- Company Name
- Bumble Inc.
- Job Title
- Director Privacy Counsel (AUS, NYC)
- Job Description
-
**Job Title**
Director Privacy Counsel
**Role Summary**
Lead the design, implementation, and oversight of Bumble’s global privacy and data protection compliance program, with a primary focus on incident response, breach readiness, and alignment with EU and U.S. privacy regulations.
**Expectations**
- Develop scalable, risk‑based privacy frameworks that ensure consistent compliance across all business functions.
- Integrate privacy‑by‑design into product development, security, marketing, and HR processes.
- Maintain and update core GDPR artifacts (ROPA, DPIAs, lawful basis assessments, DPIAs, and Data Processing Agreements).
- Deliver timely, actionable guidance to senior leaders and cross‑functional teams worldwide.
- Keep the organization informed of evolving privacy/legal developments and their operational impact.
**Key Responsibilities**
- Own and execute incident‑response & data‑breach management programs, including investigation protocols, notification assessments, regulatory reporting, and remediation.
- Build and scale privacy compliance programs aligned with GDPR, UK DPA, CCPA/CPRA, and other U.S. state laws.
- Draft, negotiate, and manage Data Processing Agreements and maintain ROPA & DPIAs.
- Partner with InfoSec, Product, Engineering, and Member Support to embed privacy safeguards and manage privacy‑related member requests and regulator investigations.
- Advise internal Legal and other functional teams on privacy compliance across marketing, advertising, communications, and HR.
- Lead, mentor, and develop a privacy advisory team.
- Create and deliver privacy policies, playbooks, templates, and training materials.
- Track and assess privacy/data‑security trends, and recommend actionable changes to policy and practice.
**Required Skills**
- Juris Doctor (JD) and active bar membership in good standing.
- 10+ years of in‑house legal or counsel experience focused on privacy and data protection.
- Deep knowledge of GDPR, UK GDPR, CCPA/CPRA, biometric laws, and U.S. data‑security frameworks.
- Proven experience leading breach & incident‑response programs with coordination across InfoSec and legal teams.
- Hands‑on proficiency in preparing and managing ROPA, DPIAs, and GDPR compliance artifacts.
- Strong analytical, risk‑management, and organizational abilities.
- Excellent communication and influence skills, comfortable working with global, cross‑functional teams and senior leadership.
**Required Education & Certifications**
- Juris Doctor (JD).
- Current, unencumbered bar admission (U.S. jurisdiction).