Privacy Lawyer
US-Remote
Instructure
Instructure's educational software includes Canvas LMS, used by schools and universities worldwide. Learn why the Instructure learning platform is a great place to work and to invest in.
Instructure is seeking a dynamic lawyer who will serve as the data privacy, security, and AI legal lead. You will be responsible for providing legal support to Instructure’s global privacy program, AI initiatives, and security program, including development, implementation and maintenance of policies and procedures, as well as address day to day legal, contractual and regulatory matters involving data privacy, data security, and AI. You will also support Instructure’s product, marketing, and engineering teams and handle a broad range of transactions, including data processing agreements, vendor processing agreements, and transfer impact assessments. The ideal candidate will be someone who isn’t afraid to roll up their sleeves and handle the day to day while bringing with them privacy law experience in SaaS and technology and familiarity with business/transactional law.
At Instructure we participate in E-Verify and yes, in case you didn't catch it from the above, we are an Equal Opportunity Employer.
All Instructure employees are required to successfully pass a background check upon being hired.
What you will do
- Provide general in-house legal services to and advise our business and operational units with a focus on privacy, security, and AI law.
- Lead and manage legal matters pertaining to privacy, security, and AI.
- Review and aid in crafting data privacy policies and practices and opportunities for improvement of privacy policies in collaboration with the Privacy Office.
- Maintain current knowledge and expand your knowledge of all applicable worldwide privacy, security, data, and AI laws and accreditation standards.
- Collaborate with the entire organization, including senior management, security, engineering, HR, marketing, compliance, and others to advise on privacy, security, and AI issues, including privacy strategy and worldwide regulatory requirements and laws.
- Collaborate with the Security Steering Committee to advise and support Instructure’s ongoing data security incident program and process to track, investigate, and report data incidents.
- Serve as Instructure’s data protection officer under the UK & EU GDPR.
- Support Instructure’s Academic Office representing the organization's information privacy interests with external parties (state or local government bodies) who undertake to adopt or amend privacy legislation, regulation, or standards.
What you need to know/have
- Prior experience in global AI, data protection, & security law and an in-depth knowledge of U.S. and EU privacy statutes – including GDPR, FERPA, and US Consumer Privacy laws.
- Business judgment and ability to assess legal risk while also thinking strategically and providing practical advice
- J.D. from an accredited law school and excellent academic credentials.
- 4 - 6 years of experience in a large firm and ideally some in-house experience.
- Excellent written and verbal communication.
- Meticulous attention to detail and process.
- Ability to maintain poise in stressful situations.
- Must be able to interact directly with senior business leaders without supervision.
- Willingness to expand the range of job responsibilities as needed, based on the evolution of the company and the role.
- Deep governance and operational incident response experience, including in developing, implementing, and managing an incident response program and process for full compliance with the law, including reporting and post incident remediation,
- Experience working with cross functional teams (legal, security, GRC, product, engineering) in advising on privacy issues across an organization (i.e. privacy/ handling customer information/HR/ education).
- Excellent oral and written communications skills and experience in advising and reporting to Boards of Directors, senior management, accountants, and auditors, regulators and other external parties
- Certifications in Certified Information Privacy Professional (CIPP US and/or EU), Information Privacy Manager (CIPM), Information Privacy Technologist (CIPT) and Information Systems Security Professional (CISSP) are a big plus
At Instructure we participate in E-Verify and yes, in case you didn't catch it from the above, we are an Equal Opportunity Employer.
All Instructure employees are required to successfully pass a background check upon being hired.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
1
0
0
Tags: CIPP CISSP Compliance GDPR Governance Incident response Privacy SaaS Strategy
Perks/benefits: Career development
Regions:
Remote/Anywhere
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information System Security Officer jobsInformation Systems Security Officer jobsSenior Cloud Security Engineer jobsInformation Security Officer jobsInformation Security Manager jobsSenior Cybersecurity Engineer jobsSystems Engineer jobsCyber Security Specialist jobsSenior Network Security Engineer jobsSystems Administrator jobsIT Security Engineer jobsSenior Information Security Analyst jobsChief Information Security Officer jobsIT Security Analyst jobsSecurity Consultant jobsSenior Cyber Security Engineer jobsSecurity Specialist jobsInformation Systems Security Engineer jobsInformation System Security Officer (ISSO) jobsThreat Intelligence Analyst jobsCyber Threat Intelligence Analyst jobsSenior Information Security Engineer jobsSenior Product Security Engineer jobsSecurity Operations Analyst jobsSenior Penetration Tester jobs
Top Secret jobsEncryption jobsSaaS jobsSplunk jobsGDPR jobsMalware jobsRMF jobsEDR jobsBash jobsSDLC jobsSQL jobsDoDD 8570 jobsForensics jobsThreat detection jobsIDS jobsIPS jobsFinance jobsIntrusion detection jobsCompTIA jobsDocker jobsActive Directory jobsITIL jobsTerraform jobsCRISC jobsGIAC jobs
OWASP jobsSOC 2 jobsClearance Required jobsSAP jobsUNIX jobsAnsible jobsSANS jobsIndustrial jobsCCSP jobsTCP/IP jobsVPN jobsHIPAA jobsPolygraph jobsOSCP jobsJira jobsBanking jobsJavaScript jobsIT infrastructure jobsData Analytics jobsDNS jobsMachine Learning jobsSOX jobsVMware jobsNIST 800-53 jobsSOAR jobs