Simon-Kucher & Partners

Senior Manager, Information Compliance - AI Governance & Privacy

Simon-Kucher & Partners$140K — $170K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 7+ years of experience in privacy engineering, AI governance, compliance, or related fields
  • Technical fluency in modern technology environments, capable of reading and challenging architecture and data-flow diagrams
  • Hands-on experience with technical controls such as identity and access management and encryption
  • Ability to translate legal and regulatory requirements into actionable technical controls
  • Strong communication skills to explain complex compliance and technology concepts clearly
  • Proven ability to manage multiple priorities in a fast-paced environment
  • Degree in Information Technology, Computer Science, Law, or equivalent practical experience

Responsibilities

  • Embed AI governance and privacy into technology solutions
  • Translate compliance requirements into technical controls and implementation standards
  • Review and assess technical designs and data flows for risk and controls
  • Advise on the implementation of privacy and security controls
  • Partner with teams to ensure compliant solution design and risk mitigation
  • Support AI and privacy governance reviews, identifying risks and recommending solutions
  • Build scalable governance frameworks and guidance materials

Benefits

  • Comprehensive medical insurance
  • Paid time off
  • 13 paid holidays per year
  • Basic life insurance
  • RRSP for eligible employees
Full Job Description
Senior Manager, Information Compliance - AI Governance & Privacy

In Canada -Toronto

Simon-Kucher is looking for a Senior Manager, Information Compliance - AI Governance & Privacy to join our Legal, Compliance & Risk function as part of the Information Compliance Team.

This role sits in the Information Compliance Team and reports into the Head of Information Compliance, with a dotted reporting line to the Chief Compliance Officer (CCO). The team works across AI compliance, information security, privacy, and governance topics to help protect client, company, and personal data while enabling responsible technology adoption.

This is a senior individual contributor role for a professional with a hybrid profile: privacy and AI governance expertise, legal/compliance judgment, and strong technical fluency. You will not be expected to be a full-time software engineer, but you must be credible in technical design discussions with data scientists, AI engineers, product owners, cloud/platform teams, IT, security, and client project teams.

Your focus will be to ensure that AI tools, solutions, platforms, and products are developed and used responsibly, securely, and in line with statutory requirements, client confidentiality obligations, contractual commitments, and internal policies, standards, and procedures.

This is not a policy-only compliance role. We are looking for someone who enjoys getting close to the technology, understanding how systems actually work, and translating requirements into practical controls, implementation guidance, and scalable governance patterns that teams can use.

How you will create an impact:
  • Communications
    • Embed AI governance and privacy into technology solutions. Help teams build and use AI-enabled tools, products, platforms, and workflows in a compliant, secure, and responsible way from the start.
    • Translate requirements into technical controls. Convert privacy, AI governance, client confidentiality, information security, contractual, and internal policy requirements into actionable technical controls, implementation standards, and security guardrails.
    • Review technical designs and data flows. Assess architecture diagrams, data-flow diagrams, AI workflow designs, vendor/tool documentation, integration patterns, cloud/SaaS configurations, and product requirements to identify risk and recommend controls.
    • Advise on privacy and security control implementation. Provide practical guidance on controls such as identity and access management, role-based access, data classification, encryption, retention and deletion, logging and monitoring, DLP, auditability, human oversight, and secure AI use.
    • Partner with project, data, AI, IT, and security teams. Work directly with client project teams and internal teams to advise on compliant solution design, data use, vendor and tool use, confidentiality safeguards, and risk mitigations.
    • Support AI and privacy governance reviews. Help assess AI use cases, data sources, platforms, vendors, model or tool behavior, prompt and output handling, and solution designs. Identify legal, privacy, confidentiality, information security, and AI governance risks and recommend practical ways to address them.
    • Build scalable governance frameworks. Develop and maintain playbooks, checklists, control libraries, standards, guidance materials, and reusable architecture/control patterns that help teams apply Privacy by Design, Governance by Design, Security by Design, and Responsible AI principles consistently.
    • Promote awareness and responsible adoption. Contribute to training and communication initiatives that help colleagues use AI and data responsibly while protecting client information and confidential data.


