What the role owns
Personal data mapping, DSARs, retention, and the privacy half of every AI review.
Who it reports to
A chief privacy officer or general counsel.
A day in the job
Data mapping, DSARs, retention schedules, vendor reviews, and the privacy half of every AI assessment.
What employers test for
Privacy law, and the ability to find where personal data actually went rather than where the diagram says it went. CIPP and CIPM are genuinely asked for.
How people get in
Legal, compliance and security. Privacy is also the most common place people stand before moving into AI governance.
What it gets confused with
Not separate from AI governance in practice. Privacy teams are the single most common source of AI governance hires.
Privacy roles: tools, skills and workflows
What does a privacy roles do all day?
Data mapping, DSARs, retention schedules, vendor reviews, and the privacy half of every AI assessment.
What skills do employers test for?
Privacy law, and the ability to find where personal data actually went rather than where the diagram says it went. CIPP and CIPM are genuinely asked for.
How do people get into this role?
Legal, compliance and security. Privacy is also the most common place people stand before moving into AI governance.
What is it often confused with?
Not separate from AI governance in practice. Privacy teams are the single most common source of AI governance hires.