Job Requisition ID # 26WD100179 Position Overview The Trust Risk Manager leads the Trust Risk Program at Autodesk and manages a multidisciplinary organization that includes Third-Party Risk Management as well as senior risk professionals. T rust Risk at Autodesk is an established team and program . W e are looking for a leader with the lived experience of operationalizing a risk program that is Trusted by leaders and executives to drive risk-based decisions in the areas of Trust – Security, Privacy, Trusted AI, and Resilience. This individual will report directly to the Director of Trust Governance, Risk, and Compliance. The successful candidate will bring deep expertise in at least one Trust risk domain and sufficient breadth across security, privacy, trusted AI, resilience, and third-party risk to integrate specialist perspectives into an enterprise risk view. Operationalizing risk management and working with executive stakeholders is as much of an art as it is science . Th e Trust Risk Manager needs to have lived, practical experience to g
Role market pulse
How Program Manager demand looks in United States
Live jobs
145
Posted 30d
41
30d movement
-60.6%
Remote share
20.7%
Salary listed
31.7%
Salary trend 1Y
Not enough history
Role overview
Job description
Description -
Privacy Program Manager - Products & Services Privacy
Job Summary
This role is responsible for providing strategic privacy advisory, guidance and program management support to HP's Products & Services organizations to ensure compliance with global privacy, data protection, AI governance, and regulatory requirements. The role partners closely with product, engineering, legal, security, data governance, and business teams to embed privacy-by-design principles throughout the product lifecycle, assess privacy risks, and drive implementation of compliant solutions that enable innovation while protecting customer, employee, and partner data.
The role leads privacy initiatives, manages complex cross-functional programs, develops governance processes, and serves as a trusted advisor to stakeholders on privacy requirements impacting products, services, digital platforms, AI/ML solutions, and emerging technologies. Success in this role requires strong program management, risk assessment, stakeholder engagement, and regulatory interpretation skills.
Responsibilities
- Manage and lead privacy programs supporting HP Products & Services teams to ensure compliance with global privacy and data protection regulations, including GDPR, CCPA/CPRA, LGPD, PIPL, and other applicable international requirements.
- Serve as a trusted privacy advisor for product, service, software, AI/ML, cloud, and digital platform initiatives by providing practical guidance throughout the development lifecycle.
- Conduct and facilitate Privacy Impact Assessments (PIAs), Data Protection Impact Assessments (DPIAs), AI risk assessments, and related reviews to identify and mitigate privacy risks.
- Partner with business, engineering, legal, cybersecurity, data governance, and compliance stakeholders to integrate privacy-by-design and privacy-by-default principles into products and services.
- Develop project plans, milestones, implementation roadmaps, and resource strategies to support privacy compliance initiatives and regulatory readiness efforts.
- Monitor progress of privacy-related projects and activities, escalating risks, dependencies, and issues while driving timely resolution.
- Analyze evolving regulatory requirements and translate legal and policy obligations into actionable business and technical requirements.
- Develop and maintain privacy standards, guidance documentation, training materials, playbooks, and operating procedures.
- Support regulatory change management efforts by evaluating new laws, industry requirements, and organizational impacts.
- Identify, assess, and communicate privacy, compliance, and data governance risks to stakeholders and leadership, including recommended mitigation plans.
- Support cross-functional reviews involving data collection, sharing, transfers, retention, consent, user rights, AI systems, and third-party integrations.
- Drive continuous improvement of privacy intake processes, assessment methodologies, governance frameworks, metrics, and operational efficiencies.
- Track and report privacy program KPIs, compliance status, and risk trends to leadership and executive stakeholders.
- Collaborate with product and engineering teams to evaluate new technologies, data uses, AI capabilities, and innovative solutions from a privacy and compliance perspective.
- Provide coaching, mentorship, and subject matter expertise to less experienced privacy professionals and cross-functional partners.
Education & Experience
- Four-year or Graduate Degree in Law, Public Policy, Information Systems, Information Security, Computer Science, Business Administration, Data Governance, or a related discipline, or equivalent experience.
