Senior Privacy Program Manager

Toast
$143,000 - $293,000Hybrid

About The Position

Toast is seeking an experienced Senior Privacy Program Manager to join its Legal & Compliance team. This role will be pivotal in shaping and maintaining a world-class privacy program, with a focus on leveraging AI automation and LLMs. The position involves operationalizing privacy requirements across global operations and working on projects that safeguard data and uphold privacy principles in both B2B and B2C products and services. The Legal & Compliance teams are primarily concentrated in Boston, New York, Washington D.C., San Francisco, and Chicago, and candidates in these areas will be prioritized.

Requirements

  • Typically requires a minimum of 12 years of related experience with a Bachelor’s degree or 8 years and a Master’s degree.
  • 5+ years of relevant privacy experience.
  • Comprehensive knowledge of global privacy laws (GDPR, CCPA, PIPEDA, etc.), and the ability to apply them practically in a business setting.
  • A willingness to roll up your sleeves and help the team achieve its objectives without being overly concerned about the precise scope of your role.
  • Ability to collaborate with technical teams on data flows, architectures, and system design.
  • Strong project management skills, with the capacity to align privacy initiatives with business goals and manage multiple priorities.
  • Excellent communication and interpersonal skills, with the ability to simplify complex concepts, and strong analytical and problem-solving skills with attention to detail.
  • A working knowledge of AI tools such as Claude, Gemini etc. and a willingness to use AI solutions for privacy program management.

Nice To Haves

  • Privacy certifications (CIPP/E, CIPP/US, CIPM, etc.) are preferred but not mandatory.
  • SaaS or tech industry experience preferred.

Responsibilities

  • Develop and maintain Toast's global privacy program, ensuring compliance with laws and best practices across the US, Canada, Europe, the UK, and other countries where Toast operates.
  • Help triage the Procurement queue and provide a first pass assessment of privacy risk and vendor stance against the standard DPA using pre-defined risk thresholds and protocols in conjunction with LLMs.
  • Continue to mature the privacy rights process and program, including driving efforts to further automate how requests are processed alongside the vendor, Ethyca, and internal business teams, and developing SOPs for use in responding to privacy rights requests.
  • Maintain the existing Jira queue for privacy review requests and oversee and improve automation to generate a first pass privacy assessment that attorneys can then refine/finalize. Work with business/product teams to implement mitigations identified during such privacy reviews.
  • Translate privacy requirements into actionable processes, develop and supplement privacy FAQs for different domains, manage privacy risk registers, and conduct Data Protection Impact Assessments (DPIAs) in collaboration with cross-functional teams.
  • Develop and deliver privacy training programs, and collaborate on data governance frameworks for data classification and lifecycle management.
  • Establish and track key performance indicators (KPIs) to measure program effectiveness and provide regular reports to leadership. Maintain and update the Privacy team’s Confluence page to serve as an internal resource to other teams.

Benefits

  • Competitive compensation and benefits programs
  • Healthy lifestyle support
  • Flexibility to meet changing needs
  • Cash compensation (overtime, bonus/commissions if eligible)
  • Equity
  • Benefits
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service