Skip to main content
Sezzle

Privacy Manager

RemoteColombia only
Published
Role
Security
Experience
Mid
$4.5k–$6.5k/mo
Check eligibility

Open to CO only. Set where you work from to check your eligibility.

No BS summary

Privacy program manager with 4+ years building data privacy programs, ideally in high-growth fintech, e-commerce, or SaaS across the US and Canada. Needs hands-on privacy/security framework implementation and strong North American privacy regulatory knowledge. Colombia remote role.

Core skills

NIST Privacy FrameworkPrivacy Impact AssessmentsData privacy programs

Required skills

CCPACPRAGLBATCPAPIPEDAQuebec Law 25

Optional skills

NIST CSFISO 27701CIPMCIPP/USCIPP/CCIPTOneTrustSecuriti.ai

What you'll do

  • Drive Sezzle’s implementation of the NIST Privacy Framework from roadmap to operating program, including Current and Target Profiles, gap analysis, a prioritized and costed action plan, and ongoing monitoring.
  • Align the privacy program with US state and federal requirements including CCPA/CPRA, other state comprehensive privacy laws, GLBA, TCPA, and Canadian privacy laws including PIPEDA and Quebec’s Law 25.
  • Own privacy risk assessments and Privacy Impact Assessments for new products, features, and third-party vendors.
  • Operate an intake and disposition process that gives every proposal a documented answer: approved, approved with controls, or needs redesign.
  • Build and maintain the enterprise data inventory and data map in partnership with Engineering.
  • Track the lifecycle of consumer information.
  • Manage the automation and fulfillment of consumer access, deletion, and opt-out requests.
  • Administer Sezzle’s de-identification and aggregation standard and its approval workflow.
  • Ensure data-driven products and analytics ship with the right privacy controls designed in from the start.
  • Partner directly with Engineering, Product, and Marketing teams during early-stage development so privacy requirements are designed in.
  • Run the cadence of Sezzle’s cross-functional privacy working group.
  • Maintain the program’s decision log and obligations register.
  • Track privacy program metrics.
  • Support executive and board-level reporting.
  • Collaborate with the Information Security team to manage, investigate, and mitigate privacy incidents and cross-border data transfer risks.

What they require

  • 4+ years of dedicated experience managing data privacy programs.
  • Experience standing up at least one privacy program or major program component from early stage to steady state, such as a data inventory, consumer rights operation, or privacy review process.
  • Ideal: high-growth fintech, e-commerce, or SaaS experience operating in both the US and Canada.
  • Hands-on experience implementing a recognized privacy or security framework, including profiles or maturity assessments, gap analyses, and action plans.
  • Strong working knowledge of major North American privacy frameworks including CCPA/CPRA, the broader US state privacy law landscape, TCPA, GLBA, PIPEDA, and Quebec Law 25.
  • Ability to translate complex legal mandates into clear, actionable business processes.
  • Fluency in de-identification, aggregation, and other privacy-enhancing techniques as tools for responsible data product launches.
  • Ability to defend the line between what is de-identified and what is not.
  • High emotional intelligence with the ability to influence technical and non-technical stakeholders.
  • Ability to run a cross-functional working group.
  • Ability to present clearly to executives.
  • Self-starter mindset with the ability to manage multiple high-stakes projects simultaneously in a fast and agile environment.
  • Relentlessly high standards and ability to drive others to deliver results.
  • Ability to prevent defects and ensure problems are fixed permanently.
  • Ability to develop new ways to do things and not be bound by convention.
  • Bias for action and comfort with calculated risk-taking.
  • Ability to listen attentively, speak candidly, and treat others respectfully.
  • Ability to respectfully challenge decisions, disagree and commit.
  • Tenacity and conviction without compromising for social cohesion.
  • Focus on key inputs and ability to deliver quality results on time despite setbacks.
  • Preferred: CIPM plus CIPP/US or CIPP/C; CIPT is a plus.
  • Preferred: technical familiarity with modern privacy tech platforms and data infrastructure analytics.
  • Preferred: experience navigating financial regulations and compliance frameworks alongside traditional consumer privacy laws.
  • Preferred: public-company experience, including supporting audit committee or board-level reporting.

Benefits

  • Opportunity to build and run Sezzle’s formal company-wide privacy program from the ground floor.
  • Executive sponsorship is in place, the implementation roadmap is defined, and core program materials are drafted.
  • Opportunity to work in a dynamic, fast-paced environment within a rapidly growing team.
  • Abundant prospects for career advancement.
  • Culture focused on hiring high-standard, high-performing individuals.

Sezzle is a fintech company focused on interest-free installment plans and shopping/payment experiences for consumers and merchants.

🇺🇸 United StatesFintechMid-sizesezzle.com/

Details

Apply routeGreenhouse
$4.5k–$6.5k/mo