- Typically, 5-8 years of experience in privacy, compliance, risk management, data governance, product management, program management, or a related field.
- Experience supporting software, cloud, digital services, data transfers, AI/ML products, or technology organizations.
- Experience managing complex cross-functional initiatives involving multiple stakeholders and competing priorities.
- Experience interpreting and operationalizing privacy and data protection requirements within large global organizations.
Preferred Certifications
- Certified Information Privacy Professional (CIPP/US, CIPP/E, or equivalent)
- Certified Information Privacy Manager (CIPM)
- Certified Information Privacy Technologist (CIPT)
Knowledge & Skills
- Privacy-by-Design
- Data Protection Regulations (GDPR, CCPA/CPRA, LGPD, PIPL, etc.)
- Privacy Impact Assessments (PIAs)
- Data Protection Impact Assessments (DPIAs)
- AI Governance and Responsible AI
- Privacy Risk Management
- Regulatory Change Management
- Data Governance
- Data Lifecycle Management
- Third-Party Risk Management
- Cross-Border Data Transfers
- Consent and Preference Management
- Product Development Lifecycle
- Cloud Technologies
- Agile Methodology
- Program and Project Management
- Process Improvement
- Business Analysis
- Change Management
- JIRA
- Kanban Principles
- Compliance Monitoring
- Risk Assessment
- Stakeholder Management
- Executive Communications
Cross-Org Skills
- Effective Communication
- Strategic Thinking
- Results Orientation
- Learning Agility
- Customer Centricity
- Digital Fluency
- Business Acumen
- Influencing Without Authority
- Collaboration
Impact & Scope
- Impacts Products & Services organizations through privacy and compliance leadership, enabling business growth while managing regulatory and reputational risk.
- Leads complex privacy initiatives across multiple business units and functional organizations.
- Acts as a subject matter expert and strategic advisor for privacy, data protection, AI governance, and data usage decisions.
- Influences privacy strategy, governance frameworks, and operational processes across HP's global Products & Services ecosystem.
Complexity
- Works on highly complex privacy, regulatory, and business issues where analysis requires evaluation of legal, technical, operational, and business considerations.
- Balances risk mitigation, regulatory compliance, customer trust, and business objectives to recommend practical, scalable solutions.
- Frequently manages ambiguous situations involving new technologies, emerging regulations, and evolving business models.
The pay range for this role is $130,000 to $175,000 USD annually with additional opportunities for pay in the form of bonus and/or equity (applies to United States of America candidates only). Pay varies by work location, job-related knowledge, skills, and experience.
Benefits:
HP offers a comprehensive benefits package for this position, including:
* Health insurance
* Dental insurance
* Vision insurance
* Long term/short term disability insurance
* Employee assistance program
* Flexible spending account
* Life insurance
* Generous time off policies, including;
* 4-12 weeks fully paid parental leave based on tenure
* 11 paid holidays
* Additional flexible paid vacation and sick leave (US benefits overview [https://hpbenefits.ce.alight.com/])
The compensation and benefits information is accurate as of the date of this posting. The Company reserves the right to modify this information at any time, with or without notice, subject to applicable law.
#LI-POST
Job -
QualitySchedule -
Full timeShift -
No shift premium (United States of America)Travel -
Not SpecifiedRelocation -
NoEqual Opportunity Employer (EEO) -
HP, Inc. provides equal employment opportunity to all employees and prospective employees, without regard to race, color, religion, sex, national origin, ancestry, citizenship, sexual orientation, age, disability, or status as a protected veteran, marital status, familial status, physical or mental disability, medical condition, pregnancy, genetic predisposition or carrier status, uniformed service status, political affiliation or any other characteristic protected by applicable national, federal, state, and local law(s).
Please be assured that you will not be subject to any adverse treatment if you choose to disclose the information requested. This information is provided voluntarily. The information obtained will be kept in strict confidence.
