Instructure-posted 2 months ago
$130,000 - $150,000/Yr
Full-time • Senior
501-1,000 employees

At Instructure, we believe in the power of people to grow and succeed throughout their lives. Our goal is to amplify that power by creating intuitive products that simplify learning and personal development, facilitate meaningful relationships, and inspire people to go further in their education and careers. We do this by giving smart, creative, passionate people opportunities to create awesome. As a leading educational technology company, the privacy of teaching and learning data is paramount. We are seeking a dynamic Global Privacy Manager to lead and scale our global privacy compliance program. This role is focused on privacy program management and requires hands-on leadership in designing, operationalizing, and advancing initiatives that ensure our products, systems, and business practices align with global privacy laws and best practices. Sitting at the intersection of product, engineering, and security, this role plays a pivotal part in implementing scalable privacy solutions, ensuring data protection, and enabling business growth through trusted practices. The ideal candidate brings strategic thinking, operational discipline, and deep expertise in privacy frameworks—with a passion for building programs in fast-moving, data-driven environments.

  • Lead and evolve the company’s global privacy program with clear accountability, measurable goals, and cross-functional alignment.
  • Develop and maintain internal privacy policies, procedures, and governance frameworks.
  • Establish a privacy architecture that aligns with global regulations and our organizational values.
  • Deliver regular reports to leadership on program effectiveness, risks, and remediation efforts.
  • Scale and maintain the organization’s privacy operations to protect personal data across customer, employee, and internal systems.
  • Ensure compliance with global privacy regulations (e.g., GDPR, CCPA/CPRA, PIPEDA, FERPA).
  • Conduct and manage risk assessments, including DPIAs, PIAs, DSARs, and third-party privacy reviews.
  • Manage data inventory and mapping, including records of processing activities (ROPA).
  • Define and improve technical and operational controls for data retention, access management, consent, and data minimization.
  • Conduct privacy assessments of vendors and manage third-party risk related to data handling.
  • Manage and respond to DSARs within regulatory timelines.
  • Partner with Product, Engineering, Security, and Legal to embed privacy-by-design principles across the company’s systems and products.
  • Collaborate on data classification, localization, and sovereignty strategies with security and infrastructure teams.
  • Participate in cross-functional projects involving data governance, customer controls, and tooling for privacy features.
  • Serve as the privacy lead for external audits, certifications (e.g., ISO 27701, SOC2 Privacy), and regulatory inquiries.
  • Build scalable processes for privacy monitoring, evidence collection, and reporting using GRC platforms and automation.
  • Participate in incident and breach response processes, including regulatory notifications when required.
  • Develop and deliver engaging privacy training and awareness programs across the organization.
  • Foster a culture of privacy and data responsibility.
  • Serve as the organization’s privacy liaison to customers and regulators as needed.
  • At least 7 years of experience in privacy operations, compliance and program management in educational technology or broader education sectors is highly valued.
  • Proven success leading enterprise-wide privacy initiatives, including policy development, training, and operational implementation.
  • Experience with privacy assessments, DSAR response workflows, and regulatory alignment.
  • Track record managing or supporting compliance frameworks (SOC 2, ISO 27701, PCI DSS, FedRAMP).
  • Hands-on experience managing external audits and certification cycles.
  • Privacy certifications issued by the IAPP such as CIPP/US, CIPP/E, CIPP/M or CIPT.
  • Additional experience in IT and security compliance, audit, or technical program management roles is preferred.
  • Additional certifications such as CISA, CISM, CIPM, or CRISC are a plus.
  • Experience working with cloud platforms (AWS, GCP, or Azure) and cloud-scale infrastructures.
  • Familiarity with emerging areas like AI and machine learning and their implications for privacy.
  • Competitive compensation, plus all full-time employees participate in our ownership program.
  • Flexible schedules and a remote-friendly culture, with hybrid or onsite work options available in some regions for specific roles.
  • Generous time off, including local holidays and our annual company-wide 'Dim the Lights' week in late December.
  • Comprehensive wellness programs and mental health support.
  • Annual learning and development stipends to support your growth.
  • The technology and tools you need to do your best work — typically a Mac, with PC options available in some locations.
  • Motivosity employee recognition program.
  • A culture rooted in inclusivity, support, and meaningful connection.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service