Docker, Inc is a leading company in app development, seeking a Senior Program Manager for Data Privacy and AI. This role involves overseeing data privacy and AI compliance, working closely with various teams to ensure adherence to global regulations while fostering product innovation.
Responsibilities:
- Lead privacy and AI risk assessments and audits for new and existing products
- Own DPIAs, maintain records of processing activities, and manage DSAR workflows
- Partner with Product and Engineering during launches to assess data use, retention, cross-border transfers, and AI implications
- Proactively recommend updates to DPAs, AI addendums, terms, and related legal documentation as products evolve
- Monitor and analyze changes in global privacy and AI regulations and advise leadership on required updates
- Collaborate with Legal, Compliance, IT, and Security to ensure privacy documentation, controls, and processes remain current and aligned with product changes
- Support investigation and resolution of privacy-related inquiries in partnership with Legal and Security
- Support customer privacy and security questionnaires alongside Sales, Deal Desk, and GRC
- Design and deliver internal privacy and AI training
- Improve and scale privacy tools, intake processes, and cross-functional workflows
Requirements:
- Bachelor's degree in Computer Science, Engineering, Law, or related field, or equivalent demonstrated professional experience
- 5+ years of hands-on experience in data privacy, data protection, and/or AI within a technology or SaaS company
- Demonstrated experience conducting privacy risk assessments, DPIAs, audits, and implementing mitigation measures
- Practical working knowledge of GDPR and CCPA/CPRA with day-to-day implementation experience
- Experience supporting or implementing AI governance practices, including assessing how AI systems use and process company or customer data
- AI-Native prompting capability
- Experience collaborating with Security or GRC teams in regulated environments such as SOC 2 or ISO 27001
- Experience managing or materially contributing to DSAR processes and maintaining records of processing activities
- Experience working on DPAs and privacy-related contract terms
- At least one current privacy certification such as CIPP/E or CIPP/US (or equivalent)
- Direct experience operationalizing data privacy for developer-focused software
- Familiarity with emerging AI regulations such as the EU AI Act
- Familiarity with additional regulatory frameworks such as HIPAA or industry-specific compliance standards
- Experience delivering privacy or compliance training
- Experience supporting customer privacy and security questionnaires
- Experience working with privacy management tools or workflow systems