Manager - Data Privacy Risk

TerraPay

About TerraPay

TerraPay is a leading global payments infrastructure company connecting banks, fintechs, digital wallets, money transfer operators, and businesses through a secure and scalable global payments network. Operating across 150+ markets, TerraPay enables seamless cross-border money movement through innovative payment solutions and robust financial infrastructure. As TerraPay continues to scale globally, we are looking for a highly driven Data Privacy Risk Manager to establish and lead our data privacy function.

Role Overview

We are seeking a highly motivated Manager - Data Privacy Risk who can establish, own, and mature TerraPay's data privacy framework. This role will operate as an Individual Contributor initially and will be responsible for driving privacy governance, regulatory compliance, privacy risk management, and stakeholder engagement across the organization.This is a unique opportunity to build the privacy function from the ground up in a fast-growing global fintech environment.

Requirements

Data Privacy Governance & Compliance

  • Establish, maintain, and continuously enhance the organization's Data Privacy Management Framework.
  • Develop and implement privacy policies, procedures, standards, and governance controls.
  • Ensure compliance with GDPR, UK GDPR, India's DPDP Act, and other applicable global privacy regulations.
  • Monitor regulatory developments and assess their impact on business operations.
  • Maintain privacy documentation, governance records, and compliance evidence.

Privacy Risk Management

  • Identify, assess, monitor, and mitigate privacy and data protection risks across the organization.
  • Conduct Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
  • Evaluate privacy risks associated with new products, services, technology implementations, and third-party engagements.
  • Recommend practical risk mitigation strategies and oversee remediation efforts.
  • Develop privacy risk reporting and monitoring mechanisms for leadership review.

Data Protection Operations

  • Manage Data Subject Rights Requests (DSARs), ensuring timely and compliant responses.
  • Lead investigations involving privacy incidents and personal data breaches.
  • Coordinate root cause analysis, corrective actions, and regulatory reporting requirements where applicable.
  • Maintain Records of Processing Activities (ROPAs) and other privacy compliance artifacts.

Stakeholder Management & Advisory

  • Partner closely with Legal, Compliance, Risk, Information Security, Product, Technology, Operations, HR, and Business teams.
  • Act as a trusted advisor on privacy and data protection matters.
  • Provide clear, practical, and risk-based guidance to internal stakeholders.
  • Build strong working relationships across functions to drive privacy initiatives effectively.
  • Support discussions with auditors, regulators, and external compliance stakeholders.

Privacy Awareness & Training

  • Develop and deliver privacy awareness and training programs.
  • Promote a strong culture of privacy and responsible data handling.
  • Support ongoing education initiatives to improve organizational understanding of privacy obligations.

Program Development & Continuous Improvement

  • Build and mature TerraPay's privacy operating model from the ground up.
  • Establish governance forums, reporting dashboards, and privacy metrics.
  • Champion privacy-by-design and privacy-by-default principles across business and technology initiatives.
  • Drive continuous improvement and transformation initiatives to strengthen privacy controls and governance.

Required Qualifications

  • Bachelor's degree in Law, Compliance, Information Security, Risk Management, Business Administration, or a related discipline.
  • 5-8 years of experience in Data Privacy, Data Protection, Privacy Risk Management, Information Governance, Compliance, or related functions.
  • Strong knowledge of GDPR, UK GDPR, DPDP Act, and global privacy frameworks.
  • Experience conducting DPIAs, privacy risk assessments, compliance reviews, and governance activities.
  • Strong understanding of privacy risk management and regulatory compliance requirements.
  • Experience working within highly regulated industries such as fintech, payments, banking, financial services, or consulting.
  • Excellent stakeholder management, communication, and influencing skills.
  • Ability to work independently and build a function from scratch.
  • Strong analytical, problem-solving, and decision-making capabilities.

Preferred Qualifications

  • Professional certifications such as CIPP/E, CIPM, CIPT, CDPSE, or equivalent.
  • Experience supporting privacy programs within fintech, banking, payments, investment banking, or consulting organizations.
  • Experience interacting with regulators, auditors, and external compliance stakeholders.
  • Familiarity with privacy management and governance platforms such as OneTrust, TrustArc, Archer, ServiceNow GRC, or similar tools.
  • Exposure to operational resilience, third-party risk management, and information governance frameworks.
  • Experience operating within global and multi-jurisdictional regulatory environments.

What Success Looks Like

  • Establishment of a scalable and sustainable Data Privacy Governance Framework.
  • Effective identification, assessment, and mitigation of privacy risks across the organization.
  • Strong compliance with applicable global privacy regulations.
  • Increased privacy awareness and accountability across business and technology functions.
  • Successful integration of privacy-by-design principles into products, services, and operational processes.
  • Trusted advisor status among senior leadership and key stakeholders.
  • Meaningful contribution to TerraPay's governance, risk management, and growth objectives.
  • Experience implementing or operationalising privacy frameworks from inception is highly desirable.

Benefits

  • Competitive compensation package
  • Opportunity to work with a truly global payments company operating across 150+ markets.
  • Exposure to leading banks, fintechs, stablecoin issuers, and payment ecosystems worldwide.
  • 25 days annual leave plus public holidays and birthday leave.
  • Comprehensive healthcare benefits.
  • Career development opportunities within a fast-growing global fintech organisation.

How to apply

To apply for this job you need to authorize on our website. If you don't have an account yet, please register.