About You:
  • Professional andEducationalBackground:
    • 7+ years of relevant experience in privacy engineering, AI governance, technology compliance, information security, cyber/privacy GRC, data protection, cloud governance, product compliance, legal/compliance operations with technical implementation exposure, or a related field.
    • Demonstrated technical fluency in modern technology environments. You should be able to read and challenge architecture diagrams, data-flow diagrams, solution designs, system integration patterns, security/privacy control mappings, and vendor technical documentation.
    • Hands-on or implementation-adjacent experience with technical controls such as identity and access management, role-based access controls, data classification, encryption, logging and monitoring, DLP, retention/deletion, cloud/SaaS governance, secure SDLC, or AI tool governance.
    • Experience translating legal, regulatory, contractual, client confidentiality, or internal policy requirements into technical or operational controls that can be implemented by technology teams.
    • Ability to advise senior stakeholders and influence cross-functional teams without relying on direct reporting authority.
    • Strong analytical judgment and the ability to balance risk, business needs, user experience, and practical implementation.
    • Excellent communication skills, including the ability to explain complex compliance and technology concepts in plain language.
    • Ability to manage multiple priorities independently in a fast-moving, international environment.
    • Degree in Information Technology, Computer Science, Engineering, Information Security, Law, Compliance, or a related field; equivalent practical experience will also be considered.
    • Professional fluency in English.
  • Preferred Qualifications:
    • Experience with AI governance, Responsible AI, generative AI governance, machine learning governance, model risk management, privacy engineering, security architecture, or AI lifecycle controls.
    • Familiarity with privacy, security, and AI governance frameworks such as NIST AI RMF, NIST Privacy Framework, ISO 27001, SOC 2, CIS Controls, OWASP, or similar frameworks.
    • Privacy, AI, security, or governance certifications such as AIGP, CIPP/US, CIPP/E, CIPM, CIPT, CISSP, CISM, CRISC, or similar.
    • Experience with governance, privacy, or GRC tools such as OneTrust, ServiceNow GRC, Archer, Jira, Confluence, or similar platforms.
    • Experience in consulting, professional services, technology, SaaS, financial services, healthcare, or another international and regulated environment.
    • Familiarity with US, Canadian, and global privacy and AI governance requirements, including US state privacy laws, Canadian privacy principles, GDPR concepts, vendor risk, cross-border data considerations, and client confidentiality requirements.
    • German or another European language is a plus but not required.


Total compensation for this role includes base salary, eligibility for annual merit-based increases, and a comprehensive benefits package.

The pay range for this position in Toronto is $140,000 to $170,000 CAD per year plus potential annual performance-based bonus. Compensation may vary depending on relevant experience, skills, geographic location, and business needs. We offer a comprehensive package of benefits including paid time off, 13 paid holidays per year, medical insurance, basic life insurance, and RRSP to eligible employees.

About Simon-Kucher & Partners

Simon-Kucher & Partners is a global consulting firm specializing in strategy, marketing, pricing, and sales. The company was founded in 1985 in Bonn, Germany, and has since grown to have over 1,400 employees in 39 offices worldwide. Simon-Kucher & Partners works with clients across a range of industries, including healthcare, technology, consumer goods, and financial services, among others. The firm is known for its expertise in pricing strategy, and has published several books on the topic. Simon-Kucher & Partners has been recognized as one of the best consulting firms to work for by several publications, including Consulting Magazine and Vault.
Learn more about Simon-Kucher & Partners
Size
1,300 employees
Industry
Founded
1985
5 Year Trend
+20%
Revenue
$300 million

Similar Jobs

More Jobs at Simon-Kucher & Partners

More Information Technology Jobs

Find similar Senior Manager, Information Compliance - AI Governance & Privacy jobs: