23andMe is seeking an exceptional and highly collaborative Privacy Counsel to join our team!
Who We Are
Since 2006, 23andMe’s mission has been to help people access, understand, and benefit from the human genome. We are a group of passionate individuals pushing the boundaries of what’s possible to help turn genetic insight into better health and personal understanding.
Who You Are
You have humility, a bias for action, a great ability to partner, and a sense of ownership in your projects. You are excited by optimizing and innovating processes, addressing challenges, and finding your way through obstacles to meet deadlines with collaboration and support. You understand change is constant and thrive in a fast-paced environment with a broad range of responsibilities to provide legal guidance on applicable global privacy regulations and incident response.
You are a clear and articulate communicator and a great listener and observer. You excel at distilling complex legal and technical concepts into clear and practical advice to support our teams in navigating the legal and regulatory landscape.
Our ideal candidate will bring experience in the consumer and/or health industry and who is eager to continue their growth in a cutting-edge business.
What You'll Do
- You will be responsible for providing privacy guidance across various areas of our business to support Marketing, Product, Engineering, and Security, as well as cross-functional strategic initiatives
- Provide proactive guidance on privacy and data security issues across legal and compliance teams to drive partnership, knowledge-sharing and efficiency
- Partner closely with Security, IT, Audit, Product, Engineering, Privacy, Legal and other stakeholders
- Proactively identify and recommend opportunities for operational improvement and initiatives, including execution in a cross-functional manner
- Support timely product launches and ongoing product compliance. Collaborate closely with Security, IT, Product, Engineering, Privacy, and other stakeholders to ensure products, services, and technologies are compliant with applicable privacy and security laws, regulations, standards/controls, contractual obligations, and industry best practices
- Draft and manage policies, procedures, and processes related to 23andMe’s privacy information management system
- Support and develop scalable privacy-driven audits (e.g., DPIA, privacy questionnaires, etc.), tabletops, and other privacy program initiatives
- Advise on ongoing privacy program efforts, including data retention, data mapping initiatives, privacy engineering, and our privacy tools and systems
- Maintain, build, and/or improve the scalability and effectiveness of processes for providing legal input to stakeholders and partners and standards related to privacy by design, privacy engineering, incident response management, and other cross-platform projects
- Create and provide guidance and training to legal team members and cross-functional stakeholders
- Stay current on relevant U.S. and international laws and regulations related to cybersecurity, privacy, data management, and other applicable areas
What You’ll Bring
- J.D. from an accredited law school and member of the California Bar
- 3+ years of relevant privacy experience in a top-tier law firm, government agency, or in-house; in-house experience preferred
- Experience identifying gaps and developing proactive strategies to enhance a company’s incident readiness strategy, including drafting and implementing new policies and protocols
- Solid understanding and counseling experience with global privacy laws (e.g., GDPR, e-Privacy, CCPA, CPRA, etc.) and global cybersecurity laws, regulations, and standards (e.g., PCI, ISO, etc.)
- Consistent track record of successfully advising clients in the day-to-day operation of a business with expertise in conveying complex legal and risk concepts in “plain English” for both technical and non-technical colleagues
- Ability and a strong desire to effectively advise, develop relationships, and work collaboratively across stakeholders both within and outside of Privacy, and experience counseling Information Security, IT, and Engineering teams
- Excellent verbal and written communication skills, and the ability to effectively and proactively communicate with partners and stakeholders across the organization
- Skilled at providing sound and practical advice, and finding creative ways to solve problems
- Ability to organize, prioritize, and manage projects effectively
- Strong team player with risk awareness, and a customer service and growth mindset
- Go-getter - sees an issue and finds ways to fix it!
23andMe is a hybrid workplace. The ability to work in person three days a week (Tuesday-Thursday) at our Sunnyvale, CA office is required.
About Us
23andMe, headquartered in Sunnyvale, CA, is a leading consumer genetics and research company. Founded in 2006, the company’s mission is to help people access, understand, and benefit from the human genome. 23andMe has pioneered direct access to genetic information as the only company with multiple FDA authorizations for genetic health risk reports. The company has created the world’s largest crowdsourced platform for genetic research, with 80 percent of its customers electing to participate. The platform also powers the 23andMe Therapeutics group, currently pursuing drug development programs rooted in human genetics, including two new cancer treatments currently in clinical trials. More information is available at www.23andMe.com.
At 23andMe, we value a diverse, inclusive workforce and we provide equal employment opportunity for all applicants and employees. All qualified applicants for employment will be considered without regard to an individual’s race, color, sex, gender identity, gender expression, religion, age, national origin or ancestry, citizenship, physical or mental disability, medical condition, family care status, marital status, domestic partner status, sexual orientation, genetic information, military or veteran status, or any other basis protected by federal, state or local laws. If you are unable to submit your application because of incompatible assistive technology or a disability, please contact us at accommodations-ext@23andme.com. 23andMe will reasonably accommodate qualified individuals with disabilities to the extent required by applicable law.
Please note: 23andMe does not accept agency resumes and we are not responsible for any fees related to unsolicited resumes. Thank you.
Pay Transparency
23andMe takes a market-based approach to pay, and amounts will vary depending on your geographic location. The salary range reflected here is for a candidate based in the San Francisco Bay Area. The successful candidate’s starting pay will be determined based on job-related skills, experience, qualifications, work location, and market conditions. These ranges may be modified in the future.