
Privacy Operations Manager
Tenneco
full-time
Posted on:
Location Type: Hybrid
Location: Northville • Missouri • United States
Visit company websiteExplore more
Tech Stack
About the role
- Serve as the SME and day-to-day lead for privacy engineering and operations, embedding privacy by design and default across products, services, and processes.
- Lead and continuously improve the lifecycle of DPIAs, PIAs, LIAs, ROPAs, data mapping, and AI/automated decision-making risk assessments—ensuring completeness, accuracy, and timely closure of risks and actions.
- Define and maintain privacy requirements, standards, and technical guardrails in partnership with Enterprise Architecture, Information Security, and Legal.
- Represent Privacy on technical design/review boards; influence architectural decisions to ensure compliant, scalable solutions.
- Directly administer, configure and plan roadmap for privacy platforms and tools (e.g., assessment workflows, consent and preference management, data mapping/ROPAs, vendor risk, cookie/tracking governance).
- Drive automation of privacy controls and workflows (e.g., templates, playbooks, SLAs, integrations, APIs, Power Automate) to reduce cycle time and improve quality.
- Establish and maintain data quality checks, dashboards, control matrices (e.g., RACI, requirements-to-controls traceability), and audit-ready evidence repositories.
- Perform technical and data protection reviews of systems, applications, data pipelines, analytics/AI use cases, and vendors to identify privacy risks and required controls.
- Design pragmatic remediation plans and partner with control owners to track mitigation to closure.
- Own the end-to-end DSR process (intake, identity verification, scoping, fulfillment, communications, and retention of evidence) across global jurisdictions.
- Engineer repeatable, scalable fulfillment processes leveraging automation, role-based access, and clear SLAs.
- Measure and report DSR performance; drive elimination of root causes that generate avoidable requests.
- Monitor privacy control effectiveness; identify gaps and manage remediation to closure.
- Support privacy incident response and breach preparedness activities, including tabletop exercises and after-action reviews.
- Ensure vendor/privacy due diligence is performed and aligned with contractual and regulatory requirements.
- Define and publish KPIs/KRIs and dashboards (e.g., assessment cycle time, SLA adherence, risk backlog burn-down, DSR throughput, audit findings) for leadership visibility.
Requirements
- Bachelor’s degree in Computer Science, Software Engineering, Data Protection/Privacy, Cybersecurity, Regulatory Compliance, or a related field (advanced degree or JD highly desirable)
- 8+ years of progressive experience in privacy operations, privacy engineering, or closely related domains within a multinational environment
- Demonstrated expert-level execution of DPIAs, PIAs, LIAs, ROPAs, data mapping, vendor/privacy due diligence, consent and preference management, and cookie/tracking governance
- Hands-on experience operationalizing global privacy regulations (e.g., GDPR, CCPA/CPRA, LGPD, PIPL, PDPA) and aligning with frameworks/standards (e.g., ISO 27001, ISO 27701, ISO 42001, NIST CSF, PCI DSS, SOX, TISAX)
- Proficiency collaborating with Enterprise Architecture and Information Security to embed privacy controls into system designs, APIs, data pipelines, analytics, and AI/ML use cases
- Proven ability to lead complex, cross-functional programs with minimal supervision; excels in rapidly changing environments while maintaining quality and compliance
- Good written and verbal communication skills with ability to translate technical concepts for business audiences and present credibly in technical forums
- Experience administering or integrating privacy/GRC platforms
- Advanced Microsoft skills (Excel, PowerPoint, Power BI); ability to build dashboards, operational workflows and executive-ready materials using Microsoft suite of tools
- At least one privacy certification required: CIPP (E/US or other regional), CIPT, CIPM, CDPSE; security certifications (CISM, CISSP) are a plus.
Benefits
- Competitive salary
- Remote arrangements may be considered
- Professional development opportunities
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
DPIAsPIAsLIAsROPAsdata mappingvendor/privacy due diligenceconsent managementcookie governanceprivacy regulationsdata protection reviews
Soft Skills
leadershipcommunicationcollaborationproblem-solvingadaptabilityprogram managementattention to detailanalytical thinkinginfluencingstakeholder engagement
Certifications
CIPPCIPTCIPMCDPSECISMCISSP