At WHOOP, we're on a mission to unlock human performance and healthspan. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives.
WHOOP is hiring a Privacy Technology & Data Rights Program Manager to help scale and strengthen the operational, technical, and regulatory foundation of our privacy program. In this role, you will own the day-to-day governance and administration of our privacy automation platform, including Transcend, and support data rights workflows across SaaS applications, internal systems, and proprietary platforms. You will also serve as the HIPAA Privacy Officer for applicable programs and data environments, partnering closely with Legal, GRC, IT, Product Security, Software Engineering, Data, and business system owners to operationalize privacy requirements, maintain audit-ready documentation, and support privacy-by-design across the WHOOP data lifecycle.
RESPONSIBILITIES:
Own administration and governance of the Transcend platform, including workflows, integrations, permissions, field mapping, testing, reporting, and ongoing platform health
Serve as the Privacy Officer for applicable programs and data environments, partnering with Legal and GRC to support privacy policies, procedures, documentation, training, operational controls, and audit readiness
Maintain a current inventory of systems in scope for data rights and privacy workflows, including SaaS applications, proprietary platforms, data stores, and operational systems, and define system-level coverage requirements across access, deletion, correction, portability, restriction, opt-out, retention, and sensitive data handling where applicable
Partner with Legal, privacy, GRC, IT, Product Security, Software Engineering, Data, and business stakeholders to translate data rights and privacy requirements into operational workflows, technical enablement requirements, platform configuration, and recurring validation processes
Support privacy-by-design checkpoints for new SaaS tools, data flows, product features, and material changes to customer or regulated data processing, ensuring data rights and privacy considerations are assessed before launch or production use
Monitor DSR workflow performance, including integration status, automation failures, SLA support, system coverage, exception handling, and remediation status, while coordinating cross-functional remediation for gaps, workflow issues, integration failures, and mapping inconsistencies
Develop and maintain workflow maps, control evidence, test results, exception tracking, reporting dashboards, and audit-ready documentation to support privacy, security, compliance, and audit readiness activities
Support escalated privacy inquiries and incidents requiring technical validation, system coverage, data mapping, workflow status, or platform evidence in partnership with Legal, GRC, Security, IT, Engineering, and other stakeholders
Provide regular reporting to Legal, GRC, Security, IT, Engineering, and other stakeholders on platform health, system coverage, workflow performance, regulatory related privacy operations, open risks, and remediation progress
QUALIFICATIONS:
5+ years of experience in privacy operations, privacy technology, technical program management, GRC, security operations, data governance, or a related function
Experience working with privacy automation, workflow automation, SaaS administration, system integrations, or data governance tools
Familiarity with data rights workflows, including access, deletion, correction, portability, restriction, and opt-out support
Experience supporting privacy operations or privacy compliance programs in connection with one or more privacy-focused regulatory frameworks, such as GDPR, CCPA/CPRA, HIPAA, state privacy laws, biometric privacy laws, or similar requirements
Strong understanding of system inventories, data flows, integrations, APIs, field mapping, permissions, operational controls, and audit-ready documentation
Ability to work effectively across Legal, GRC, IT, Engineering, Product Security, Data, and business stakeholders, with the ability to communicate technical, operational, and privacy concepts clearly to both technical and non-technical audiences
Strong program management skills, including roadmap ownership, dependency tracking, stakeholder management, remediation planning, issue tracking, and recurring governance routines
Strong commitment to embracing and leveraging AI tools in day-to-day tasks, ensuring AI-assisted work aligns with the same high-quality standards as personal contributions
Skills Required
- 5+ years of experience in privacy operations, privacy technology, technical program management, GRC, security operations, or data governance
- Experience working with privacy automation, workflow automation, SaaS administration, system integrations, or data governance tools
- Familiarity with data rights workflows (access, deletion, correction, portability, restriction, opt-out)
- Experience supporting privacy operations or compliance with GDPR, CCPA/CPRA, HIPAA, state privacy laws, or biometric privacy laws
- Strong understanding of system inventories, data flows, integrations, APIs, field mapping, permissions, operational controls, and audit-ready documentation
- Ability to work effectively across Legal, GRC, IT, Engineering, Product Security, Data, and business stakeholders and communicate technical and non-technical concepts clearly
- Strong program management skills including roadmap ownership, dependency tracking, stakeholder management, remediation planning, and governance routines
- Commitment to embracing and leveraging AI tools in day-to-day tasks
What We Do
At WHOOP, we’re on a mission to unlock human performance. WHOOP empowers members to perform at a higher level through a deeper understanding of their bodies and daily lives. Our wearable device and performance optimization platform has been adopted by many of the world's greatest athletes and consumers alike.
Why Work With Us
At WHOOP, we’re focused on building an inclusive and equitable team with a strong sense of belonging for everyone—increasing representation in every way as our team grows. We believe that our differences are our source of strength—so much so it’s one of our core values.
Gallery
WHOOP Offices
Hybrid Workspace
Employees engage in a combination of remote and on-site work.

.jpg)


.jpg)
