calendars with minimal supervision
Calm and serious attitude, technical aptitude, appropriate sense of urgency, and strong communication and interpersonal skills
Ability to drive data privacy outcomes with a consumer-first, not a compliance-first approach
Curiosity and a strong drive to fully understand and keep apprised of privacy risk management issues and trends

Preferred

Relevant industry certifications such as the CIPP/US, CIPM, and/or CDPSE preferred
Familiarity with consumer financial technology service provider ecosystem, including how personal information is collected, processed, stored, and shared with third-party providers in digital banking, loan origination, KYC, fraud prevention, and other intermediaries
Familiarity with prevalent data privacy standards and best practices, including the NIST Privacy Framework, ISO 27701/27018, and SOC 2 trust services criteria
Familiarity with rules and regulations relevant to financial services and global technology service providers, including the FFIEC IT Examination Handbook, GLBA Privacy Rule, GDPR EU-US DPF, and COPPA and their implementation requirements and challenges

Company

Lumin Digital

twittertwitter
company-logo
Lumin Digital provides cloud-native digital banking solutions, helping financial institutions enhance user experience and engagement.

Funding

Current Stage
Growth Stage
Total Funding
$260M
2026-01-02Undisclosed· $25M
2025-03-26Undisclosed· $75M
2024-12-02Private Equity· $160M

Leadership Team

leader-logo
Jeff Chambers
Founder & CEO
linkedin
leader-logo
Lisa Sutton
Chief Talent Officer
linkedin
Company data provided by crunchbase