For more information, review HP’s EEO Policy or read about your rights as an applicant under the law here: “Know Your Rights: Workplace Discrimination is Illegal"
What they are looking for
Skills & requirements
Qualification
Four-year or Graduate Degree in Law, Public Policy, Information Systems, Information Security, Computer Science, Business Administration, Data Governance, or a related discipline, or equivalent experience; Typically, 5-8 years of experience in privacy, compliance, risk management, data governance, product management, program management, or a related field
Hiring company
Hp
Explore this employer's active roles, salary signals and company profile on Jobiba.
Keep exploring
Similar active roles
Fresh roles matched to this title and market.
About the Team OpenAI’s Legal team helps advance our mission by tackling novel legal issues in AI. Our team brings together professionals across technology, privacy, intellectual property, corporate, employment, tax, regulatory, and litigation. Our regulatory compliance work turns legal requirements into practical programs that support responsible AI development and deployment. About the Role As a Legal Program Manager focused on regulatory compliance, you will build and manage cross-functional programs that translate counsel’s guidance into practical, sustainable operations. Your initial focus may include content moderation and/or frontier AI governance, with the mix shaped by team priorities and your strengths. You will partner with internal and external counsel, other legal program managers, and technical and business teams to coordinate implementation, evidence collection, reporting, and ongoing compliance. You’ll build repeatable systems that scale across regulations, products, and jurisdictions, helping teams navigate emerging requirements with clarity and sound judgment. This full-time role is based in San Francisco, CA, or New York, NY. In this role, you will: Lead regulatory compliance programs end to end: define scope, owners, milestones, dependencies, risks, and escalation paths, and drive execution with counsel and cross-functional partners. Translate counsel’s regulatory guidance into repeatable workflows, controls, and documentation. Depending on your portfolio, this may include content moderation disclosures, transparency reporting, reporting and appeals workflows, or frontier AI model launch readiness, evaluation and risk-management evidence, and incident reporting. Build strong partnerships across Product, Engineering, User Operations, Governance, Risk and Compliance (GRC), Global Affairs, Communications, and Go-to-Market to align program priorities and deliverables. Support regulatory inquiries, audits and investigations with counsel, organizing ev
About the Team OpenAI’s Governance, Risk, and Compliance team helps ensure security and privacy are grounded in how our products and systems actually operate. Assurance Operations partners with Security, Engineering, Infrastructure, Product, Privacy, and Legal to make controls provable, risk decisions explicit, and audit readiness a result of well-designed systems. About the Role We are hiring a technical, product-minded GRC builder who can own consequential audits while improving the control and evidence systems behind them. You will build a reusable common control framework, use Codex to automate assurance work, validate changing system scope, and turn repeated audit friction into measurable improvements. We are looking for someone who questions inherited assumptions, solves novel problems creatively, works closely with engineers, and makes the next audit easier by improving the underlying system. You’ll be responsible for: Lead external, internal, customer, and certification audit work from scoping through evidence review, fieldwork, remediation, and closeout. Build a common control framework linking risk, control intent, implementation, owner, system, environment, evidence, and applicable frameworks. Validate actual scope and ownership instead of assuming last year's controls, product boundaries, or evidence remain accurate. Use Codex to build and test evidence checks, control mappings, request triage, owner workflows, monitoring, and remediation reporting. Partner with engineers on cloud architecture, identity, logging, data flows, software changes, vulnerabilities, and control effectiveness. Design maintainable, permission-aware tools that preserve source provenance, human review, and evidence integrity. Reduce repeated requests and operational burden for control owners through measurable workflow improvements. Define roadmaps, decision rights, milestones, success metrics, and clear cross-functional escalations. We’re looking for someone with: Direct ownership
