Provide guidance on Privacy, Risk, and Compliance for Reclaim. Collaborate with teams to implement compliance standards and manage security artifacts.
Role Description
In this role, you will provide exceptional guidance and expertise regarding Privacy, Risk and Compliance for the Reclaim Platform (https://reclaim.ai). You will play a crucial role in developing and implementing best practices around Risk, Privacy and Compliance for Reclaim. You’ll do this by working with the broader Dropbox Privacy teams, observing compliance requirements, speaking with customers and working directly as a member of the Reclaim team. You will play a crucial role in our compliance efforts including SOC2 and similar audit projects, and advocating the overall Privacy and Security posture for Reclaim to external customers, and the rest of Dropbox.
Responsibilities- Working with customers to answer questions and provide guidance on Reclaim’s security posture
- Working with technical engineering teams on identifying vulnerabilities, tracking remediation and establishing controls
- Provide security and privacy consulting to customers, teams and business partners
- Collaborate with Dropbox Privacy, Compliance, Legal and ITS teams to align compliance activities/standards for Reclaim with broader Dropbox standards, programs and goals
- Perform hands-on gap analysis and risk assessments to identify, document and track information security and privacy risks for the Reclaim.ai business
- Own and manage customer facing privacy and security artifacts including relevant sections of the website such as the Privacy Policy, DPA, and Reclaim’s Trust Center
- Manage inbound DSR and similar privacy requests from customers
- 5+ yrs of experience in technology governance, risk or compliance roles in a large and/or high growth organization
- Deep understanding and hands-on experience with compliance standards such as SOC2, ISO27001, NIST and SSPA and associated controls.
- Ability to partner and navigate in a large cross functional organization working with teams in Engineering, Privacy, IT, Legal and Procurement.
- Deep understanding of privacy standards and frameworks including GDPR, DPF, CCPA and similar country and state level requirements.
- Strong documentation skills with a focus on product documentation, risk assessments, threat modeling and similar.
- Experience with vulnerability management and security incident management programs, standards and tooling
- Experience leading a large compliance activity and working directly with auditors
- Technical expertise with cloud-native environments and associated security controls and tools, specifically: AWS, database security, and vulnerability management
- Experience with security automation and process streamlining in the context of security risk management
- Product Management experience in a product-security context - to help define and build security related features into the Reclaim.ai platform (SSO, SCIM, audit logging, etc..)
- Interest in calendars, scheduling and time management
US Zone 1
This role is not available in Zone 1
US Zone 2
$156,100—$211,100 USD
US Zone 3
$138,700—$187,700 USD
Top Skills
AWS
Ccpa
Dpf
Gdpr
Iso27001
Nist
Soc2
Dropbox Boston, Massachusetts, USA Office
Boston, MA, United States
Similar Jobs at Dropbox
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
Lead a team of engineers to manage critical functionalities on Dropbox.com, prioritizing projects, driving innovation, and fostering a collaborative culture.
Top Skills:
Software EngineeringWeb Development
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
As a Senior Infrastructure Software Engineer, you will build and optimize scalable systems, manage extensive data, and collaborate across teams to drive innovations and improvements in Dropbox's infrastructure.
Top Skills:
C/C++GoJavaPython
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
The Senior Director of FP&A will oversee revenue forecasting, manage a high-performing team, and provide financial guidance to drive revenue growth.
Top Skills:
ExcelOracle FinancialsSnowflakeTableau
What you need to know about the Boston Tech Scene
Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.
Key Facts About Boston Tech
- Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
- Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
- Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
- Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
- Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories