GRC Careers: AI Governance, Risk and Compliance JobsConnecting Talent and Trust. Post a Job Log in

JobsMarylandWashington, DCPrivacy Program Specialist

Privacy Program Specialist

Smithsonian Institution
PrivacyOn-siteFull-timeWashington, District of Columbia$121785 - $158322 Per Year

Smithsonian Institution is hiring for the job of Privacy Program Specialist, Washington, District of Columbia (On-site). This is a Privacy job in the governance, risk, and compliance field, with a posted range of $121785 - $158322 Per Year. Review the full details below and apply directly with Smithsonian Institution .

Organization: Smithsonian Institution Location: Washington, District of ColumbiaWorkplace: On-siteFocus: PrivacySalary: $121785 - $158322 Per YearPosted: Sep 10, 2026
Smithsonian Institution is hiring for this Privacy job in Washington, one of the metros GRC Careers tracks for governance, risk, and compliance hiring. See other GRC jobs in Washington →

The Smithsonian Institution is the world's largest museum, education, and research complex, with 21 museums and the National Zoo. This position is located in the Office of Contracting and Personal Property Management (OCon & PPM). OCon & PPM is responsible for the overall planning, management and execution of SI's contracting, acquisition and procurement, privacy, personal property and travel programs. More than one selection may be made from this announcement.

Qualifications: Experience: You qualify for this position if you have one year of specialized experience equivalent to at least the GS-12 level in the Federal Service. For this position, specialized experience is defined as experience performing at least five of the following: (1) conducting reviews and analysis of contracts with privacy and information security implications; (2) conducting research on U.S. state and foreign privacy laws to ensure proper implementation of privacy requirements; (3) coordinating incident response activities; (4) developing and delivering briefings on the privacy or security implications of existing or emerging technology (e.g., Artificial Intelligence); (5) conducting privacy risk assessments within a governance risk and compliance tool; and (6) coordinating responses to annual information security audits. Your resume must be no more than two (2) pages and should clearly demonstrate how your experience aligns with the responsibilities and specialized experience required for this position. Do not copy language directly from the vacancy announcement, as you will be deemed ineligible for consideration. Instead, provide detailed, descriptive information about your actual experience. Experience refers to paid and unpaid experience, including volunteer work done through National Service programs (e.g., Peace Corps, AmeriCorps) and other organizations (e.g., professional; philanthropic; religious; spiritual; community, student, social). Volunteer work helps build critical competencies, knowledge, and skills and can provide valuable training and experience that translates directly to paid employment. You will receive credit for all qualifying experience, including volunteer experience. Part-time and/or unpaid experience related to this position will be considered to determine the total number of years and months of experience. Be sure to note the number of paid or unpaid hours worked each week.

Location and market context

This job is based in Washington on-site. Local candidates benefit from being close to Smithsonian Institution 's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.

About privacy jobs

Privacy jobs protect personal data across its lifecycle, from data mapping and DPIAs to individual-rights handling. AI systems are widening the scope of what privacy teams must review. Jobs like this one are typically evaluated against frameworks such as GDPR, CCPA and US state privacy laws, ISO/IEC 27701, and privacy-by-design practices.

How to position yourself for this privacy job

Strong candidates emphasize data mapping and inventories, privacy impact assessments, rights handling, and building privacy-by-design into products and AI systems. In your resume and outreach, tie your experience to how Smithsonian Institution would apply GDPR, CCPA and US state privacy laws, ISO/IEC 27701, and privacy-by-design practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

More GRC jobs in Washington

Hiring for Privacy?

Reach candidates who are already searching for this role, not a general audience. Your posting appears on this page, in the job alerts, and across the GRC Careers network.

Post a job  Pricing from $99 · About GRC Careers · Hiring toolkit

Want to be next in a job like this?

Jobs like Privacy Program Specialist in Washington, District of Columbia open regularly. Be first to know, privately. No current employer ever sees you looking.

New Privacy jobs, the moment they post.

One click unsubscribe.
Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.