About the Team Governance, Risk, and Compliance (GRC) is foundational to Security delivering mission outcomes at OpenAI. The GRC team provides security assurances and builds compliance for OpenAI’s technology, people, and products. We are technical in what we build but operational in how we do our work, and we partner deeply with Product, Security, Legal, Privacy, GTM, and Field Security to help OpenAI move quickly while maintaining trust with customers, auditors, regulators, and the public. About the Role We are looking for an experienced Product Lifecycle Assurance IC to help scale OpenAI’s GRC function across our product stack to ensure products address customer and regulatory compliance requirements at launch and regressions are detected promptly and corrected. You will partner closely with Product, Security, Legal, and Privacy teams to make sure OpenAI can move quickly while maintaining our security, privacy and compliance claims and giving customers, auditors, and regulators assurance about how OpenAI handles user data. You are responsible for product assurance end-to-end from inception to post-launch (continuous) monitoring. You leverage existing workflows, reviews, and data and enhance, augment and build the components needed to create an end-to-end product assurance program. This role is not about supporting SOC or ISO audits; it's a highly cross-functional and deeply technical operations role to ensure that OAI products meet the compliance bar at launch, regressions are prevented and detected, and our compliance state can be evidenced. This role also helps ensure that our product launch governance program operates effectively across key safety, privacy, legal and security stakeholders and lessons-learned from incidents and regressions are used to improve the program. You or in partnership with engineering teams, build key controls in our infrastructure stack, developer workflows and launch tooling to provide developers with guardrails, perform CI/CD confor
About the Team OpenAI builds powerful AI systems like ChatGPT, the OpenAI API, and enterprise products that serve millions of users across the globe. As we scale, securing our infrastructure, protecting sensitive data, and meeting global compliance standards are essential to our success and societal impact. Security at OpenAI is a cross-cutting function that spans infrastructure, applied engineering, legal, policy, and product. Technical Program Managers (TPMs) play a critical leadership role in aligning teams and delivering execution at scale and this role will be foundational in shaping how we secure OpenAI’s systems, users, and commitments. About the Role We’re seeking a Senior Technical Program Manager to drive cross-functional security, privacy, IT and compliance initiatives at the intersection of infrastructure, product, and policy. You will execute complex programs that reduce internal data access, prevent misuse, and ship security capabilities. You will focus your efforts on the most critical initiatives within Security, crossing the spectrum of insider threat, information security, physical security, and information technology challenges. This role is deeply technical and execution-focused. It requires a structured operator who thrives in ambiguity, partners effectively across boundaries, and applies principled judgment to scale trust, governance, and security across OpenAI’s systems and products. In this role, you will: Drive execution of critical security and compliance programs such as vulnerability management, merger and acquisition security and integration, infrastructure hardening, and datacenter security management. You will need to deeply collaborate on technical architecture and resolve technical problems in partnership with engineering. Partner with IT, Infrastructure, Application, Legal, Privacy, and Security teams to build scalable programs, and deliver critical security outcomes across multiple disciplines, including insider threat, information
About the Team At OpenAI, the User Safety & Risk Operations (USRO) team helps protect our products and users from abuse, fraud, safety risks, and other forms of misuse. We operate at the front line of real-world safety and risk management, translating user and operational signals into timely decisions, effective interventions, and improvements to our systems. This role sits on a team focused on building operational capacity for new, ambiguous, and fast-moving company priorities. The team defines what needs to be built, creates the operating model to support it, and works with partner teams to make the work scalable and durable over time. About the Role We are looking for a senior program manager to build the safety, quality, and risk operations supporting a new category of consumer devices. You will translate ambiguous product risks and evolving requirements into practical operating models, workflows, escalation paths, launch-readiness plans, and cross-functional decision-making. This is a foundational role: the systems you build will shape how OpenAI launches, monitors, and improves a new category of consumer devices safely at scale. You will help establish how potential safety incidents, product-quality concerns, sensitive customer escalations, privacy-sensitive issues, and other emerging device risks are identified, investigated, resolved, and incorporated into product and operational improvements. You will turn incomplete requirements into practical workflows, decision rights, launch plans, quality controls, measurement, and durable ownership. The role centers on program building, operational judgment, and execution. We welcome candidates from product safety, quality assurance, regulatory operations, technical program management, healthcare, medical devices, aerospace, consumer technology, and other environments involving complex products or regulated risks. Direct consumer-hardware experience is helpful but not required. The strongest candidates learn unfam
🔔 Get job alerts
New Privacy Program Manager jobs in Texas, United States of America, United States, straight to your inbox.
No spam · Unsubscribe anytime