Arlington, VA, US
21 days ago
Sr. Privacy Specialist, Trust Fundamentals
Devices and Services Trust and Privacy (DSTP) is responsible for maintaining and raising the trust bar for Amazon customers across a diverse set of 30+ Devices and Services (D&S). DSTP offers horizontal services for builders to ensure trust, privacy, and accessibility is built into our products and services. We also build customer-facing capabilities that provide customers with control and transparency and reduce privacy risk, while enabling partner teams to innovate with appropriate guardrails for content moderation, privacy, accessibility, and trust.

The DSTP team is seeking a Senior Privacy Specialist to serve as a single threaded owner of Alexa’s compliance with a 2023 Federal Trade Commission (FTC) consent decree regarding the protection of Alexa customers’ child, voice, and geolocation data. This owner should feel excited and empowered to solve complex problems to protect customer privacy, integrate customer trust into everything we do, improve our privacy risk posture, and assess, record, track, and report our compliance posture to senior executives and the FTC.

This position, which is part of D&S’ Trust Fundamentals Privacy Governance, Risk Management, and Compliance (GRC) team, requires detail-oriented privacy risk leadership, high-judgment decision-making, quick thinking, and stakeholder management skills to resolve drifts from customer promises, privacy policies, and legal and FTC requirements in a timely and appropriate manner.

Key job responsibilities
You will work with builder, engineering, product, legal, PR, marketing, and other privacy and security teams across Amazon to:

* Implement and maintain a comprehensive privacy program to ensure compliance with the consent decree
* Interpret and apply relevant laws, regulations, and FTC requirements to the Alexa business
* Conduct regular privacy impact assessments and risk analyses focused on child, voice, and geolocation data
* Integrate privacy controls into services and processes
* Monitor and guide response to privacy-related inquiries and incidents
* Raise business awareness of FTC requirements
* Monitor evolving privacy regulations and industry best practices
* Drive post-mortem analysis of incidents to determine and propose improvements to better D&S’ privacy risk posture

A day in the life
This role is a part of Trust Fundamentals’ Privacy GRC team within DSTP, which includes developing a set of processes, tools, and compliance mechanisms to improve leadership decision making and performance through an integrated view of how well D&S manages its unique set of privacy risks. Our GRC team is dedicated to supporting new members. We have a broad mix of experience levels and tenures, and are building an environment that celebrates knowledge sharing and mentorship. We care about your career growth and strive to assign projects based on what will help each team member develop into a better-rounded professional enabled to take on increasingly complex tasks as their careers progress.

About the team
This is an inherently cross-functional role where you will work directly with engineers, product managers, policy and compliance specialists, legal, PR, marketing, and other Amazon builders to help them identify, expediently contain/mitigate privacy incidents and risks, and implement a Privacy by Design and Default culture. You will use your investigative and/or analytical experience and demonstrate your prowess and experience in writing and briefing complex cases. You will track risk assessment, validation, adjudication, and remediation actions, and ensure that teams prioritize and execute those tasks in a timely fashion. You will be responsible for knowing the ins and outs of impacted systems, and ensure the impacted builders/owners follow the correct paths to compliance. You should be comfortable working in a fast-paced, rapidly evolving environment with fast delivery time, rapid iteration, and data-driven decision-making.
Confirm your E-mail: Send Email