Manager of Privacy Compliance
Columbus, Franklin County, Ohio, 43224, USA
Listed on 2026-02-01
-
IT/Tech
Data Security, Cybersecurity
"About Upstart
At Upstart, we’re united by a mission that matters: to radically reduce the cost and complexity of borrowing for all Americans. Every day, we bring creativity, experimentation, and advanced AI to reshape access to credit, helping millions move forward financially with clarity and confidence.
As the leading AI lending marketplace, we partner with banks and credit unions to expand access to affordable credit through technology that’s both radically intelligent and deeply human. Our platform runs over one million predictions per borrower using more than 1,800 signals, powering smarter, fairer decisions for millions of customers. But the numbers only hint at the impact. Every idea, every voice, and every contribution moves us closer to a world where credit never stands between people and their financial progress.
We’re proudly digital-first, giving most Upstarters the flexibility to do their best work from wherever they thrive, alongside teammates across 80+ cities in the US and Canada. Digital-first doesn’t mean distant. We’re intentional about in-person connection through team onsites, planning sessions, and moments that spark creativity and trust. And whether you choose to work primarily from home or collaborate in-person from one of our offices in Columbus, Austin, the Bay Area, or New York City (opening Summer 2026), you’ll have the support to work in the way that works best for you.
If you’re energized by tackling meaningful problems, excited to innovate with purpose, and motivated by work that truly matters, we’d love to hear from you.
The TeamUpstart’s Privacy and Data Governance Risk team is responsible for building and operating a scalable, risk-based privacy program that supports our AI-powered lending platform. The team partners closely with Engineering, Product, Data Science, Data Analytics, Information Security, Legal, and Compliance to ensure responsible data use, regulatory alignment, and privacy-by-design across Upstart’s products and machine learning lifecycle.
As the Manager of Privacy Compliance at Upstart, you will play a critical role in shaping and maturing the company’s privacy program. You will embed privacy controls into AI/ML systems, financial products, and data pipelines while enabling innovation and supporting compliance with complex financial and privacy regulations.
How you’ll make an impact- Build, manage, and mature Upstart’s privacy program in alignment with consumer finance and privacy regulatory requirements.
- Partner with Product, Engineering, Data Science, Data Analytics, Legal, Security, and Compliance to embed privacy-by-design into AI models, underwriting workflows, data pipelines, and new product features.
- Lead privacy risk and impact assessments (DPRAs/PIAs/DPIAs) for new product launches, machine learning models, new data sources, consumer‑facing financial products, and emerging technologies.
- Support privacy aspects of model governance, explainability, algorithmic fairness reviews, and data lifecycle management.
- Maintain enterprise privacy documentation, including records of processing activities, data flow diagrams, and system‑of‑record artifacts to support audits and regulatory expectations.
- Collaborate with Security and Compliance on data safeguards, access controls, vendor assessments, and privacy incident response activities.
- Bachelor’s degree in law, business, information systems, computer science, or related discipline (or equivalent experience).
- 5+ years of privacy, compliance, risk, or data governance experience within fintech, financial services, AI/ML, or other highly regulated environments.
- Strong working knowledge of:
- GLBA, FCRA, ECOA, CCPA/CPRA
- NIST Privacy Framework, ISO 27701
- Model governance and automated decision systems
- Experience conducting DPRAs/PIAs/DPIAs, managing privacy controls, and partnering with technical teams.
- Ability to translate regulatory requirements into actionable requirements for engineering and data science.
- Professional privacy certifications such as CIPP/US, CIPM, or CIPT.
- Experience supporting credit decisioning, lending, underwriting, fraud prevention, or financial…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).