Accuray

Data Privacy and Responsible AI Manager

Accuray$110K — $130K *
US-AnywhereRemote in United States
Business Services
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor’s degree in privacy, compliance, information security, risk management, or related field.
  • Hands-on experience with Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
  • Experience reviewing Data Processing Agreements (DPAs) and contractual clauses related to privacy.
  • Strong knowledge of global privacy regulations and principles.
  • Effective communication skills for engaging with diverse stakeholders.
  • Strong analytical skills with attention to detail.

Responsibilities

  • Identify and assess privacy risks across enterprise processes and systems.
  • Provide risk-based guidance on data management practices.
  • Conduct Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
  • Review and evaluate Data Processing Agreements and privacy-related contract terms.
  • Collaborate with Enterprise Security on privacy risk assessments and incident responses.
  • Apply global privacy laws and support compliance reviews.
  • Support the implementation of the responsible AI governance program.

Benefits

  • Hybrid or remote work options available.
  • Opportunities for career growth in a cutting-edge field.
  • Work alongside diverse stakeholders including Legal, Security, and IT.
  • Involvement in both privacy and responsible AI initiatives.
Full Job Description

POSITION TITLE: Data Privacy and Responsible AI Manager

DEPARTMENT: Accuray Global Legal Department

LOCATION: Madison, WI (Hybrid) or Remote (U.S.)

SUMMARY 

The Data Privacy and Responsible AI Manager is a senior individual contributor responsible for assessing, advising on, and mitigating privacy risks across enterprise operations and third-party relationships. The role will also support our responsible AI governance program. The role partners with Legal, Security,  IT, and business stakeholders to support compliance, risk management, and responsible use of data and AI technologies.

The primary focus is on enterprise systems, cloud services, SaaS platforms, vendor relationships, data sharing arrangements, and AI-enabled technologies.

REPORTING TO/DEPARTMENT

Reports to the , Accuray Global Legal Department with dotted line to the Chief Legal Officer.

ESSENTIAL DUTIES AND RESPONSIBILITIES

Privacy Risk Assessment & Business Advisory

  • Identify and assess privacy risks across enterprise processes, systems, vendors, and business initiatives. 
  • Provide practical, risk-based guidance regarding data collection, use, sharing, retention, and international transfers.
  • Evaluate risks related to data collection, internal use, external sharing, retention, and international transfers, particularly in cloud-based and third-party environments. 
  • Recommend and document appropriate mitigations aligned with privacy, security, and enterprise risk management requirements. 

Privacy Impact Assessments (PIAs) & DPIAs

  • Conduct PIAs and DPIAs for new or materially changed processing activities, systems, applications, and third-party services. 
  • Document processing activities, assess privacy risks, and recommend appropriate controls and safeguards. 
  • Coordinate assessment with Security and other stakeholders and integrate reviews into relevant business processes. 

Data Processing Agreements & Contractual Privacy Review

  • Review DPAs, BAAs, and privacy-related contract terms for vendors, customers, and partners. 
  • Assess privacy risks associated with data use, sharing, retention, cross-border transfers, and third-party processing. 
  • Provide risk-based recommendations regarding contractual protections, controls, and compliance obligations.  

Collaboration with Enterprise Security & Incident Response

  • Partner with Enterprise Security on privacy and security risk assessments, vendor reviews, and third-party risk management activities.
  • Support privacy-related incident assessments, investigations, and documentation in coordination with Security and Legal.  

Global Privacy Regulatory Application

  • Apply global privacy and data protection requirements, including HIPAA, GDPR, UK GDPR, and other applicable laws. 
  • Support compliance reviews, cross-border data transfer assessments, and related documentation. 

Responsible AI Governance

  • Support the implementation and day-to-day operation of Accuray's responsible AI program.
  • Conduct AI risk and impact assessments for AI-enabled tools, services, vendors, and proposed use cases.
  • Partner with Legal, Security, GIS, Product, and business stakeholders to identify, assess, and mitigate AI-related risks.
  • Support evaluation of third-party AI vendors, contractual provisions, and governance controls.
  • Monitor emerging AI laws, regulations, and industry standards, and contribute to AI governance policies, guidance, training, and documentation.

Travel

  • Some travel (<10%) may be required.

QUALIFICATIONS

Required

  • Bachelor’s degree or equivalent professional experience in privacy, compliance, information security, risk management, or a related discipline. 
  • Significant hands-on experience conducting PIAs and DPIAs as an individual contributor. 
  • Practical experience reviewing DPAs and privacy-related contractual clauses. 
  • Strong working knowledge of global privacy principles and regulatory expectations. 
  • Ability to communicate clearly to business, technical, and security stakeholders. 
  • Ability to take ownership of tasks and guide to completion.
  • Strong analytical skills and attention to detail, with the ability to manage multiple concurrent assessments independently.

Preferred

  • Experience supporting AI governance, responsible AI initiatives, or emerging technology risk management, including familiarity with AI and Generative AI technologies.
  • Experience in a regulated manufacturing environment, particularly medical devices or life sciences. 
  • Familiarity with cloud services, SaaS risk assessment, and third-party risk management. 
  • Experience working within, or closely aligned to, an information security function. 
  • Privacy certifications such as CIPP/E, CIPP/US, CIPM, or CIPT. 
  • Familiarity with security and compliance frameworks such as ISO 27001, SOC 2, or NIST. 

WORKING CONDITIONS

  • Sedentary Work: This role involves extended periods of sitting and working at a desk, requiring good ergonomic practices.
  • Computer Usage: Proficiency with computers, including software applications and communication tools, is essential for tasks and collaboration.
  • Structured Schedule: This position usually follows regular business hours, promoting a consistent and predictable work routine.

To qualify for this position, candidates must be able to furnish proof that they are authorized to work in the country they are applying on a permanent basis without sponsorship.

About Accuray

Accuray is a radiation oncology company that develops, manufactures and sells precise, innovative treatment solutions that set the standard of care with the aim of helping patients live longer, better lives. The company's leading-edge technologies deliver the full range of radiation therapy and radiosurgery treatments. Accuray's products for precision radiotherapy include the CyberKnife® and TomoTherapy® platforms, as well as the Radixact® Treatment Delivery System. Accuray is dedicated to continuing innovation in patient care and developing treatments that offer the best possible quality of life for people facing cancer.
Learn more about Accuray
Size
995 employees
Market Cap
$185.7 million
Industry
Net Income
$7.6 million
Founded
1990
5 Year Trend
+2.3%
Revenue
$377.3 million
NASDAQ

Similar Jobs

More Jobs at Accuray

More Business Services Jobs

Find similar Data Privacy and Responsible AI Manager jobs: