Full Job Description
This role will require being full-time onsite at our Palo Alto office to support collaborative team dynamics and innovative problem-solving.
Partnering with BitGo Legal Department to build a global privacy program and execution for all internal and external privacy needs and requests. Privacy is an explicit, designated Security responsibility. BitGo is global and needs a single, accountable owner to operationalize privacy, reduce reliance on contractors, and meet regulatory requirements.
**What you would do:**
- Run privacy request operations end-to-end
- Serve as the Data Protection Officer where required by law
- Lead the preparation and submission of mandatory data protection impact assessments (DPIAs) and/or privacy risk assessments (PRAs) to supervisory authorities when required by law.
- Partner with Legal in lock step
- Build and maintain core privacy program governance (lean but audit-ready)
- Vendor and procurement privacy
- Personal data incident support
- Metrics and continuous improvement
**What success would look like (first 6 months):**
- A single global intake and case workflow is live, with documented triage rules, deadlines, templates, and evidence retention.
- Contractor reliance is materially reduced for routine privacy requests and program maintenance.
- Data inventory and processing records are maintained and used in real workflows (requests, product reviews, vendor reviews).
- Privacy reviews are embedded into product and vendor change processes with predictable turnaround.
- Executive-ready metrics exist and show improving cycle time and decreasing backlog.
**Required qualifications:**
- 7 or more years with proven ability to build and run a privacy program with operational responsibility and hands-on execution of privacy requests at scale.
- Demonstrated ability to operate as a high-autonomy individual contributor in a lean environment.
- Strong experience partnering with attorneys and translating legal requirements into operational controls.
- Working knowledge of global privacy regulatory expectations, including but not limited to GDPR, CCPA/CPRA, LGPD, PIPEDA, and how to implement them in practical workflows.
- Strong technical fluency: systems, data flows, access control concepts, logging, and incident handling collaboration.
- Oversee the formal creation and maintenance of the Record of Processing Activities (ROPA), including its periodic review and updates to ensure compliance with Article 30 of the GDPR (or equivalent local mandates).
- Excellent writing and documentation discipline (regulator-ready and audit-ready records).
**Preferred qualifications:**
- Prior experience formally serving as a Data Protection Officer.
- Experience in financial services, payments, custody, or other highly regulated environments.
- Experience building privacy workflows in ticketing and documentation systems and producing evidence packages for audits and regulators.
**Pay Transparency Notice:** Depending upon your leveling and location, the compensation for this role averages between $140,000 - $165,000 USD base salary. Equity, an annual performance bonus and the benefits outlined below are also a part of this role's package.
**Here are some of the benefits* of working at BitGo:**
- Competitive base salary, bonus and stock options
- 100% company paid health insurance for employee, partner and dependents
- Up to 4% 401k company match
- Paid parental leave, Paid vacation
- Free commuter/parking pass
- Free custom lunches, dinners and snacks
- Computer equipment and workplace furniture to suit your needs
- Great colleagues and inspiring startup environment
*Benefits may vary based on location
Cryptocurrencies are the most disruptive change the financial services industry has seen in years. Join us and you'll be able to look back and say you were part of the team that transformed investing.