Director, Privacy & Business Resilience

MicrosoftRedmond, WA
$130,900 - $303,600

About The Position

The Trust and Integrity Protection (TrIP) organization enables Microsoft’s Commercial Business to grow with trust by turning privacy/data protection, security, responsible AI, business resilience, and anti-corruption risk into clear business decisions, durable controls, and measurable outcomes. We are looking for a strategic, high-impact leader to evolve the privacy, data protection, and business resilience program for one of Microsoft’s largest global businesses spanning sales, consulting, and technical support. This leader will move the program beyond compliance execution to deliver proactive risk reduction, AI-enabled scale, audit-ready evidence, and confidence with customers, regulators, and executives. The role aims to reduce privacy, data protection, and resilience risk across Microsoft’s commercial operating model while enabling speed, customer trust, and responsible growth. It also focuses on modernizing the program through AI, automation, telemetry, and scalable controls that improve quality, reduce friction, and strengthen audit readiness. A key objective is to create a federated operating model that connects divisional privacy teams into one coordinated, executive-ready view of risk, priorities, and progress. The role will establish risk aggregation, KPIs, KRIs, and metrics that turn fragmented signals into actionable decisions for senior leaders, and translate complex regulatory, customer, and audit expectations into crisp business guidance. The ideal candidate is a builder, operator, and thought leader who combines privacy depth, business judgment, executive presence, and transformation to create a program that is resilient, measurable, and built to last. This leader will create clarity in ambiguity, develop talent, and build trusted partnerships that help the business move faster with greater confidence.

Requirements

  • Master's Degree in Risk Management, Engineering, Government Intelligence, Security, or Information Technology, AND 6+ years experience in risk management, privacy, security, compliance, intelligence, operations, auditing, and/or finance OR Bachelor's Degree in Risk Management, Engineering, Government Intelligence, Security, or Information Technology, or related field AND 8+ years experience in risk management, privacy, security, compliance, government intelligence, operations, auditing, and/or finance OR equivalent experience.

Nice To Haves

  • Master's Degree in Risk Management, Engineering, Government Intelligence, Security, or Information Technology, or related field AND 12+ years experience in Risk Management in the context of Operations, Engineering, Information Technology, Business Analyst, Consulting, Auditing, Privacy, Security, Compliance, Government Intelligence, and/or Finance OR Bachelor's Degree in Risk Management, Engineering, Government Intelligence, Security, Cybersecurity, or Information Technology, or related field AND 15+ years experience in risk management in the context of operations, engineering, information technology, business analyst, consulting, auditing, privacy, security, compliance, government intelligence, and/or finance OR equivalent experience.
  • 5+ years people management experience.
  • Membership with a relevant risk domain area association including: International Association of Privacy Professionals (IAPP), International Information System Security Certification Consortium (ISC)2, and Information Systems Audit and Control Association (ISACA), Certified Internal Auditor (CIA), Society for Corporate Compliance and Ethics (SCCE), Disaster Recovery Institute (DRI), Certified Business Continuity Professional (CBCB), Committee of Sponsoring Organizations of the Treadway Commission (COSO), and Institute of Internal Auditors (IIA).
  • Experience with AI, AI-based analytical tools, AI governance, and AI governance frameworks.
  • Proven ability to lead privacy, data protection, business resilience, or risk programs in a large, matrixed, global technology or services business.
  • Track record modernizing risk or compliance programs through AI, automation, telemetry, simplification, and scalable controls.
  • Deep knowledge of global privacy and data protection obligations, accountability frameworks, privacy by design, data governance, and evidence expectations.
  • Experience creating risk aggregation mechanisms, metrics, dashboards, and executive reporting that drive leadership action.
  • Ability to align distributed teams in a federated model and drive consistent outcomes without relying on direct authority.

Responsibilities

  • Build and lead a high-performing team known for sound judgment, customer empathy, risk discipline, and measurable impact.
  • Set clear priorities and accountability, develop exceptional talent, and empower the team to make smart tradeoffs and execute with speed.
  • Lead an integrated, risk-based privacy, data protection, and resilience program that protects data, earns trust, and enables the business to operate at global commercial scale.
  • Turn risk signals into clear priorities, pragmatic mitigation, and timely leadership decisions—strengthening accountability while reducing friction for sales, consulting, and support.
  • Set and deliver an AI-enabled transformation roadmap that simplifies work, improves evidence and risk visibility, and accelerates mitigation.
  • Use Microsoft technologies, automation, and lessons from regulatory change, customer expectations, and audits to build scalable controls and better business outcomes.
  • Lead a federated operating model with clear ownership, coordinated execution, and an enterprise view of risk posture, priorities, and progress.
  • Advise senior leaders with actionable business recommendations and represent a credible narrative for how Microsoft protects data while enabling global sales, consulting, and support.

Benefits

  • Certain roles may be eligible for benefits and other compensation.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service