- Company Name
- Paymentus
- Job Title
- Director of Compliance- Data Privacy
- Job Description
-
Job title: Director of Compliance – Data Privacy
Role Summary
Lead the organization’s privacy, data protection, and overall regulatory compliance function, providing legal counsel and strategic guidance on evolving laws, payment‑system requirements, and AI‑related risks. Serve as the primary advisor to executive management on risk posture and develop a culture of compliance across all business units.
Expectations
- Maintain up‑to‑date knowledge of U.S. and international privacy laws (CCPA, GDPR, etc.) and payment‑industry regulations (NACHA, PCI, Regulation E, BSA, Patriot Act, OFAC).
- Deliver proactive, interpretive legal advice on new products, services, and initiatives.
- Implement and govern policies, procedures, training, and risk management frameworks that align with global standards.
- Act as an independent review body, ensuring regulatory issues are investigated and resolved.
- Maintain a high level of client engagement, transparent communication, and stakeholder management.
Key Responsibilities
1. Develop, update, and enforce global privacy and data‑protection policies and processes.
2. Conduct privacy impact assessments and oversee the implementation of safeguards.
3. Review new products, services, and consumer‑data uses for regulatory compliance.
4. Lead compliance risk assessments, policy management, and regulatory change management.
5. Manage payment‑specific compliance (PCI, NACHA, Card Association Rules), AML/KYC/Fraud programs, and related licensing.
6. Provide legal services to the company, including contract review, negotiation, and interpretation of governmental and legal requirements.
7. Liaise with the Chief Information Security Officer on InfoSec matters, particularly AI‑related risks.
8. Design and deliver ongoing compliance training programs and foster a culture of adherence.
9. Advise executive management on corporate risk posture and regulatory trends.
10. Serve as an independent audit and review body for compliance investigations.
Required Skills
- Extensive legal counsel experience (minimum 7 years) in compliance, privacy, and payments.
- Deep understanding of U.S. (NACHA, PCI, BSA, Patriot Act, OFAC, MSB licensing) and international privacy regulations.
- Proven ability to create and implement internal compliance policies, training programs, and risk matrices.
- Strong analytical, risk‑management, and decision‑making capabilities.
- Excellent written and oral communication; ability to negotiate, mentor, and influence stakeholders.
- Customer‑focused mindset with agility to adapt to changing circumstances.
- Leadership capability to guide multi‑disciplinary teams and drive accountability.
Required Education & Certifications
- Juris Doctor (JD) from an ABA‑accredited law school.
- Admission in good standing with a State Bar.
- Relevant certifications (e.g., CIPP/E, CISA, CISSP) are preferred but not mandatory.