Data Privacy Analyst
Confidential
Posted: January 30, 2026
Interested in this position?
Create a free account to apply with AI-powered matching
Quick Summary
Develops and maintains a comprehensive privacy program in collaboration with the Head of Legal, considering the entire applicable international regulatory framework.
Required Skills
Job Description
PURPOSE
The candidate will be responsible for developing the personal data privacy program in collaboration with the Head of Legal, considering the entire applicable international regulatory framework. This includes reviewing legislation, creating policies and procedures (P&Ps), reports, and documentation, as well as supporting the creation and ongoing maintenance of the privacy program.
RESPONSIBILITIES
Conduct and support compliance and risk assessments related to the processing of personal data, including Privacy Impact Assessments (PIAs/DPIAs) and privacy risk analyses.
Maintain and update the Record of Processing Activities (RoPA) and other privacy documentation required by applicable laws and regulations.
Monitor changes in international data protection regulations and propose adjustments to the corporate privacy program accordingly.
Respond to and coordinate data subject requests, ensuring compliance with legal requirements and deadlines.
Collaborate with cross-functional teams to integrate privacy by design principles and data protection requirements from the early stages of products and projects.
Support the review and adaptation of contracts with vendors and third parties, ensuring appropriate data protection and privacy clauses.
Prepare reports and risk indicators (KPIs), and support internal and external audits.
Contribute to the development and delivery of privacy training and awareness materials for internal teams.
QUALIFICATIONS
Bachelor’s degree in Law, Information Technology, Information Security, Engineering, Business Administration, or related fields.
Practical experience (2 to 4 years) in data privacy, data protection, compliance, or a similar role.
Solid knowledge of international regulations such as GDPR, LGPD, CCPA, SDPA, and other relevant standards.
Experience conducting privacy impact assessments and data mapping activities.
Fluent English (written and spoken) for interpreting regulations and communicating with global teams.
Ability to work with multiple stakeholders and clearly communicate analyses and risks.
Opportunity to participate in cross-functional projects and strategic privacy initiatives.
COMPETENCIES
Ability to work independently and manage multiple teams and initiatives simultaneously.
Strong attention to detail.
Critical thinking with a focus on risk analysis and mitigation, while balancing business needs.
Strong communication skills, with the ability to explain complex concepts to different audiences.
Proactivity, organizational skills, and ability to manage priorities in a global environment.
DIFFERENTIALS
Data protection and/or data privacy certifications and training.
LOCATION:
São Paulo, SP or Campinas, SP - Up to twice a week at the base office (Hybrid)
Privacy Notice - Hedgepoint By participating in our selection process, you confirm that you are aware of and agree to all the terms stipulated in our Hedgepoint Privacy Notice. Click here (https://bit.ly/3YwMoyK ) to view and print our Privacy Notice. To enable accessibility tools for this document, please use Adobe Acrobat Reader.